On the Security of Certificateless Authenticated Key Agreement Protocol

被引:2
|
作者
Hou Meng-bo [1 ]
Xu Qiu-liang [1 ]
机构
[1] Shandong Univ, Sch Comp Sci & Technol, Jinan 250101, Peoples R China
关键词
D O I
10.1109/ITIME.2009.5236217
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Authenticated key agreement protocol is a fundamental building block for ensuring private communications between two or more parties over an insecure network Certificateless public key cryptography (CL-PKC) combines the advantage of the identity-based public key cryptography (ID-PKC) and the traditional PKI. In the recent work, Wang et al. proposed an efficient two-party certificateless authenticated key agreement protocol from pairings used to protect the Web client/server communication. However, we found the scheme cannot withstand key compromise impersonation attack, and also, is vulnerable to one form of the man-in-the-middle attack - key replicating attack, thus it doesn't possess some desirable security attributes, such as key compromise impersonation resilience and key integrity. We analyze the key replicating attack against the protocol in the BR93 security model in detail, and demonstrate that the protocol is not secure if the adversary was allowed to send a reveal query to reveal non-partner players who had accepted the same session key.
引用
收藏
页码:974 / 979
页数:6
相关论文
共 50 条
  • [31] Yet Another Certificateless three-party authenticated key agreement protocol
    Hu, Jianbin
    Xiong, Hu
    Guan, Zhi
    Tang, Cong
    Wang, Yonggang
    Xin, Wei
    Chen, Zhong
    2011 NINTH IEEE INTERNATIONAL SYMPOSIUM ON PARALLEL AND DISTRIBUTED PROCESSING WITH APPLICATIONS WORKSHOPS (ISPAW), 2011, : 222 - 226
  • [32] Secure and Efficient Two-Party Certificateless Authenticated Key Agreement Protocol
    Hou, Mengbo
    Xu, Qiuliang
    2009 ISECS INTERNATIONAL COLLOQUIUM ON COMPUTING, COMMUNICATION, CONTROL, AND MANAGEMENT, VOL III, 2009, : 308 - 311
  • [33] A certificateless group authenticated key agreement protocol based on dynamic binary tree
    Sun, Yang
    Yin, Shoulin
    Liu, Jie
    Teng, Lin
    International Journal of Network Security, 2019, 21 (05): : 843 - 849
  • [34] A Two-Party Certificateless Authenticated Key Agreement Protocol without Pairing
    Hou, Mengbo
    Xu, Qiuliang
    2009 2ND IEEE INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND INFORMATION TECHNOLOGY, VOL 1, 2009, : 412 - 416
  • [35] Certificateless Key Agreement Protocol
    Chen Yixiang
    2010 2ND INTERNATIONAL CONFERENCE ON E-BUSINESS AND INFORMATION SYSTEM SECURITY (EBISS 2010), 2010, : 438 - 441
  • [36] Certificateless One-Way Authenticated Two-Party Key Agreement Protocol
    Chen, Wuping
    Zhang, Lei
    Qin, Bo
    Wu, Qianhong
    Zhang, Huanguo
    FIFTH INTERNATIONAL CONFERENCE ON INFORMATION ASSURANCE AND SECURITY, VOL 1, PROCEEDINGS, 2009, : 483 - +
  • [37] CL-AGKA: certificateless authenticated group key agreement protocol for mobile networks
    Susmita Mandal
    Sujata Mohanty
    Banshidhar Majhi
    Wireless Networks, 2020, 26 : 3011 - 3031
  • [38] CL-AGKA: certificateless authenticated group key agreement protocol for mobile networks
    Mandal, Susmita
    Mohanty, Sujata
    Majhi, Banshidhar
    WIRELESS NETWORKS, 2020, 26 (04) : 3011 - 3031
  • [39] Authenticated Key Agreement Protocol
    Dehkordi, Massoud Hadian
    Alimoradi, Reza
    CHINA COMMUNICATIONS, 2010, 7 (05) : 1 - 8
  • [40] A Certificateless Group Authenticated Key Agreement Protocol for Secure Communication in Untrusted UAV Networks
    Semal, Benjamin
    Markantonakis, Konstantinos
    Akram, Raja Naeem
    2018 IEEE/AIAA 37TH DIGITAL AVIONICS SYSTEMS CONFERENCE (DASC), 2018, : 233 - 240