Security analysis and design of an efficient ECC-based two-factor password authentication scheme

35Citations
Citations of this article
15Readers
Mendeley users who have this article in their library.

Abstract

Client-server-based communications provide a facility by which users can get several services from home via the Internet. As the Internet is an insecure channel, it is needed to protect information of communicators. An authentication scheme can fulfill the aforementioned requirements. Recently, Huang et al. presented an elliptic curve cryptosystem-based password authentication scheme. This work has demonstrated that the scheme of Huang et al. has security weakness against the forgery attack. In addition, this paper also presented that the scheme of Huang et al. has some design drawbacks. Therefore, this paper has focused on excluding the security vulnerabilities of the scheme of Huang et al. by proposing an elliptic curve cryptosystem-based password authentication scheme using smart card. The security of our scheme is based on the hardness assumption of the one-way hash functions and elliptic curve discrete logarithm problem. Furthermore, we have demonstrated that our scheme is secured against known attacks. The performance of our scheme is also nearly equal when compared to related competing schemes. Copyright © 2016 John Wiley & Sons, Ltd.

Cite

CITATION STYLE

APA

Maitra, T., Obaidat, M. S., Islam, S. H., Giri, D., & Amin, R. (2016). Security analysis and design of an efficient ECC-based two-factor password authentication scheme. Security and Communication Networks, 9(17), 4166–4181. https://doi.org/10.1002/sec.1596

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free