Cryptanalysis of Lu et al.'s Password-Based Authenticated Key Agreement Protocol

Recently, Lu et al. presented an enhanced authenticated key agreement protocol based on elliptic curves cryptography and included their protocol in 3GPP2 specifications to improve the security of A-Key distribution. In this paper, we first show the proposed protocol can't resist the offline pas...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
1. Verfasser: Qiong Pu
Format: Tagungsbericht
Sprache:eng
Schlagworte:
Online-Zugang:Volltext bestellen
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:Recently, Lu et al. presented an enhanced authenticated key agreement protocol based on elliptic curves cryptography and included their protocol in 3GPP2 specifications to improve the security of A-Key distribution. In this paper, we first show the proposed protocol can't resist the offline password guessing attack, and then present an enhanced protocol to remedy the security loopholes. On the other hand, through this work, we also hope to contribute towards a better understanding of the importance and necessity of including the key derivation step in key agreement protocols.
DOI:10.1109/MMIT.2010.81