首页    期刊浏览 2024年11月28日 星期四
登录注册

文章基本信息

  • 标题:Security Analysis and Improvements of a Three-Party Password-Based Key Exchange Protocol
  • 其他标题:Security Analysis and Improvements of a Three-Party Password-Based Key Exchange Protocol
  • 作者:Tu, H. ; Shen, H. ; He, D.
  • 期刊名称:Engineering Economics
  • 印刷版ISSN:2029-5839
  • 出版年度:2014
  • 卷号:43
  • 期号:1
  • 页码:57-63
  • DOI:10.5755/j01.itc.43.1.5322
  • 语种:English
  • 出版社:Kaunas University of Technology
  • 摘要:Recently Xie et al. [Q. Xie, N. Dong, X. Tan. D. Wong, G. Wang. Improvement of a three-party password-based key exchange protocol with formal verification. Information Technology and Control, 2013, Vol. 42, No. 3, 231-237] proposed an efficient three-party password-based key exchange protocol and used a formal verification tool to verify its security. In this paper, we demonstrate that their protocol is vulnerable to the off-line password guessing attack and the key compromise impersonation attack. The analysis shows that their protocol is not secure for practical applications. To overcome weaknesses in Xie et al.’s protocol, we also propose an improved 3PAKE protocol. Analysis shows that our protocol not only overcomes those weaknesses, but also has better performance. Therefore, our protocol is more suitable for practical applications. DOI: http://dx.doi.org/10.5755/j01.itc.43.1.5322
  • 关键词:Key exchange protocol; Three-party; Password guessing attack; Key compromise impersonation attack; Denning-Sacco attack
Loading...
联系我们|关于我们|网站声明
国家哲学社会科学文献中心版权所有