Session Key Based Password Authentication

Abstract

This paper initiates the study of two specific security threats on smart-card-based password authentication in distributed systems. Smart-card-based password authentication is one of the most commonly used security mechanisms to determine the identity of a remote client, who must hold a valid smart card and the corresponding password to carry out a successful authentication with the server. The authentication is usually integrated with a key establishment protocol and yields smart-card-based password-authenticated key agreement. Using two recently proposed protocols as case studies, we demonstrate two new types of adversaries with smart card adversaries with pre-computed data stored in the smart card adversaries with different data (with respect to different time slots) stored in the smart card. These threats, though realistic in distributed systems, have never been studied in the literature. In addition to point out the vulnerabilities, we propose the countermeasures to thwart the security threats and secure the protocols.

Authors and Affiliations

M. Nivas, A. Divya, P. Kanimozhi

Keywords

Related Articles

Experimental Study on the Behavior of Copper Slag as Partial Replacement of Fine Aggregate in Concrete

In present arena, rapid urbanization has created a huge demand for natural sand hence made it even more expensive. Alternative materials in all forms of constructions are introduced to reduce the pressure on natural mat...

Design and Implementation of Area Efficient BPSK and QPSK Modulators Based On FPGA

Digital communications devices designed on FPGAs are capable of affording multiple communications protocols without the need to arrange new hardware, and can support new protocols in a matter of seconds. In addition, FP...

Harmonic Distortion Elimination for STATCOM Application Using SHE-PWM Cascaded Multilevel Inverter

A novel multilevel selective harmonic elimination pulse-width modulation (MSHE–PWM) technique for transformer static synchronous compensator STATCOM system using cascaded H-bridge inverter (CHI) is proposed. MSHE–PWM me...

Hybrid System of Motion Tracking Using Background Subracton and Frame Difference for Real Time and Recorded Videos

In today’s competitive generation, the security concerns have grown rapidly. The latest technology used for security concerns is motion detection system. Motion detection is broadly used in many computer vision tasks li...

Design of Adjustable V Block

In various branches of industry (for example, in paper, electric, ship and power plant industry), large and heavy cylindrical elements play very important role. Two pipes are first supported by fixed v blocks before joi...

Download PDF file
  • EP ID EP19859
  • DOI -
  • Views 234
  • Downloads 7

How To Cite

M. Nivas, A. Divya, P. Kanimozhi (2015). Session Key Based Password Authentication. International Journal for Research in Applied Science and Engineering Technology (IJRASET), 3(3), -. https://europub.co.uk/articles/-A-19859