On the Security of a Simple Three-Party Key Exchange Protocol without Server’s Public Keys

Joint Authors

Nam, Junghyun
Won, Dongho
Choo, Kim-Kwang Raymond
Park, Minkyu
Paik, Juryon

Source

The Scientific World Journal

Issue

Vol. 2014, Issue 2014 (31 Dec. 2014), pp.1-7, 7 p.

Publisher

Hindawi Publishing Corporation

Publication Date

2014-09-01

Country of Publication

Egypt

No. of Pages

7

Main Subjects

Medicine
Information Technology and Computer Science

Abstract EN

Authenticated key exchange protocols are of fundamental importance in securing communications and are now extensively deployed for use in various real-world network applications.

In this work, we reveal major previously unpublished security vulnerabilities in the password-based authenticated three-party key exchange protocol according to Lee and Hwang (2010): (1) the Lee-Hwang protocol is susceptible to a man-in-the-middle attack and thus fails to achieve implicit key authentication; (2) the protocol cannot protect clients’ passwords against an offline dictionary attack; and (3) the indistinguishability-based security of the protocol can be easily broken even in the presence of a passive adversary.

We also propose an improved password-based authenticated three-party key exchange protocol that addresses the security vulnerabilities identified in the Lee-Hwang protocol.

American Psychological Association (APA)

Nam, Junghyun& Choo, Kim-Kwang Raymond& Park, Minkyu& Paik, Juryon& Won, Dongho. 2014. On the Security of a Simple Three-Party Key Exchange Protocol without Server’s Public Keys. The Scientific World Journal،Vol. 2014, no. 2014, pp.1-7.
https://search.emarefa.net/detail/BIM-1049763

Modern Language Association (MLA)

Nam, Junghyun…[et al.]. On the Security of a Simple Three-Party Key Exchange Protocol without Server’s Public Keys. The Scientific World Journal No. 2014 (2014), pp.1-7.
https://search.emarefa.net/detail/BIM-1049763

American Medical Association (AMA)

Nam, Junghyun& Choo, Kim-Kwang Raymond& Park, Minkyu& Paik, Juryon& Won, Dongho. On the Security of a Simple Three-Party Key Exchange Protocol without Server’s Public Keys. The Scientific World Journal. 2014. Vol. 2014, no. 2014, pp.1-7.
https://search.emarefa.net/detail/BIM-1049763

Data Type

Journal Articles

Language

English

Notes

Includes bibliographical references

Record ID

BIM-1049763