Password-Only Authenticated Three-Party Key Exchange with Provable Security in the Standard Model

Joint Authors

Nam, Junghyun
Won, Dongho
Choo, Kim-Kwang Raymond
Kim, Junghwan
Kang, Hyun-Kyu
Kim, Jinsoo
Paik, Juryon

Source

The Scientific World Journal

Issue

Vol. 2014, Issue 2014 (31 Dec. 2014), pp.1-11, 11 p.

Publisher

Hindawi Publishing Corporation

Publication Date

2014-04-13

Country of Publication

Egypt

No. of Pages

11

Main Subjects

Medicine
Information Technology and Computer Science

Abstract EN

Protocols for password-only authenticated key exchange (PAKE) in the three-party setting allow two clients registered with the same authentication server to derive a common secret key from their individual password shared with the server.

Existing three-party PAKE protocols were proven secure under the assumption of the existence of random oracles or in a model that does not consider insider attacks.

Therefore, these protocols may turn out to be insecure when the random oracle is instantiated with a particular hash function or an insider attack is mounted against the partner client.

The contribution of this paper is to present the first three-party PAKE protocol whose security is proven without any idealized assumptions in a model that captures insider attacks.

The proof model we use is a variant of the indistinguishability-based model of Bellare, Pointcheval, and Rogaway (2000), which is one of the most widely accepted models for security analysis of password-based key exchange protocols.

We demonstrated that our protocol achieves not only the typical indistinguishability-based security of session keys but also the password security against undetectable online dictionary attacks.

American Psychological Association (APA)

Nam, Junghyun& Choo, Kim-Kwang Raymond& Kim, Junghwan& Kang, Hyun-Kyu& Kim, Jinsoo& Paik, Juryon…[et al.]. 2014. Password-Only Authenticated Three-Party Key Exchange with Provable Security in the Standard Model. The Scientific World Journal،Vol. 2014, no. 2014, pp.1-11.
https://search.emarefa.net/detail/BIM-1051213

Modern Language Association (MLA)

Nam, Junghyun…[et al.]. Password-Only Authenticated Three-Party Key Exchange with Provable Security in the Standard Model. The Scientific World Journal No. 2014 (2014), pp.1-11.
https://search.emarefa.net/detail/BIM-1051213

American Medical Association (AMA)

Nam, Junghyun& Choo, Kim-Kwang Raymond& Kim, Junghwan& Kang, Hyun-Kyu& Kim, Jinsoo& Paik, Juryon…[et al.]. Password-Only Authenticated Three-Party Key Exchange with Provable Security in the Standard Model. The Scientific World Journal. 2014. Vol. 2014, no. 2014, pp.1-11.
https://search.emarefa.net/detail/BIM-1051213

Data Type

Journal Articles

Language

English

Notes

Includes bibliographical references

Record ID

BIM-1051213