RT Journal Article
A1 Chun-Ta Li
AD Department of Information Management, Tainan University of Technology, 529 Zhongzheng Road, Tainan City 71002, Taiwan

PB iet
T1 A new password authentication and user anonymity scheme based on elliptic curve cryptography and smart card
JN IET Information Security
VO 7
IS 1
SP 3
OP 10
AB Password authentication has been widely used in computer networks to provide secure remote access control. In this study, the authors show that the improved password authentication and update scheme based on elliptic curve cryptography proposed by Islam and Biswas is vulnerable to offline password guessing, stolen-verifier and insider attacks. We propose an advanced smart card-based password authentication and update scheme and extend the scheme to provide the privacy of the client. By comparing the criteria with other related schemes, our scheme not only solves several hard security threats but also satisfies more functionality features.
K1 password authentication
K1 computer networks
K1 elliptic curve cryptography
K1 stolen verifier
K1 security threats
K1 smart card
K1 offline password guessing
K1 user anonymity scheme
K1 client privacy
K1 secure remote access control
DO https://doi.org/10.1049/iet-ifs.2012.0058
UL https://digital-library.theiet.org/;jsessionid=43rteoev9w3q7.x-iet-live-01content/journals/10.1049/iet-ifs.2012.0058
LA English
SN 1751-8709
YR 2013
OL EN