Cryptanalysis of Sun and Cao's Remote Authentication Scheme with User Anonymity [article]

Dheerendra Mishra
2014 arXiv   pre-print
Dynamic ID-based remote user authentication schemes ensure efficient and anonymous mutual authentication between entities. In 2013, Khan et al. proposed an improved dynamic ID-based authentication scheme to overcome the security flaws of Wang et al.'s authentication scheme. Recently, Sun and Cao showed that Khan et al. does not satisfies the claim of the user's privacy and proposed an efficient authentication scheme with user anonymity. The Sun and Cao's scheme achieve improvement over Khan et
more » ... l.'s scheme in both privacy and performance point of view. Unfortunately, we identify that Sun and Cao's scheme does not resist password guessing attack. Additionally, Sun and Cao's scheme does not achieve forward secrecy.
arXiv:1310.6422v2 fatcat:gsx2k3iwyfd57e5mgtxndcgawe