A Lightweight Anti-Desynchronization RFID Authentication Protocol

Shijie Zhou,Zhen Zhang,Zongwei Luo,Edward C. Wong
DOI: https://doi.org/10.1007/s10796-009-9216-6
2009-01-01
Information Systems Frontiers
Abstract:Radio frequency identification (RFID) technology has been widely used in ubiquitous infrastructures. However, resource constraint in the low-cost RFID systems has posed potential risks such as privacy and security problems, becoming adoption barrier for RFID-based applications. In this paper, current security issues in RFID are introduced firstly. Then, we propose a lightweight Anti-desynchronization privacy preserving RFID authentication protocol. It is particularly suitable for the low-cost RFID environment for only the capacity of one-way hash function and XOR operation is needed. In this lightweight Anti-desynchronization RFID authentication protocol, the back-end server keeps the history of the random key update to prevent the active attackers from de-synchronizing the shared secret between the tag and the back-end server. The security and the performance of the proposed protocol are analyzed as well.
What problem does this paper attempt to address?