Attacks on the (enhanced) Yang-Shieh Authentication

KF Chen,S Zhong
DOI: https://doi.org/10.1016/s0167-4048(03)00012-9
IF: 5.105
2003-01-01
Computers & Security
Abstract:The Yang-Shieh authentication is a time-stamp based password authentication scheme that uses smart cards [1]. In [2,3], various attacks on this scheme are described. However, an enhancement of the scheme is proposed in [3] and enables the scheme to resist these existing attacks. In this paper, we show two new attack that can break the enhanced scheme. We further point out that the fundamental computational assumption of the Yang-Shieh authentication scheme is incorrect.
What problem does this paper attempt to address?