Cryptanalysis of an improved EPA protocol

Tianjie Cao,Yong Zhang
2008-01-01
Journal of Information and Computational Science
Abstract:The efficient password-based authentication (EPA) protocol was proposed by Hwang et al.. Recently, Kwon et al. pointed out that EPA is vulnerable to server compromise, and then they proposed an improved EPA protocol. In this paper, we show that the server compromise attacks also exist in the improved EPA protocol. We also propose a modification method to eliminate this weakness. 1548-7741/Copyright © 2008 Binary Information Press October 2008.
What problem does this paper attempt to address?