On the Security of a Key Agreement and Key Protection Scheme

Yunxia Han,Chunxiang Xu,Debiao He,Kefei Chen
DOI: https://doi.org/10.1109/tifs.2020.2986881
IF: 7.231
2020-01-01
IEEE Transactions on Information Forensics and Security
Abstract:We point out that the key agreement and key protection scheme (published in IEEE Transactions on Information Forensics and Security, doi: 10.1109/TIFS.2018.2850299) fails to achieve the two-factor security. We demonstrate that in the scheme, if an adversary can control the master device of a target user, he can impersonate the user to pass the server's authentication.
What problem does this paper attempt to address?