A Novel Lightweight Authentication Scheme for RFID-Based Healthcare Systems

Feng Zhu,Peng Li,He Xu,Ruchuan Wang
DOI: https://doi.org/10.3390/s20174846
IF: 3.9
2020-08-27
Sensors
Abstract:The Internet of Things (IoT) has been integrated into legacy healthcare systems for the purpose of improving healthcare processes. As one of the key technologies of IoT, radio frequency identification (RFID) technology has been applied to offer services like patient monitoring, drug administration, and medical asset tracking. However, people have concerns about the security and privacy of RFID-based healthcare systems, which require a proper solution. To solve the problem, recently in 2019, Fan et al. proposed a lightweight RFID authentication scheme in the IEEE Network. They claimed that their scheme can resist various attacks in RFID systems with low implementation cost, and thus is suitable for RFID-based healthcare systems. In this article, our contributions mainly consist of two parts. First, we analyze the security of Fan et al.’s scheme and find out its security vulnerabilities. Second, we propose a novel lightweight authentication scheme to overcome these security weaknesses. The security analysis shows that our scheme can satisfy the necessary security requirements. Besides, the performance evaluation demonstrates that our scheme is of low cost. Thus, our scheme is well-suited for practical RFID-based healthcare systems.
engineering, electrical & electronic,chemistry, analytical,instruments & instrumentation
What problem does this paper attempt to address?
The paper primarily proposes a new lightweight authentication scheme for the application of RFID (Radio Frequency Identification) technology in healthcare systems. The paper first points out the advantages of using RFID technology in healthcare systems, including patient monitoring, medication management, and medical asset tracking. However, RFID systems also face a series of security and privacy issues, such as location leakage due to tag tracking and unauthorized reading of patients' medical data. To address these issues, the paper first analyzes the lightweight RFID authentication scheme proposed by Fan et al. in 2019 and identifies the security vulnerabilities in the scheme, including the lack of forward secrecy and susceptibility to impersonation attacks. Subsequently, the paper proposes an improved scheme to overcome these security weaknesses. Specifically, the main contributions of the paper include: 1. Conducting a security analysis of the scheme proposed by Fan et al. and identifying its security flaws. 2. Proposing a new lightweight authentication scheme, which is proven to be more secure than existing schemes through both informal and formal security analyses. 3. Evaluating the performance of the proposed scheme in terms of computational cost, communication cost, storage cost, and hardware implementation cost, demonstrating that the scheme is efficient and compliant with the EPC C1G2 standard. In summary, the goal of this paper is to address the security challenges faced by the application of RFID technology in healthcare systems, especially for resource-constrained tag devices, by designing an authentication scheme that is both secure and efficient.