Skip to main navigation Skip to search Skip to main content

On the Security of a Secure and Lightweight Authentication Scheme for Next Generation IoT Infrastructure

  • Ashok Kumar Das
  • , Basudeb Bera
  • , Mohammad Wazid
  • , Sajjad Shaukat Jamal
  • , Youngho Park
  • International Institute of Information Technology Hyderabad
  • Graphic Era
  • King Khalid University

Research output: Contribution to journalArticlepeer-review

48 Scopus citations

Abstract

In recent years, the Internet of things (IoT) has become an encouraging communication paradigm that has numerous applications including smart city, smart home and intelligent transportation system. The information sensed by several IoT smart devices can be security stored at the (cloud) servers. An external user, being a client, can access the services from a server for the sensing information, provided that a mutual authentication happens among them. Using the established session key among the user and the server, encrypted information with the help of session key can be delivered to the user by the server securely. Recently, Rana et al. proposed a smart-card based remote user authentication scheme using user password. In this comment paper, we carefully analyzed the scheme of Rana et al. and tracked down that their scheme is insecure against serious attacks, including stolen smart card attack, privileged-insider attack, user impersonation attack, password change attack and Ephemeral Secret Leakage (ESL) attack. Furthermore, their scheme does not preserve untraceability feature. To remedy these security pitfalls, we also provide some remedies that can help in building more secure and effective user authentication scheme to apply in securing next generation IoT infrastructure.

Original languageEnglish
Article number9427478
Pages (from-to)71856-71867
Number of pages12
JournalIEEE Access
Volume9
DOIs
StatePublished - 2021

UN SDGs

This output contributes to the following UN Sustainable Development Goals (SDGs)

  1. SDG 11 - Sustainable Cities and Communities
    SDG 11 Sustainable Cities and Communities

Keywords

  • authentication
  • cryptanalysis
  • Internet of Things (IoT)
  • key agreement
  • security

Fingerprint

Dive into the research topics of 'On the Security of a Secure and Lightweight Authentication Scheme for Next Generation IoT Infrastructure'. Together they form a unique fingerprint.

Cite this