标题：Attacks and solutions on a three-party password-based authenticated key exchange protocol for wireless communications
作者：Chen, Chien-Ming; Wang, King-Hang; Yeh, Kuo-Hui; Xiang, Bin; Wu, Tsu-Yang
作者机构：[Chen, Chien-Ming] Shandong Univ Sci & Technol, Coll Comp Sci & Engn, Qingdao, Shandong, Peoples R China.; [Wang, King-Hang] Hong Kong Univ Sci & Te 更多
通讯作者：Wu, TY;Wu, TsuYang
通讯作者地址：[Wu, TY]Fujian Univ Technol, Natl Demonstrat Ctr Expt Elect Informat & Elect T, Fujian Prov Key Lab Big Data Min & Applicat, Fujian, Peoples R China.
来源：JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING
关键词：Authenticated key exchange; Password-based; Wireless communication;; Proverif
摘要：A secure authenticated key exchange protocol is an essential key to bootstrap a secure wireless communication. Various research have been conducted to study the efficiency and security of these authenticated key exchange protocol. A recent work by Lu et al. addresses the needs of a three parties secure communication by presenting a new protocol that claimed to be resistance against various attacks. However we found that their protocol is still vulnerable against an off-line password guessing attack. In this attack, an adversary can obtain the password of an user without any direct interactions with the server. To surmount such problem, we propose a new three-party password-based authenticated key exchange protocol. The security of our protocol are proved by the automatic cryptographic protocol tool proverif. The protocol presented is also more secure and efficient comparing with other similar protocols in the literature.