Paper 2024/1191
A note on ``a novel authentication protocol for IoT-enabled devices''
Abstract
We show that the authentication protocol [IEEE Internet Things J., 2023, 10(1), 867-876] is not correctly specified, because the server cannot complete its computations. To revise, the embedded device needs to compute an extra point multiplication over the underlying elliptic curve. We also find the protocol cannot provide anonymity, not as claimed. It can only provide pseudonymity.
Metadata
- Available format(s)
- Category
- Attacks and cryptanalysis
- Publication info
- Preprint.
- Keywords
- Authenticationanonymitypseudonymitypoint multiplicationelliptic curve
- Contact author(s)
- liulh @ shmtu edu cn
- History
- 2024-07-25: approved
- 2024-07-23: received
- See all versions
- Short URL
- https://ia.cr/2024/1191
- License
-
CC0
BibTeX
@misc{cryptoeprint:2024/1191, author = {Zhengjun Cao and Lihua Liu}, title = {A note on ``a novel authentication protocol for {IoT}-enabled devices''}, howpublished = {Cryptology {ePrint} Archive, Paper 2024/1191}, year = {2024}, url = {https://eprint.iacr.org/2024/1191} }