An offline dictionary attack against Abdalla and Pointcheval's key exchange in the password-only three-party setting

dc.contributor.authorNam, J.
dc.contributor.authorChoo, K.K.R.
dc.contributor.authorPaik, J.
dc.contributor.authorWon, D.
dc.date.issued2015
dc.description.abstractAlthough password-only authenticated key exchange (PAKE) in the three-party setting has been widely studied in recent years, it remains a challenging area of research. A key challenge in designing three-party PAKE protocols is to prevent insider dictionary attacks, as evidenced by the flaws discovered in many published protocols. In this letter, we revisit Abdalla and Pointcheval's three-party PAKE protocol from FC 2005 and demonstrate that this protocol, named 3PAKE, is vulnerable to a previously unpublished insider offline dictionary attack. Our attack is dependant on the composition of 3PAKE and the higher-level protocol that uses the established session key.
dc.identifier.citationIEICE Transactions on Fundamentals of Electronics, Communications and Computer Sciences, 2015; E98A(1):424-427
dc.identifier.doi10.1587/transfun.E98.A.424
dc.identifier.issn0916-8508
dc.identifier.issn1745-1337
dc.identifier.urihttps://hdl.handle.net/1959.8/162188
dc.language.isoen
dc.publisherDenshi Jouhou Tsuushin Gakkai
dc.rightsCopyright 2015 The Institute of Electronics, Information and Communication Engineers
dc.source.urihttps://doi.org/10.1587/transfun.E98.A.424
dc.subjectsecurity
dc.subjectthree-party key exchange
dc.subjectpassword-only authenticated key exchange (PAKE)
dc.subjectdictionary attack
dc.subjectinsider attack
dc.titleAn offline dictionary attack against Abdalla and Pointcheval's key exchange in the password-only three-party setting
dc.typeJournal article
pubs.publication-statusPublished
ror.fileinfo12143287270001831 13143282090001831 9915910253101831_53108767630001831.pdf
ror.mmsid9915910253101831

Files

Original bundle
Now showing 1 - 1 of 1
No Thumbnail Available
Name:
9915910253101831_53108767630001831.pdf
Size:
219.04 KB
Format:
Adobe Portable Document Format
Description:
Published version

Collections