Security of group key exchange protocols with different passwords

Password-based authenticated group key exchange protocols allow group users to jointly share a session key based on a human-memorizable password. In this paper, we present an undetectable online dictionary attack on N-EKE-D, a recent provably secure protocol designed to explicitly resist this type o...

Full description

Saved in:
Bibliographic Details
Main Author: Raphael C.-W. Phan
Format: Default Conference proceeding
Published: 2009
Subjects:
Online Access:https://hdl.handle.net/2134/5686
Tags: Add Tag
No Tags, Be the first to tag this record!
id rr-article-9555020
record_format Figshare
spelling rr-article-95550202009-01-01T00:00:00Z Security of group key exchange protocols with different passwords Raphael C.-W. Phan (7168670) Mechanical engineering not elsewhere classified Password-authenticated key exchange Cryptanalysis Group Key indistinguishability Model Proof Undetectable online dictionary attack Mechanical Engineering not elsewhere classified Password-based authenticated group key exchange protocols allow group users to jointly share a session key based on a human-memorizable password. In this paper, we present an undetectable online dictionary attack on N-EKE-D, a recent provably secure protocol designed to explicitly resist this type of attack. Thus, our result contradicts the design goal. We also give a simple attack on the key indistinguishability of N-EKE-D and two N-EKE-M variants that exploits the definition of partnering in their security model. 2009-01-01T00:00:00Z Text Conference contribution 2134/5686 https://figshare.com/articles/conference_contribution/Security_of_group_key_exchange_protocols_with_different_passwords/9555020 CC BY-NC-ND 4.0
institution Loughborough University
collection Figshare
topic Mechanical engineering not elsewhere classified
Password-authenticated key exchange
Cryptanalysis
Group
Key indistinguishability
Model
Proof
Undetectable online dictionary attack
Mechanical Engineering not elsewhere classified
spellingShingle Mechanical engineering not elsewhere classified
Password-authenticated key exchange
Cryptanalysis
Group
Key indistinguishability
Model
Proof
Undetectable online dictionary attack
Mechanical Engineering not elsewhere classified
Raphael C.-W. Phan
Security of group key exchange protocols with different passwords
description Password-based authenticated group key exchange protocols allow group users to jointly share a session key based on a human-memorizable password. In this paper, we present an undetectable online dictionary attack on N-EKE-D, a recent provably secure protocol designed to explicitly resist this type of attack. Thus, our result contradicts the design goal. We also give a simple attack on the key indistinguishability of N-EKE-D and two N-EKE-M variants that exploits the definition of partnering in their security model.
format Default
Conference proceeding
author Raphael C.-W. Phan
author_facet Raphael C.-W. Phan
author_sort Raphael C.-W. Phan (7168670)
title Security of group key exchange protocols with different passwords
title_short Security of group key exchange protocols with different passwords
title_full Security of group key exchange protocols with different passwords
title_fullStr Security of group key exchange protocols with different passwords
title_full_unstemmed Security of group key exchange protocols with different passwords
title_sort security of group key exchange protocols with different passwords
publishDate 2009
url https://hdl.handle.net/2134/5686
_version_ 1796742802538758144