An Improved Fingerprint-Based Remote User Authentication Scheme Using Smart Cards (original) (raw)

Abstract

In the computing environments, remote user authentication is an important part of security. Combining fingerprint verification and smart cards is one of a potential solution for strong remote user authentication. In this paper, we cryptanalyze an efficient fingerprint-based remote user authentication scheme introduced by Yoon and Yoo in 2005, and propose a new scheme improved with regard to security and efficiency. Actually, the Yoon-Yoo scheme is a security improvement on the previous Lin-Lai fingerprint-based verification scheme, while the Lin-Lai scheme is a precedent improvement on the Lee-Ryu-Yoo scheme. However, we have found that the most recent Yoon-Yoo scheme is still vulnerable to various types of impersonation attacks. Our new protocol is resistant to those attacks and more efficient than the previous schemes.

This research was supported by the MIC (Ministry of Information and Communication), Korea, under the ITRC (Information Technology Research Center) support program supervised by the IITA (Institute of Information Technology Assessment).

Preview

Unable to display preview. Download preview PDF.

Similar content being viewed by others

References

  1. ElGamal, T.: A Public-Key Cryptosystem And a Signature Scheme Based On Discrete Logarithm. IEEE Transactions on Information Theory IT-31(4), 469–472 (1985)
    Article MathSciNet Google Scholar
  2. Jablon, D.: Strong Password-Only Authenticated Key Exchange. Computer Communication Review 26(5), 5–26 (1996)
    Article Google Scholar
  3. Lamport, L.: Password Authentication with Insecure Communication. Communication of the ACM 24(11), 770–772 (1981)
    Article MathSciNet Google Scholar
  4. Lee, J.K., Ryu, S.R., Yoo, K.Y.: Fingerprint-Based Remote User Authentication Scheme Using Smart Cards. Electronics Letters 38(12), 554–555 (2002)
    Article Google Scholar
  5. Lin, C.H., Lai, Y.Y.: A Fingerprint-Based User Authentication Scheme for Multimedia Systems. In: Proceedings of the 2004 IEEE International Conference on Multimedia & Expo. (ICME 2004), Taipei, Taiwan, vol. 2, pp. 935–938 (2004)
    Google Scholar
  6. van Oorschot, P.C., Wiener, M.J.: On Diffie-Hellman Key Agreement with Short Exponents. In: Maurer, U.M. (ed.) EUROCRYPT 1996. LNCS, vol. 1070, pp. 332–343. Springer, Heidelberg (1996)
    Google Scholar
  7. Ratha, N.K., Karu, K., Chen, S., Jain, A.K.: A Real-time Matching System for Large Fingerprint Databases. IEEE Transactions on Pattern Analysis and Machine Interlligence 18(8), 799–813 (1996)
    Article Google Scholar
  8. Yoon, E.J., Yoo, K.Y.: A New Efficient Fingerprint-Based Remote User Authentication Scheme for Multimedia Systems. In: Khosla, R., Howlett, R.J., Jain, L.C. (eds.) KES 2005. LNCS (LNAI), vol. 3683, pp. 332–338. Springer, Heidelberg (2005)
    Chapter Google Scholar

Download references

Author information

Authors and Affiliations

  1. Information Security Lab., Sejong University, Seoul, 143-747, Korea
    Youngkwon Lee & Taekyoung Kwon

Authors

  1. Youngkwon Lee
  2. Taekyoung Kwon

Editor information

Editors and Affiliations

  1. Department of Computer Science, University of Calgary, 2500 University Drive N.W., T2N 1N4, Calgary, AB, Canada
    Marina L. Gavrilova
  2. Department of Mathematics and Computer Science, University of Perugia, via Vanvitelli, 1, I-06123, Perugia, Italy
    Osvaldo Gervasi
  3. William Norris Professor, Head of the Computer Science and Engineering Department, University of Minnesota, USA
    Vipin Kumar
  4. OptimaNumerics Ltd., Cathedral House, 23-31 Waring Street, BT1 2DX, Belfast, UK
    C. J. Kenneth Tan
  5. Clayton School of IT, Monash University, 3800, Clayton, Australia
    David Taniar
  6. Department of Chemistry, University of Perugia, Via Elce di Sotto, 8, I-06123, Perugia, Italy
    Antonio Laganá
  7. School of Computing, Soongsil University, Seoul, Korea
    Youngsong Mun
  8. School of Information and Communication Engineering, Sungkyunkwan University, Korea
    Hyunseung Choo

Rights and permissions

© 2006 Springer-Verlag Berlin Heidelberg

About this paper

Cite this paper

Lee, Y., Kwon, T. (2006). An Improved Fingerprint-Based Remote User Authentication Scheme Using Smart Cards. In: Gavrilova, M.L., et al. Computational Science and Its Applications - ICCSA 2006. ICCSA 2006. Lecture Notes in Computer Science, vol 3981. Springer, Berlin, Heidelberg. https://doi.org/10.1007/11751588\_95

Download citation

Publish with us