计算机科学
匿名
计算机安全
会话密钥
认证(法律)
协议(科学)
会话(web分析)
钥匙(锁)
计算机网络
物联网
相互认证
互联网隐私
家庭自动化
块链
身份验证协议
电信
万维网
病理
加密
替代医学
医学
作者
SungJin Yu,Ashok Kumar Das,Young-Ho Park
出处
期刊:IEEE Access
[Institute of Electrical and Electronics Engineers]
日期:2021-01-01
卷期号:9: 49154-49159
被引量:12
标识
DOI:10.1109/access.2021.3068723
摘要
Smart home is intended to be able to enhance home automation systems and achieves goals such as reducing operational costs and increasing comfort while providing security to mobile users. However, an attacker may attempt security attacks in smart home environments because he/she can inject, insert, intercept, delete, and modify transmitted messages over an insecure channel. Secure and lightweight authentication protocols are essential to ensure useful services in smart home environments. In 2020, Iqbal et al. presented an anonymous lightweight authentication protocol for software-defined networking (SDN) enabled smart home, called ALAM. They claimed that ALAM protocol could resist security threats, and also provide secure mutual authentication and user anonymity. This comment demonstrates that ALAM protocol is fragile to various attacks, including session key disclosure, impersonation, and man-in-the-middle attacks, and also their scheme cannot provide user anonymity and mutual authentication. We propose the essential security guidelines to overcome the security flaws of ALAM protocol.
科研通智能强力驱动
Strongly Powered by AbleSci AI