October 30, 2015· Security and Communication Networks
article
Open access
Cryptanalysis of a robust key agreement based on public key authentication
Authors:Mohsen Toorani *
Abstract
Abstract This paper considers security analysis of the YAK, a public key‐based authenticated key agreement protocol. The YAK protocol is a variant of the two‐pass HMQV protocol but uses zero‐knowledge proofs for proving knowledge of ephemeral values. In this paper, we show that the YAK protocol lacks joint key control and perfect forward secrecy attributes and is vulnerable to some attacks including unknown key‐share and key‐replication attacks. This invalidates the semantic security of the protocol in several security models. There are also other considerations regarding the impersonation and small subgroup attacks. Copyright © 2015 John Wiley & Sons, Ltd.
Community
0 commentsUse Connect Wallet in the navigation
No discussion yet
Be the first to share a question or observation.