Efficient OTP(One Time Password) Generation using AES-based MAC
Soon Dong Park, Joong Chae Na, Young-Hwan Kim, Dong Kyue Kim · Journal of Korea Multimedia Society · 2008
The ID/password method is the most classical method among authentication techniques on the internet, and is performed more easily and successfully than other methods. However, it is a vulnerable method against attacks such as eavesdropping or replay attack. To overcome this problem, OTP technique is used. The most popular OTP is HOTP algorithm, which is based on one-way hash function SHA-l. As recent researches show the weakness of the hash function, we need a new algorithm to replace HOTP. In this paper we propose a new OTP algorithm using the MAC (Message Authentication Code) based on AES. We also show that the new OTP outperforms HOTP experimentally.