Cryptanalysis of a Password-based Key Exchange Protocol
Xiao-Dong Zuo, Fengmei Liu, Chuan-Lun Ren · 2007
In 2002, Yeh and Sun proposed a simple authenticated key agreement protocol resistant to password guessing attacks. And they provided a formal proof of security to show its strength against both passive and active adversaries. However, the scheme presented by Yeh and Sun has secure flaws. In this paper, we provide the secure analysis of the scheme and show that it can not resist the stolen-verifier attack and man-in-the-middle attack.