Cryptanalysis of Two Efficient Password-based Authentication Schemes Using Smart Cards.
Ying Wang, Xinguang Peng · International journal of network security · 2015
In 2011, Kumar et al. proposed an e‐cient password authentication scheme using smart cards to overcome the security ∞aws in Liao et al. scheme. However, in this paper, we point out that Kumar et al.’s scheme actually has various defects been overlooked, such as no provision of forward secrecy, poor repairability and practicality. More recently, Ramasamy and Muniyandi presented an e‐cient two-factor scheme based on RSA and this scheme is claimed to have a number of merits over existing schemes. Notwithstanding their ambitions, RamasamyMuniyandi’s scheme is vulnerable to user impersonation attack, and it actually is equivalent to a verifler-tablebased scheme, which discourages any use of the scheme for practical applications.