Security Analysis of “SMAKA: Secure Many-to-Many Authentication and Key Agreement Scheme for Vehicular Networks”

Junjie Jiang, Willy Susilo, Joonsang Baek · IEEE Transactions on Information Forensics and Security · 2022

In the above article, Zhanget al.(2021) proposed a many-to-many authentication and key agreement scheme named SMAKA for secure authentication and key agreement between multiple vehicles and cloud service providers (CSPs) in a vehicular network. However, we identify a security flaw in the design of Zhanget al.’s scheme, which allows an attacker to hijack an authentication session between a vehicle and a CSP and impersonate the vehicle to establish a shared key with the CSP with a high chance.

Read the paper · More papers on PaperTik