Authors: Jingsong Cui; Hang Tu
Addresses: School of Computer Science, Wuhan University, Wuhan, 430072, China ' School of Computer Science, Wuhan University, Wuhan, 430072, China
Abstract: The increasing ubiquity and use of mobile devices enable them to access television programs through mobile pay-TV (MPTV) systems. To achieve secure communication in MPTV systems, authentication schemes for access control in these systems are needed. Recently, a one-to-many authentication (OTMA) scheme that guarantees secure communication in MPTV systems was proposed. However, it was found by other researchers that such a scheme could not resist the impersonation attack and could not provide mutual authentication. As a result, a new OTMA scheme was proposed and it was claimed that OTMA could solve the security weaknesses of the OTMA scheme. We demonstrate that the new OTMA scheme cannot resist the impersonation attack and cannot provide mutual authentication. To mitigate these major security weaknesses, we propose a new OTMA scheme. A security analysis of our proposed OTMA scheme demonstrates that it can overcome the security weaknesses of the previous OTMA scheme and improve its performance.
Keywords: authentication; anonymity; impersonation attack; mobile pay-TV; MPTV; security.
International Journal of Electronic Security and Digital Forensics, 2018 Vol.10 No.3, pp.292 - 310
Received: 31 Jan 2017
Accepted: 06 Oct 2017
Published online: 15 May 2018 *