摘要
本文对一个适用于物联网的身份基在线/离线签密方案进行了密码学分析。使用接收者的内部攻击方法对原方案进行伪造性攻击。该攻击表明一个合法的接收者可以与某个第三方合谋来伪造签密文。使用发送者的内部攻击方法对原方案进行保密性攻击。该攻击表明一个合法的发送者可以与某个第三方合谋来破坏方案的保密性。两种攻击表明,原方案是不安全的,不能应用于物联网环境的安全通信。
This paper analyses the security of an identity based online/offline signcryption scheme for secure communication in Internet of things.A forgery attack is made on the scheme by using the method of inside attacks of receiver.It shows that a valid receiver can collude with any third party to forge a signcryption.A confidential attack is made on the scheme by using the method of inside attacks of sender.It shows that a valid sender can collude with any third party to breach the confidentiality of the scheme.These two attacks show that the original scheme is insecure to be applied in Internet of things.
作者
温博海
周才学
WEN Bohai;ZHOU Caixue(School of Compute and Big Data Science,Jiujiang University,Jiujiang,China,332005)
出处
《福建电脑》
2021年第11期36-38,共3页
Journal of Fujian Computer
基金
江西省教育厅科技项目(No.GJJ201807)资助。
关键词
在线离线签密
身份基
物联网
双线性对
Online Offine Signcryption
Identity-Based Cryptography
Internet of Things
Bilinear Maps