Your browser doesn't support javascript.
loading
Robust ECC-based authenticated key agreement scheme with privacy protection for Telecare medicine information systems.
Zhang, Liping; Zhu, Shaohui.
Afiliação
  • Zhang L; Secure Communication Institute, China University of Geosciences, Wuhan, 430074, China.
J Med Syst ; 39(5): 49, 2015 May.
Article em En | MEDLINE | ID: mdl-25732081
To protect the transmission of the sensitive medical data, a secure and efficient authenticated key agreement scheme should be deployed when the healthcare delivery session is established via Telecare Medicine Information Systems (TMIS) over the unsecure public network. Recently, Islam and Khan proposed an authenticated key agreement scheme using elliptic curve cryptography for TMIS. They claimed that their proposed scheme is provably secure against various attacks in random oracle model and enjoys some good properties such as user anonymity. In this paper, however, we point out that any legal but malicious patient can reveal other user's identity. Consequently, their scheme suffers from server spoofing attack and off-line password guessing attack. Moreover, if the malicious patient performs the same time of the registration as other users, she can further launch the impersonation attack, man-in-the-middle attack, modification attack, replay attack, and strong replay attack successfully. To eliminate these weaknesses, we propose an improved ECC-based authenticated key agreement scheme. Security analysis demonstrates that the proposed scheme can resist various attacks and enables the patient to enjoy the remote healthcare services with privacy protection. Through the performance evaluation, we show that the proposed scheme achieves a desired balance between security and performance in comparisons with other related schemes.
Assuntos

Texto completo: 1 Coleções: 01-internacional Contexto em Saúde: 1_ASSA2030 Base de dados: MEDLINE Assunto principal: Sistemas de Informação / Segurança Computacional / Telemedicina / Confidencialidade Tipo de estudo: Prognostic_studies Limite: Humans País/Região como assunto: Asia Idioma: En Revista: J Med Syst Ano de publicação: 2015 Tipo de documento: Article

Texto completo: 1 Coleções: 01-internacional Contexto em Saúde: 1_ASSA2030 Base de dados: MEDLINE Assunto principal: Sistemas de Informação / Segurança Computacional / Telemedicina / Confidencialidade Tipo de estudo: Prognostic_studies Limite: Humans País/Região como assunto: Asia Idioma: En Revista: J Med Syst Ano de publicação: 2015 Tipo de documento: Article