On the Security of Authenticated Group Key Agreement Protocols

Authors

  • Suman Bala Université libre de Bruxelles
  • Gaurav Sharma Universite Libre de Brussels
  • Himani Bansal Jaypee Institute of Information Technology
  • Tarunpreet Bhatia Thapar University

DOI:

https://doi.org/10.12694/scpe.v20i1.1440

Abstract

The group key agreement protocol enables to derive a shared session key for the remote members to communicate securely. Recently, several attempts are made to utilize group key agreement protocols for secure multicasting in Internet of Things. This paper contributes to identify the security vulnerabilities in the existing protocols, to avoid them in future constructions. The protocols presented by Gupta and Biswas have been found insecure to ephemeral secret key leakage (ESL) attack and also, malicious insiders can impersonate an honest participant. Additionally, the protocol presented by Tan is also ESL-insecure. We also present a fix to the Tan's protocol to make it secure.

Downloads

Published

2019-03-09

Issue

Section

Proposal for Special Issue Papers