• 中国计算机学会会刊
  • 中国科技核心期刊
  • 中文核心期刊

J4 ›› 2011, Vol. 33 ›› Issue (1): 51-55.doi: 10.3969/j.issn.1007130X.2011.

• 论文 •



  1. (湛江师范学院商学院,广东 湛江 524048)
  • 收稿日期:2010-03-08 修回日期:2010-05-25 出版日期:2011-01-25 发布日期:2011-01-25
  • 通讯作者: 王松波 E-mail:songbowang@21cn.com
  • 作者简介:王松波(1971),男,吉林安图人,博士,副教授,研究方向为电子商务。
  • 基金资助:


An Improved Remote User Authentication Scheme

WANG Songbo   

  1. (School of Business,Zhanjiang Normal College,Zhanjiang 524048,China)
  • Received:2010-03-08 Revised:2010-05-25 Online:2011-01-25 Published:2011-01-25



关键词: 身份认证, 安全缺陷, 伪装用户攻击, 伪装服务器攻击, 窃取校验机攻击


For some security flaws that lie hidden in the YoonYoo’s user authentication scheme such as masquerading user attack, masquerading server attack and stolen verifier attack, this paper proposes a new remote user authentication scheme using random numbers to repeat hash operations. This scheme resolves all the aforementioned problems, while keeping the merits of YoonYoo’s scheme. Therefore, this scheme has a more stable security, and provides an effective solution of remote user authentication for electronic commerce.

Key words: authentication;security flaws;masquerading user attack;masquerading server