{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,28]],"date-time":"2025-03-28T04:11:09Z","timestamp":1743135069819,"version":"3.40.3"},"publisher-location":"Cham","reference-count":41,"publisher":"Springer International Publishing","isbn-type":[{"type":"print","value":"9783030105907"},{"type":"electronic","value":"9783030105914"}],"license":[{"start":{"date-parts":[[2021,1,1]],"date-time":"2021-01-01T00:00:00Z","timestamp":1609459200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"},{"start":{"date-parts":[[2021,1,15]],"date-time":"2021-01-15T00:00:00Z","timestamp":1610668800000},"content-version":"vor","delay-in-days":14,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2021]]},"abstract":"<jats:title>Abstract<\/jats:title><jats:p>In this chapter we provide a<jats:italic>critical look<\/jats:italic>at the state of the art in ultra-lightweight authentication protocols. We start by outlining the features of the current ubiquitous and pervasive computing environment that have motivated the development of the ultra-lightweight paradigm which uses only basic arithmetic and logical operations. We emphasize its goals and its main challenges. Then, we focus our attention on the authentication problem. We use an abstract framework for modeling the protocols proposed over the years, in order to discuss their design strategies and the security and privacy properties they aim to achieve. After that, we survey the weaknesses and the common pitfalls in both the design and the analysis of ultra-lightweight authentication protocols. Finally, we conclude the chapter by discussing some fundamental ideas and research directions.<\/jats:p>","DOI":"10.1007\/978-3-030-10591-4_6","type":"book-chapter","created":{"date-parts":[[2021,1,14]],"date-time":"2021-01-14T14:06:41Z","timestamp":1610633201000},"page":"99-112","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":0,"title":["Ultra-lightweight Authentication"],"prefix":"10.1007","author":[{"given":"Xavier","family":"Carpent","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Paolo","family":"D\u2019Arco","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Roberto De","family":"Prisco","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2021,1,15]]},"reference":[{"key":"6_CR26","doi-asserted-by":"crossref","unstructured":"Frederik Armknecht, Matthias Hamann, and Vasily Mikhalev. Lightweight authentication protocols on ultra-lightweight RFIDs \u2013 myths and facts. In Workshop on RFID Security \u2013 RFIDSec\u201914, Oxford, UK, July 2014.","DOI":"10.1007\/978-3-319-13066-8_1"},{"issue":"2","key":"6_CR33","doi-asserted-by":"publisher","first-page":"313","DOI":"10.1007\/s00145-012-9125-6","volume":"26","author":"Jean-Philippe Aumasson","year":"2013","unstructured":"Jean-Philippe Aumasson, Luca Henzen, Willi Meier, and Mar\u00eda Naya-Plasencia. Quark: A lightweight hash. Journal of Cryptology, 26(2):313\u2013339, April 2013.","journal-title":"Journal of Cryptology"},{"key":"6_CR37","unstructured":"Jean-Philippe Aumasson, Samuel Neves, Zooko Wilcox-O\u2019Hearn, and Christian Winnerlein. BLAKE2: Simpler, smaller, fast as MD5. In Michael J. Jacobson Jr., Michael E. Locasto, Payman Mohassel, and Reihaneh Safavi-Naini, editors, ACNS 13: 11th International Conference on Applied Cryptography and Network Security, volume 7954 of Lecture Notes in Computer Science, pages 119\u2013135, Banff, AB, Canada, June 25\u201328, 2013. Springer."},{"issue":"9","key":"6_CR43","doi-asserted-by":"publisher","first-page":"2317","DOI":"10.1109\/TMC.2015.2492553","volume":"15","author":"Gildas Avoine","year":"2016","unstructured":"Gildas Avoine, Xavier Carpent, and Julio Hernandez-Castro. Pitfalls in ultralightweight authentication protocol designs. IEEE Trans. Mob. Comput., 15(9):2317\u20132332, 2016.","journal-title":"IEEE Trans. Mob. Comput."},{"key":"6_CR44","doi-asserted-by":"crossref","unstructured":"Gildas Avoine, Xavier Carpent, and Benjamin Martin. Strong Authentication and Strong Integrity (SASI) is not that Strong. In S.B. Ors Yalcin, editor, Workshop on RFID Security \u2013 RFIDSec\u201910, volume 6370 of Lecture Notes in Computer Science, pages 50\u201364, Istanbul, Turkey, June 2010. Springer.","DOI":"10.1007\/978-3-642-16822-2_5"},{"key":"6_CR81","unstructured":"G. Bertoni, J. Daemen, M. Peeters, and G. Van Assche. Keccak sponge function family main document. Submission to NIST (Round 2), 2009."},{"key":"6_CR101","doi-asserted-by":"crossref","unstructured":"Andrey Bogdanov, Lars R. Knudsen, Gregor Leander, Christof Paar, Axel Poschmann, Matthew J. B. Robshaw, Yannick Seurin, and C. Vikkelsoe. PRESENT: An ultra-lightweight block cipher. In Pascal Paillier and Ingrid Verbauwhede, editors, Cryptographic Hardware and Embedded Systems \u2013 CHES 2007, volume 4727 of Lecture Notes in Computer Science, pages 450\u2013466, Vienna, Austria, September 10\u201313, 2007. Springer.","DOI":"10.1007\/978-3-540-74735-2_31"},{"key":"6_CR130","unstructured":"Xavier Carpent. RFID authentication and time-memory trade-offs. PhD thesis, Catholic University of Louvain, Louvain-la-Neuve, Belgium, 2015."},{"issue":"4","key":"6_CR139","doi-asserted-by":"publisher","first-page":"337","DOI":"10.1109\/TDSC.2007.70226","volume":"4","author":"Hung-Yu Chien","year":"2007","unstructured":"Hung-Yu Chien. SASI: A new ultralightweight RFID authentication protocol providing strong authentication and strong integrity. IEEE Transactions on Dependable and Secure Computing, 4(4):337\u2013340, December 2007.","journal-title":"IEEE Transactions on Dependable and Secure Computing"},{"key":"6_CR169","unstructured":"Paolo D\u2019Arco and Alfredo De Santis. On Ultra-Lightweight RFID Authentication Protocols. IEEE Transactions on Dependable and Secure Computing, 99(PrePrints), 2010."},{"key":"6_CR170","doi-asserted-by":"crossref","unstructured":"Paolo D\u2019Arco and Roberto De Prisco. Design weaknesses in recent ultralightweight RFID authentication protocols. In ICT Systems Security and Privacy Protection - 33rd IFIP TC 11 International Conference, SEC 2018, Held at the 24th IFIP World Computer Congress, WCC 2018, Poznan, Poland, September 18\u201320, 2018, Proceedings, pages 3\u201317, 2018.","DOI":"10.1007\/978-3-319-99828-2_1"},{"issue":"21","key":"6_CR231","doi-asserted-by":"publisher","first-page":"1169","DOI":"10.1049\/el:20052622","volume":"41","author":"Henri Gilbert","year":"2005","unstructured":"Henri Gilbert, Matthew Robshaw, and Herv\u00e9 Sibert. An active attack against HB+ \u2013 a provably secure lightweight authentication protocol. IET Electronics Letters, 41(21):1169\u20131170, October 2005.","journal-title":"IET Electronics Letters"},{"key":"6_CR232","doi-asserted-by":"crossref","unstructured":"Henri Gilbert, Matthew J. B. Robshaw, and Yannick Seurin. Good variants of HB+ are hard to find. In Gene Tsudik, editor, FC 2008: 12th International Conference on Financial Cryptography and Data Security, volume 5143 of Lecture Notes in Computer Science, pages 156\u2013170, Cozumel, Mexico, January 28\u201331, 2008. Springer.","DOI":"10.1007\/978-3-540-85230-8_12"},{"key":"6_CR233","doi-asserted-by":"crossref","unstructured":"Henri Gilbert, Matthew J. B. Robshaw, and Yannick Seurin. HB\u266f: Increasing the security and efficiency of HB+. In Nigel P. Smart, editor, Advances in Cryptology \u2013 EUROCRYPT 2008, volume 4965 of Lecture Notes in Computer Science, pages 361\u2013378, Istanbul, Turkey, April 13\u201317, 2008. Springer.","DOI":"10.1007\/978-3-540-78967-3_21"},{"key":"6_CR251","doi-asserted-by":"crossref","unstructured":"Jian Guo, Thomas Peyrin, and Axel Poschmann. The PHOTON family of lightweight hash functions. In Phillip Rogaway, editor, Advances in Cryptology \u2013 CRYPTO 2011, volume 6841 of Lecture Notes in Computer Science, pages 222\u2013239, Santa Barbara, CA, USA, August 14\u201318, 2011. Springer.","DOI":"10.1007\/978-3-642-22792-9_13"},{"key":"6_CR273","doi-asserted-by":"crossref","unstructured":"Julio C. Hernandez-Castro, Pedro Peris-Lopez, Raphael C.W. Phan, and Juan M. Estevez-Tapiador. Cryptanalysis of the David-Prasad RFID Ultralightweight Authentication Protocol. In S.B. Ors Yalcin, editor, Workshop on RFID Security \u2013 RFIDSec\u201910, volume 6370 of Lecture Notes in Computer Science, pages 22\u201334, Istanbul, Turkey, June 2010. Springer.","DOI":"10.1007\/978-3-642-16822-2_3"},{"key":"6_CR284","doi-asserted-by":"crossref","unstructured":"Nicholas J. Hopper and Manuel Blum. Secure human identification protocols. In Colin Boyd, editor, Advances in Cryptology \u2013 ASIACRYPT 2001, volume 2248 of Lecture Notes in Computer Science, pages 52\u201366, Gold Coast, Australia, December 9\u201313, 2001. Springer.","DOI":"10.1007\/3-540-45682-1_4"},{"issue":"2","key":"6_CR308","doi-asserted-by":"publisher","first-page":"381","DOI":"10.1109\/JSAC.2005.861395","volume":"24","author":"Ari Juels","year":"2006","unstructured":"Ari Juels. RFID Security and Privacy: A Research Survey. IEEE Journal on Selected Areas in Communications, 24(2):381\u2013394, February 2006.","journal-title":"IEEE Journal on Selected Areas in Communications"},{"key":"6_CR310","doi-asserted-by":"crossref","unstructured":"Ari Juels and Stephen A. Weis. Authenticating pervasive devices with human protocols. In Victor Shoup, editor, Advances in Cryptology \u2013 CRYPTO 2005, volume 3621 of Lecture Notes in Computer Science, pages 293\u2013308, Santa Barbara, CA, USA, August 14\u201318, 2005. Springer.","DOI":"10.1007\/11535218_18"},{"key":"6_CR319","doi-asserted-by":"crossref","unstructured":"John Kelsey, Bruce Schneier, and David Wagner. Mod n cryptanalysis, with applications against RC5P and M6. In Lars R. Knudsen, editor, Fast Software Encryption \u2013 FSE\u201999, volume 1636 of Lecture Notes in Computer Science, pages 139\u2013155, Rome, Italy, March 24\u201326, 1999. Springer.","DOI":"10.1007\/3-540-48519-8_11"},{"key":"6_CR323","unstructured":"Umar Mujahid Khokhar, Muhammad Najam-ul-Islam, and Shahzad Sarwar. A new ultralightweight RFID authentication protocol for passive low cost tags: KMAP. Wireless Personal Communications, 94(3):725\u2013744, 2017."},{"issue":"1","key":"6_CR383","doi-asserted-by":"publisher","first-page":"69","DOI":"10.1007\/s11276-016-1323-y","volume":"24","author":"Hanguang Luo","year":"2018","unstructured":"Hanguang Luo, Guangjun Wen, Jian Su, and Zhong Huang. SLAP: succinct and lightweight authentication protocol for low-cost RFID system. Wireless Networks, 24(1):69\u201378, 2018.","journal-title":"Wireless Networks"},{"key":"6_CR394","unstructured":"George Marsaglia. The marsaglia random number cdrom including the diehard battery of tests of randomness, 1995."},{"key":"6_CR431","doi-asserted-by":"crossref","unstructured":"Umar Mujahid, Muhammad Najam-ul Islam, and Ali Shami. RCIA: A new ultralightweight RFID authentication protocol using recursive hashing. International Journal of Distributed Sensor Networks, December 2014.","DOI":"10.1155\/2015\/642180"},{"key":"6_CR453","unstructured":"Miyako Ohkubo, Koutarou Suzuki, and Shingo Kinoshita. Cryptographic Approach to \u201cPrivacy-Friendly\u201d Tags. In RFID Privacy Workshop, MIT, Massachusetts, USA, November 2003."},{"key":"6_CR457","doi-asserted-by":"crossref","unstructured":"Khaled Ouafi, Raphael Overbeck, and Serge Vaudenay. On the security of HB# against a man-in-the-middle attack. In Josef Pieprzyk, editor, Advances in Cryptology \u2013 ASIACRYPT 2008, volume 5350 of Lecture Notes in Computer Science, pages 108\u2013124, Melbourne, Australia, December 7\u201311, 2008. Springer.","DOI":"10.1007\/978-3-540-89255-7_8"},{"key":"6_CR458","doi-asserted-by":"crossref","unstructured":"Khaled Ouafi and Serge Vaudenay. Smashing SQUASH-0. In Antoine Joux, editor, Advances in Cryptology \u2013 EUROCRYPT 2009, volume 5479 of Lecture Notes in Computer Science, pages 300\u2013312, Cologne, Germany, April 26\u201330, 2009. Springer.","DOI":"10.1007\/978-3-642-01001-9_17"},{"key":"6_CR463","unstructured":"Pedro Peris-Lopez, Julio Hernandez-Castro, Juan M. Est\u00e9vez-Tapiador, and Arturo Ribagorda. Advances in ultralightweight cryptography for low-cost RFID tags: Gossamer protocol. In Kyo-Il Chung, Kiwook Sohn, and Moti Yung, editors, WISA 08: 9th International Workshop on Information Security Applications, volume 5379 of Lecture Notes in Computer Science, pages 56\u201368, Jeju Island, Korea, September 23\u201325, 2009. Springer."},{"key":"6_CR464","doi-asserted-by":"crossref","unstructured":"Pedro Peris-Lopez, Julio C. Hernandez-Castro, Juan M. Estevez-Tapiador, Tieyan Li, and Jan C.A. van der Lubbe. Weaknesses in Two Recent Lightweight RFID Authentication Protocols. In Workshop on RFID Security \u2013 RFIDSec\u201909, Leuven, Belgium, July 2009.","DOI":"10.1007\/978-3-642-16342-5_28"},{"key":"6_CR465","doi-asserted-by":"crossref","unstructured":"Pedro Peris-Lopez, Julio C. Hernandez-Castro, Juan M. Estevez-Tapiador, and Arturo Ribagorda. EMAP: An Efficient Mutual Authentication Protocol for Low-Cost RFID Tags. In OTM Federated Conferences and Workshop: IS Workshop \u2013 IS\u201906, volume 4277 of Lecture Notes in Computer Science, pages 352\u2013361, Montpellier, France, November 2006. Springer.","DOI":"10.1007\/11915034_59"},{"key":"6_CR466","doi-asserted-by":"crossref","unstructured":"Pedro Peris-Lopez, Julio C. Hernandez-Castro, Juan M. Estevez-Tapiador, and Arturo Ribagorda. LMAP: A Real Lightweight Mutual Authentication Protocol for Low-cost RFID tags. In Workshop on RFID Security \u2013 RFIDSec\u201906, Graz, Austria, July 2006. Ecrypt.","DOI":"10.1007\/11833529_93"},{"key":"6_CR467","doi-asserted-by":"crossref","unstructured":"Pedro Peris-Lopez, Julio C. Hernandez-Castro, Juan M. Estevez-Tapiador, and Arturo Ribagorda. M2AP: A Minimalist Mutual-Authentication Protocol for Low-cost RFID Tags. In Jianhua Ma, Hai Jin, Laurence Tianruo Yang, and Jeffrey J. P. Tsai, editors, International Conference on Ubiquitous Intelligence and Computing \u2013 UIC\u201906, volume 4159 of Lecture Notes in Computer Science, pages 912\u2013923, Wuhan and Three Gorges, China, September 2006. Springer.","DOI":"10.1007\/11833529_93"},{"key":"6_CR468","doi-asserted-by":"crossref","unstructured":"Pedro Peris-Lopez, Julio C. Hernandez-Castro, Raphael C.-W. Phan, Juan M. E. Tapiador, and Tieyan Li. Quasi-Linear Cryptanalysis of a Secure RFID Ultralightweight Authentication Protocol. In 6th China International Conference on Information Security and Cryptology \u2013 Inscrypt\u201910, Shanghai, China, October 2010. Springer.","DOI":"10.1007\/978-3-642-21518-6_30"},{"key":"6_CR473","unstructured":"Raphael C.-W. Phan. Cryptanalysis of a New Ultralightweight RFID Authentication Protocol - SASI. IEEE Transactions on Dependable and Secure Computing, 99(1), 2008."},{"key":"6_CR492","doi-asserted-by":"crossref","unstructured":"Cai Qingling, Zhan Yiju, and Wang Yonghua. A Minimalist Mutual Authentication Protocol for RFID System & BAN Logic Analysis. In ISECS International Colloquium on Computing, Communication, Control, and Management \u2013 CCCM\u201908., volume 2, pages 449\u2013453, August 2008.","DOI":"10.1109\/CCCM.2008.305"},{"key":"6_CR502","doi-asserted-by":"crossref","unstructured":"Ronald L. Rivest. The RC5 encryption algorithm. In Bart Preneel, editor, Fast Software Encryption \u2013 FSE\u201994, volume 1008 of Lecture Notes in Computer Science, pages 86\u201396, Leuven, Belgium, December 14\u201316, 1995. Springer.","DOI":"10.1007\/3-540-60590-8_7"},{"key":"6_CR509","doi-asserted-by":"crossref","unstructured":"Andrew Rukhin, Juan Soto, James Nechvatal, Miles Smid, and Elaine Barker. A statistical test suite for random and pseudorandom number generators for cryptographic applications. Technical report, DTIC Document, 2001.","DOI":"10.6028\/NIST.SP.800-22"},{"key":"6_CR520","doi-asserted-by":"crossref","unstructured":"Adi Shamir. SQUASH - a new MAC with provable security properties for highly constrained devices such as RFID tags. In Kaisa Nyberg, editor, Fast Software Encryption \u2013 FSE 2008, volume 5086 of Lecture Notes in Computer Science, pages 144\u2013157, Lausanne, Switzerland, February 10\u201313, 2008. Springer.","DOI":"10.1007\/978-3-540-71039-4_9"},{"issue":"5","key":"6_CR554","doi-asserted-by":"publisher","first-page":"702","DOI":"10.1109\/LCOMM.2012.031212.120237","volume":"16","author":"Yun Tian","year":"2012","unstructured":"Yun Tian, Gongliang Chen, and Jianhua Li. A new ultralightweight RFID authentication protocol with permutation. IEEE Communications Letters, 16(5):702\u2013705, May 2012.","journal-title":"IEEE Communications Letters"},{"key":"6_CR568","unstructured":"John Walker. Ent, a pseudorandom number sequence test program. Fourmilab, 2008."},{"key":"6_CR579","unstructured":"Oscar Williams-Grut. Hackers once stole a casino\u2019s high-roller database through a thermometer in the lobby fish tank. Business Insider, 2018."}],"container-title":["Security of Ubiquitous Computing Systems"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-030-10591-4_6","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,12,11]],"date-time":"2022-12-11T15:54:48Z","timestamp":1670774088000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/978-3-030-10591-4_6"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2021]]},"ISBN":["9783030105907","9783030105914"],"references-count":41,"URL":"https:\/\/doi.org\/10.1007\/978-3-030-10591-4_6","relation":{},"subject":[],"published":{"date-parts":[[2021]]},"assertion":[{"value":"15 January 2021","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}