{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,31]],"date-time":"2026-01-31T06:52:30Z","timestamp":1769842350350,"version":"3.49.0"},"publisher-location":"Cham","reference-count":33,"publisher":"Springer International Publishing","isbn-type":[{"value":"9783319228457","type":"print"},{"value":"9783319228464","type":"electronic"}],"license":[{"start":{"date-parts":[[2015,1,1]],"date-time":"2015-01-01T00:00:00Z","timestamp":1420070400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2015,1,1]],"date-time":"2015-01-01T00:00:00Z","timestamp":1420070400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2015]]},"DOI":"10.1007\/978-3-319-22846-4_3","type":"book-chapter","created":{"date-parts":[[2015,8,13]],"date-time":"2015-08-13T13:50:58Z","timestamp":1439473858000},"page":"40-57","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":3,"title":["A Unified Security Analysis of Two-Phase Key Exchange Protocols in TPM 2.0"],"prefix":"10.1007","author":[{"given":"Shijun","family":"Zhao","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Qianying","family":"Zhang","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[2015,8,14]]},"reference":[{"key":"3_CR1","unstructured":"GM\/T 0003.5-2012: Public Key Cryptographic Algorithm SM2 Based on Elliptic Curves Part 5: Parameter definition"},{"key":"3_CR2","unstructured":"ISO\/IEC 15946\u20135:2009 Information technology - Security techniques - Cryptographic techniques based on elliptic curves - Part 5: Elliptic curve generation"},{"issue":"2","key":"3_CR3","doi-asserted-by":"publisher","first-page":"242","DOI":"10.1145\/996943.996946","volume":"7","author":"W Aiello","year":"2004","unstructured":"Aiello, W., Bellovin, S.M., Blaze, M., Canetti, R., Ioannidis, J., Keromytis, A.D., Reingold, O.: Just fast keying: key agreement in a hostile internet. ACM Trans. Inf. Syst. Secur. (TISSEC) 7(2), 242\u2013273 (2004)","journal-title":"ACM Trans. Inf. Syst. Secur. (TISSEC)"},{"key":"3_CR4","doi-asserted-by":"crossref","unstructured":"Barker, E.B., Johnson, D., Smid, M.E.: NIST SP 800\u201356A. recommendation for pair-wise key establishment schemes using discrete logarithm cryptography (2007) (revised)","DOI":"10.6028\/NIST.SP.800-56ar"},{"key":"3_CR5","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"154","DOI":"10.1007\/3-540-49162-7_12","volume-title":"Public Key Cryptography","author":"S Blake-Wilson","year":"1999","unstructured":"Blake-Wilson, S., Menezes, A.: Unknown key-share attacks on the station-to-station (STS) protocol. In: Imai, H., Zheng, Y. (eds.) PKC 1999. LNCS, vol. 1560, pp. 154\u2013170. Springer, Heidelberg (1999)"},{"key":"3_CR6","doi-asserted-by":"crossref","unstructured":"Brickell, E., Camenisch, J., Chen, L.: Direct anonymous attestation. In: Proceedings of the 11th ACM Conference on Computer and Communications Security, pp. 132\u2013145. ACM (2004)","DOI":"10.1145\/1030083.1030103"},{"key":"3_CR7","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"453","DOI":"10.1007\/3-540-44987-6_28","volume-title":"Advances in Cryptology - EUROCRYPT 2001","author":"R Canetti","year":"2001","unstructured":"Canetti, R., Krawczyk, H.: Analysis of key-exchange protocols and their use for building secure channels. In: Pfitzmann, B. (ed.) EUROCRYPT 2001. LNCS, vol. 2045, pp. 453\u2013474. Springer, Heidelberg (2001)"},{"key":"3_CR8","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"143","DOI":"10.1007\/3-540-45708-9_10","volume-title":"Advances in Cryptology - CRYPTO 2002","author":"R Canetti","year":"2002","unstructured":"Canetti, R., Krawczyk, H.: Security Analysis of IKE\u2019s Signature-Based Key-Exchange Protocol. In: Yung, M. (ed.) CRYPTO 2002. LNCS, vol. 2442, pp. 143\u2013161. Springer, Heidelberg (2002)"},{"key":"3_CR9","first-page":"108","volume":"800","author":"L Chen","year":"2008","unstructured":"Chen, L.: Recommendation for key derivation using pseudorandom functions. NIST Spec. Publ. 800, 108 (2008)","journal-title":"NIST Spec. Publ."},{"key":"3_CR10","doi-asserted-by":"crossref","unstructured":"Chen, L., Warinschi, B.: Security of the tcg privacy-ca solution. In: 2010 IEEE\/IFIP 8th International Conference on Embedded and Ubiquitous Computing (EUC), pp. 609\u2013616. IEEE (2010)","DOI":"10.1109\/EUC.2010.98"},{"key":"3_CR11","doi-asserted-by":"crossref","unstructured":"Dierks, T.: The transport layer security (tls) protocol version 1.2. (2008)","DOI":"10.17487\/rfc5246"},{"key":"3_CR12","unstructured":"FIPS, PUB: 186\u20132. Digital Signature Standard (DSS). National Institute of Standards and Technology (NIST) (2000)"},{"key":"3_CR13","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"309","DOI":"10.1007\/978-3-642-13708-2_19","volume-title":"Applied Cryptography and Network Security","author":"R Gennaro","year":"2010","unstructured":"Gennaro, R., Krawczyk, H., Rabin, T.: Okamoto-Tanaka revisited: fully authenticated Diffie-Hellman with minimal overhead. In: Zhou, J., Yung, M. (eds.) ACNS 2010. LNCS, vol. 6123, pp. 309\u2013328. Springer, Heidelberg (2010)"},{"key":"3_CR14","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"220","DOI":"10.1007\/978-3-540-24852-1_16","volume-title":"Applied Cryptography and Network Security","author":"IR Jeong","year":"2004","unstructured":"Jeong, I.R., Katz, J., Lee, D.-H.: One-round protocols for two-party authenticated key exchange. In: Jakobsson, M., Yung, M., Zhou, J. (eds.) ACNS 2004. LNCS, vol. 3089, pp. 220\u2013232. Springer, Heidelberg (2004)"},{"issue":"3","key":"3_CR15","doi-asserted-by":"publisher","first-page":"275","DOI":"10.1145\/501978.501981","volume":"4","author":"BS Kaliski Jr","year":"2001","unstructured":"Kaliski Jr., B.S.: An unknown key-share attack on the MQV key agreement protocol. ACM Trans. Inf. Syst. Secur. (TISSEC) 4(3), 275\u2013288 (2001)","journal-title":"ACM Trans. Inf. Syst. Secur. (TISSEC)"},{"key":"3_CR16","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"546","DOI":"10.1007\/11535218_33","volume-title":"Advances in Cryptology \u2013 CRYPTO 2005","author":"H Krawczyk","year":"2005","unstructured":"Krawczyk, H.: HMQV: a high-performance secure Diffie-Hellman protocol. In: Shoup, V. (ed.) CRYPTO 2005. LNCS, vol. 3621, pp. 546\u2013566. Springer, Heidelberg (2005)"},{"key":"3_CR17","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/978-3-540-75670-5_1","volume-title":"Provable Security","author":"BA LaMacchia","year":"2007","unstructured":"LaMacchia, B.A., Lauter, K., Mityagin, A.: Stronger security of authenticated key exchange. In: Susilo, W., Liu, J.K., Mu, Y. (eds.) ProvSec 2007. LNCS, vol. 4784, pp. 1\u201316. Springer, Heidelberg (2007)"},{"key":"3_CR18","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"378","DOI":"10.1007\/11745853_25","volume-title":"Public Key Cryptography - PKC 2006","author":"K Lauter","year":"2006","unstructured":"Lauter, K., Mityagin, A.: Security analysis of KEA authenticated key exchange protocol. In: Yung, M., Dodis, Y., Kiayias, A., Malkin, T. (eds.) PKC 2006. LNCS, vol. 3958, pp. 378\u2013394. Springer, Heidelberg (2006)"},{"issue":"2","key":"3_CR19","doi-asserted-by":"publisher","first-page":"119","DOI":"10.1023\/A:1022595222606","volume":"28","author":"L Law","year":"2003","unstructured":"Law, L., Menezes, A., Qu, M., Solinas, J., Vanstone, S.: An efficient protocol for authenticated key agreement. Des. Codes Crypt. 28(2), 119\u2013134 (2003)","journal-title":"Des. Codes Crypt."},{"issue":"2","key":"3_CR20","first-page":"99","volume":"69","author":"T Matsumoto","year":"1986","unstructured":"Matsumoto, T., Takashima, Y.: On seeking smart public-key-distribution systems. IEICE Trans. (1976\u20131990) 69(2), 99\u2013106 (1986)","journal-title":"IEICE Trans. (1976\u20131990)"},{"key":"3_CR21","unstructured":"Menezes, A., Qu, M., Vanstone, S.: Some new key agreement protocols providing mutual implicit authentication. In: Second Workshop on Selected Areas in Cryptography (SAC 1995) (1995)"},{"key":"3_CR22","unstructured":"SEC, Secg. 2: Recommended elliptic curve domain parameters (2000). http:\/\/www.secg.org"},{"key":"3_CR23","unstructured":"Skipjack and NIST. KEA algorithm specifications (1998)"},{"key":"3_CR24","unstructured":"TCG: TCG Algorithm Registry Family 2.0, Level 00 Revision 15 January 2014"},{"key":"3_CR25","unstructured":"TCG: Trusted platform module library part 1: Architecture, family 2.0, level 00 revision 07 January 2014"},{"key":"3_CR26","unstructured":"TCG: Trusted Platform Module Library Part 3: Commands Family 2.0, Level 00 Revision 07 January 2014"},{"issue":"3","key":"3_CR27","doi-asserted-by":"publisher","first-page":"329","DOI":"10.1007\/s10623-007-9159-1","volume":"46","author":"B Ustaoglu","year":"2008","unstructured":"Ustaoglu, B.: Obtaining a secure and efficient key agreement protocol from (H)MQV and NAXOS. Des. Codes Crypt. 46(3), 329\u2013342 (2008)","journal-title":"Des. Codes Crypt."},{"issue":"3","key":"3_CR28","doi-asserted-by":"publisher","first-page":"653","DOI":"10.1109\/18.382012","volume":"41","author":"FM Willems","year":"1995","unstructured":"Willems, F.M., Shtarkov, Y.M., Tjalkens, T.J.: The context-tree weighting method: basic properties. IEEE Trans. Inf. Theo. 41(3), 653\u2013664 (1995)","journal-title":"IEEE Trans. Inf. Theo."},{"key":"3_CR29","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"160","DOI":"10.1007\/978-3-642-25513-7_12","volume-title":"Cryptology and Network Security","author":"J Xu","year":"2011","unstructured":"Xu, J., Feng, D.: Comments on the SM2 key exchange protocol. In: Lin, D., Tsudik, G., Wang, X. (eds.) CANS 2011. LNCS, vol. 7092, pp. 160\u2013171. Springer, Heidelberg (2011)"},{"key":"3_CR30","unstructured":"Yao, A.C., Zhao, Y.: A new family of implicitly authenticated diffie-hellman protocols. Technical report"},{"key":"3_CR31","doi-asserted-by":"crossref","unstructured":"Yao, A.C.-C., Zhao, Y.: OAKE: a new family of implicitly authenticated diffie-hellman protocols. In: Proceedings of the 2013 ACM SIGSAC Conference on Computer & Communications Security, pp. 1113\u20131128. ACM (2013)","DOI":"10.1145\/2508859.2516695"},{"issue":"3","key":"3_CR32","first-page":"383","volume":"8","author":"S Zhao","year":"2015","unstructured":"Zhao, S., Xi, L., Zhang, Q., Qin, Y., Feng, D.: Security analysis of SM2 key exchange protocol in TPM2. 0. security and communication. Networks 8(3), 383\u2013395 (2015)","journal-title":"Networks"},{"key":"3_CR33","doi-asserted-by":"crossref","unstructured":"Zhao, S., Zhang, Q.: A Unified Security Analysis of Two-phase Key Exchange Protocols in TPM 2.0. http:\/\/eprint.iacr.org\/2015\/611","DOI":"10.1007\/978-3-319-22846-4_3"}],"container-title":["Lecture Notes in Computer Science","Trust and Trustworthy Computing"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-319-22846-4_3","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,2,21]],"date-time":"2023-02-21T06:30:29Z","timestamp":1676961029000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-319-22846-4_3"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2015]]},"ISBN":["9783319228457","9783319228464"],"references-count":33,"URL":"https:\/\/doi.org\/10.1007\/978-3-319-22846-4_3","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2015]]},"assertion":[{"value":"14 August 2015","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}