{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,3,27]],"date-time":"2026-03-27T09:36:40Z","timestamp":1774604200083,"version":"3.50.1"},"reference-count":35,"publisher":"MDPI AG","issue":"11","license":[{"start":{"date-parts":[[2014,11,6]],"date-time":"2014-11-06T00:00:00Z","timestamp":1415232000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Sensors"],"abstract":"<jats:p>A smart-card-based user authentication scheme for wireless sensor networks (in short, a SUA-WSN scheme) is designed to restrict access to the sensor data only to users who are in possession of both a smart card and the corresponding password. While a significant number of SUA-WSN schemes have been suggested in recent years, their intended security properties lack formal definitions and proofs in a widely-accepted model. One consequence is that SUA-WSN schemes insecure against various attacks have proliferated. In this paper, we devise a security model for the analysis of SUA-WSN schemes by extending the widely-accepted model of Bellare, Pointcheval and Rogaway (2000). Our model provides formal definitions of authenticated key exchange and user anonymity while capturing side-channel attacks, as well as other common attacks. We also propose a new SUA-WSN scheme based on elliptic curve cryptography (ECC), and prove its security properties in our extended model. To the best of our knowledge, our proposed scheme is the first SUA-WSN scheme that provably achieves both authenticated key exchange and user anonymity. Our scheme is also computationally competitive with other ECC-based (non-provably secure) schemes.<\/jats:p>","DOI":"10.3390\/s141121023","type":"journal-article","created":{"date-parts":[[2014,11,7]],"date-time":"2014-11-07T02:03:59Z","timestamp":1415325839000},"page":"21023-21044","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":50,"title":["A Provably-Secure ECC-Based Authentication Scheme for Wireless Sensor Networks"],"prefix":"10.3390","volume":"14","author":[{"given":"Junghyun","family":"Nam","sequence":"first","affiliation":[{"name":"Department of Computer Engineering, Konkuk University, 268 Chungwondaero, Chungju, Chungcheongbukdo 380-701, Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Moonseong","family":"Kim","sequence":"additional","affiliation":[{"name":"Information Management Division, Korean Intellectual Property Office, 189 Cheongsaro, Daejeon 302-701, Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Juryon","family":"Paik","sequence":"additional","affiliation":[{"name":"Department of Computer Engineering, Sungkyunkwan University, 2066 Seoburo, Suwon, Gyeonggido 440-746, Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Youngsook","family":"Lee","sequence":"additional","affiliation":[{"name":"Department of Cyber Investigation Police, Howon University, 64 3-gil, Gunsan, Jeonrabukdo 573-718, Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Dongho","family":"Won","sequence":"additional","affiliation":[{"name":"Department of Computer Engineering, Sungkyunkwan University, 2066 Seoburo, Suwon, Gyeonggido 440-746, Korea"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2014,11,6]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1007\/s11227-013-1021-9","article-title":"Wireless sensor networks: A survey on recent developments and potential synergies","volume":"68","author":"Rawat","year":"2014","journal-title":"J. Supercomput"},{"key":"ref_2","doi-asserted-by":"crossref","first-page":"5020","DOI":"10.3390\/s110505020","article-title":"RUASN: A robust user authentication framework for wireless sensor networks","volume":"11","author":"Kumar","year":"2011","journal-title":"Sensors"},{"key":"ref_3","doi-asserted-by":"crossref","unstructured":"Khan, M., and Kumari, S. (2014). An improved user authentication protocol for healthcare services via wireless medical sensor networks. Int. J. Distrib. Sens. Netw, 2014, (347169).","DOI":"10.1155\/2014\/347169"},{"key":"ref_4","doi-asserted-by":"crossref","unstructured":"Choo, K.K.R., Boyd, C., and Hitchcock, Y. (2005, January 4\u20138). Errors in computational complexity proofs for protocols. Chennai, India.","DOI":"10.1007\/11593447_34"},{"key":"ref_5","doi-asserted-by":"crossref","first-page":"234","DOI":"10.1016\/j.ins.2010.09.011","article-title":"A security weakness in Abdalla et al.'s generic construction of a group key exchange protocol","volume":"181","author":"Nam","year":"2011","journal-title":"Inf. Sci"},{"key":"ref_6","first-page":"3244","article-title":"Dictionary attacks against password-based authenticated three-party key exchange protocols","volume":"7","author":"Nam","year":"2013","journal-title":"KSII Trans. Internet Inf. Syst"},{"key":"ref_7","unstructured":"Choo, K.K.R. (2006, January 5\u20137). Refuting security proofs for tripartite key exchange with model checker in planning problem setting. Venice, Italy."},{"key":"ref_8","doi-asserted-by":"crossref","unstructured":"Choo, K.K.R. (2008). Secure Key Establishment, Springer.","DOI":"10.1007\/978-0-387-87969-7"},{"key":"ref_9","doi-asserted-by":"crossref","first-page":"198","DOI":"10.1109\/TIT.1983.1056650","article-title":"On the security of public key protocols","volume":"29","author":"Dolev","year":"1983","journal-title":"IEEE Trans. Inf. Theory"},{"key":"ref_10","doi-asserted-by":"crossref","unstructured":"Bellare, M., Pointcheval, D., and Rogaway, P. (2000, January 14\u201318). Authenticated key exchange secure against dictionary attacks. Bruges, Belgium.","DOI":"10.1007\/3-540-45539-6_11"},{"key":"ref_11","doi-asserted-by":"crossref","unstructured":"Canetti, R., and Krawczyk, H. (2001, January 6\u201310). Analysis of key-exchange protocols and their use for building secure channels. Innsbruck, Austria.","DOI":"10.1007\/3-540-44987-6_28"},{"key":"ref_12","doi-asserted-by":"crossref","first-page":"1086","DOI":"10.1109\/TWC.2008.080128","article-title":"Two-factor user authentication in wireless sensor networks","volume":"8","author":"Das","year":"2009","journal-title":"IEEE Trans. Wirel. Commun"},{"key":"ref_13","first-page":"361","article-title":"An enhanced two-factor user authentication scheme in wireless sensor networks","volume":"10","author":"He","year":"2010","journal-title":"Adhoc Sens. Wirel. Netw"},{"key":"ref_14","doi-asserted-by":"crossref","first-page":"2450","DOI":"10.3390\/s100302450","article-title":"Cryptanalysis and security improvements of \u201ctwo-factor user authentication in wireless sensor networks\u201d","volume":"10","author":"Khan","year":"2010","journal-title":"Sensors"},{"key":"ref_15","doi-asserted-by":"crossref","first-page":"704","DOI":"10.4218\/etrij.10.1510.0134","article-title":"A robust mutual authentication protocol for wireless sensor networks","volume":"32","author":"Chen","year":"2010","journal-title":"ETRI J"},{"key":"ref_16","doi-asserted-by":"crossref","first-page":"4767","DOI":"10.3390\/s110504767","article-title":"A secured authentication protocol for wireless sensor networks using elliptic curves cryptography","volume":"11","author":"Yeh","year":"2011","journal-title":"Sensors"},{"key":"ref_17","doi-asserted-by":"crossref","first-page":"1625","DOI":"10.3390\/s120201625","article-title":"E-SAP: Efficient-strong authentication protocol for healthcare applications using wireless medical sensor networks","volume":"12","author":"Kumar","year":"2012","journal-title":"Sensors"},{"key":"ref_18","doi-asserted-by":"crossref","unstructured":"Yoo, S., Park, K., and Kim, J. (2012). A security-performance-balanced user authentication scheme for wireless sensor networks. Int. J. Distrib. Sens. Netw, 2012, (382810).","DOI":"10.1155\/2012\/382810"},{"key":"ref_19","doi-asserted-by":"crossref","unstructured":"Vaidya, B., Makrakis, D., and Mouftah, H. (2012). Two-factor mutual authentication with key agreement in wireless sensor networks. Secur. Commun. Netw.","DOI":"10.1002\/sec.517"},{"key":"ref_20","doi-asserted-by":"crossref","first-page":"316","DOI":"10.1016\/j.jnca.2012.05.010","article-title":"A temporal-credential-based mutual authentication and key agreement scheme for wireless sensor networks","volume":"36","author":"Xue","year":"2013","journal-title":"J. Netw. Comput. Appl"},{"key":"ref_21","doi-asserted-by":"crossref","unstructured":"Shi, W., and Gong, P. (2013). A new user authentication protocol for wireless sensor networks using elliptic curves cryptography. Int. J. Distrib. Sens. Netw, 2013, (730831).","DOI":"10.1155\/2013\/730831"},{"key":"ref_22","doi-asserted-by":"crossref","first-page":"889","DOI":"10.4218\/etrij.13.0113.0103","article-title":"A strong authentication scheme with user privacy for wireless sensor networks","volume":"35","author":"Kumar","year":"2013","journal-title":"ETRI J"},{"key":"ref_23","doi-asserted-by":"crossref","unstructured":"He, D., Kumar, N., Chen, J., Lee, C., Chilamkurti, N., and Yeo, S. (2013). Robust anonymous authentication protocol for health-care applications using wireless medical sensor networks. Multimed. Syst.","DOI":"10.1007\/s00530-013-0346-9"},{"key":"ref_24","doi-asserted-by":"crossref","unstructured":"Chi, L., Hu, L., Li, H., and Chu, J. (2014). Analysis and improvement of a robust user authentication framework for ubiquitous sensor networks. Int. J. Distrib. Sens. Netw, 2014, (637684).","DOI":"10.1155\/2014\/637684"},{"key":"ref_25","doi-asserted-by":"crossref","unstructured":"Kim, J., Lee, D., Jeon, W., Lee, Y., and Won, D. Security analysis and improvements of two-factor mutual authentication with key agreement in wireless sensor networks. Sensors 2014, 14, 6443\u20136462.","DOI":"10.3390\/s140406443"},{"key":"ref_26","doi-asserted-by":"crossref","unstructured":"Jiang, Q., Ma, J., Lu, X., and Tian, Y. (2014). An efficient two-factor user authentication scheme with unlinkability for wireless sensor networks. Peer-to-Peer Netw. Appl.","DOI":"10.1007\/s12083-014-0285-z"},{"key":"ref_27","doi-asserted-by":"crossref","first-page":"10081","DOI":"10.3390\/s140610081","article-title":"Security enhanced user authentication protocol for wireless sensor networks using elliptic curves cryptography","volume":"14","author":"Choi","year":"2014","journal-title":"Sensors"},{"key":"ref_28","doi-asserted-by":"crossref","unstructured":"Kocher, P., Jaffe, J., and Jun, B. (1999, January 15\u201319). Differential power analysis. Santa Barbara, CA, USA.","DOI":"10.1007\/3-540-48405-1_25"},{"key":"ref_29","doi-asserted-by":"crossref","first-page":"541","DOI":"10.1109\/TC.2002.1004593","article-title":"Examining smart-card security under the threat of power analysis attacks","volume":"51","author":"Messerges","year":"2002","journal-title":"IEEE Trans. Comput"},{"key":"ref_30","unstructured":"Han, W. Weakness of a secured authentication protocol for wireless sensor networks using elliptic curves cryptography. Available online: http:\/\/eprint.iacr.org\/2011\/293."},{"key":"ref_31","doi-asserted-by":"crossref","unstructured":"Kumar, P., and Lee, H. (2011, January 20-22). Cryptanalysis on two user authentication protocols using smart card or wireless sensor networks. London, UK.","DOI":"10.1109\/WiAd.2011.5983262"},{"key":"ref_32","doi-asserted-by":"crossref","unstructured":"Nam, J., Choo, K.K.R., Paik, J., and Won, D. (2014). Password-only authenticated three-party key exchange proven secure against insider dictionary attacks. Sci World J, 2014, No. 802359.","DOI":"10.1155\/2014\/802359"},{"key":"ref_33","doi-asserted-by":"crossref","first-page":"811","DOI":"10.1109\/TCE.2013.6689693","article-title":"Anonymous two-factor authentication for consumer roaming service in global mobility networks","volume":"59","author":"He","year":"2013","journal-title":"IEEE Trans. Consum. Electron"},{"key":"ref_34","doi-asserted-by":"crossref","first-page":"229","DOI":"10.1007\/s11277-013-1282-x","article-title":"Cryptanalysis and improvement of an anonymous authentication protocol for wireless access networks","volume":"74","author":"He","year":"2014","journal-title":"Wirel. Pers. Commun"},{"key":"ref_35","doi-asserted-by":"crossref","first-page":"30","DOI":"10.1109\/TCE.2014.6780922","article-title":"Enhanced three-factor security protocol for USB mass storage devices","volume":"60","author":"He","year":"2014","journal-title":"IEEE Trans. Consum. Electron"}],"container-title":["Sensors"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/1424-8220\/14\/11\/21023\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,11]],"date-time":"2025-10-11T21:09:01Z","timestamp":1760216941000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/1424-8220\/14\/11\/21023"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2014,11,6]]},"references-count":35,"journal-issue":{"issue":"11","published-online":{"date-parts":[[2014,11]]}},"alternative-id":["s141121023"],"URL":"https:\/\/doi.org\/10.3390\/s141121023","relation":{},"ISSN":["1424-8220"],"issn-type":[{"value":"1424-8220","type":"electronic"}],"subject":[],"published":{"date-parts":[[2014,11,6]]}}}