{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,5,18]],"date-time":"2026-05-18T18:46:20Z","timestamp":1779129980187,"version":"3.51.4"},"reference-count":30,"publisher":"MDPI AG","issue":"8","license":[{"start":{"date-parts":[[2018,8,20]],"date-time":"2018-08-20T00:00:00Z","timestamp":1534723200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Symmetry"],"abstract":"<jats:p>Key agreement between two constrained Internet of Things (IoT) devices that have not met each other is an essential feature to provide in order to establish trust among its users. Physical Unclonable Functions (PUFs) on a device represent a low cost primitive exploiting the unique random patterns in the device and have been already applied in a multitude of applications for secure key generation and key agreement in order to avoid an attacker to take over the identity of a tampered device, whose key material has been extracted. This paper shows that the key agreement scheme of a recently proposed PUF based protocol, presented by Chatterjee et al., for Internet of Things (IoT) is vulnerable for man-in-the-middle, impersonation, and replay attacks in the Yao\u2013Dolev security model. We propose an alternative scheme, which is able to solve these issues and can provide in addition a more efficient key agreement and subsequently a communication phase between two IoT devices connected to the same authentication server. The scheme also offers identity based authentication and repudiation, when only using elliptic curve multiplications and additions, instead of the compute intensive pairing operations.<\/jats:p>","DOI":"10.3390\/sym10080352","type":"journal-article","created":{"date-parts":[[2018,8,20]],"date-time":"2018-08-20T11:23:06Z","timestamp":1534764186000},"page":"352","update-policy":"https:\/\/doi.org\/10.3390\/mdpi_crossmark_policy","source":"Crossref","is-referenced-by-count":158,"title":["PUF Based Authentication Protocol for IoT"],"prefix":"10.3390","volume":"10","author":[{"ORCID":"https:\/\/orcid.org\/0000-0002-9965-915X","authenticated-orcid":false,"given":"An","family":"Braeken","sequence":"first","affiliation":[{"name":"Vrije Universiteit Brussel, Pleinlaan 2, 1050 Brussel, Belgium"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"1968","published-online":{"date-parts":[[2018,8,20]]},"reference":[{"key":"ref_1","doi-asserted-by":"crossref","first-page":"110","DOI":"10.1016\/j.future.2018.06.027","article-title":"Taxonomy and analysis of security protocols for Internet of Things","volume":"89","author":"Das","year":"2018","journal-title":"Future Gener. Comput. Syst."},{"key":"ref_2","unstructured":"Pappu, S.R. (2001). Physical One-Way Functions. [Ph.D. Thesis, Massachusetts Institute of Technology]."},{"key":"ref_3","doi-asserted-by":"crossref","first-page":"67","DOI":"10.1145\/3005715","article-title":"A PUF-Based Secure Communication Protocol for IoT","volume":"16","author":"Chatterjee","year":"2017","journal-title":"ACM Trans. Embed. Comput. Syst."},{"key":"ref_4","doi-asserted-by":"crossref","unstructured":"Zheng, Y. (1997). Digital Signcryption or How to Achieve Cost (Signature & Encryption) << Cost (Signature) + Cost (Encryption). Annual International Cryptology Conference, Springer.","DOI":"10.1007\/BFb0052234"},{"key":"ref_5","doi-asserted-by":"crossref","unstructured":"Braeken, A., Shabisha, P., Touhafi, A., and Steenhaut, K. (2017). Pairing free and implicit certificate based signcryption scheme with proxy re-encryption for secure cloud data storage. CloudTech, IEEE.","DOI":"10.1109\/CloudTech.2017.8284701"},{"key":"ref_6","doi-asserted-by":"crossref","first-page":"91","DOI":"10.9790\/0661-16149197","article-title":"Comparative analysis of smart card authentication schemes","volume":"16","author":"Tashi","year":"2014","journal-title":"IOSR J. Comput. Eng."},{"key":"ref_7","doi-asserted-by":"crossref","first-page":"177","DOI":"10.14257\/ijsh.2015.9.9.19","article-title":"Efficient anonymous smart card based authentication scheme for multi-server architecture","volume":"9","author":"Braeken","year":"2015","journal-title":"Int. J. Smart Home"},{"key":"ref_8","first-page":"47","article-title":"Identity-Based Cryptosystems and Signature Schemes","volume":"Volume 196","author":"Shamir","year":"1984","journal-title":"Workshop on the Theory and Application of Cryptographic Techniques"},{"key":"ref_9","doi-asserted-by":"crossref","unstructured":"Al-Riyami, S.S., and Paterson, K.G. (2003). Certificateless Public Key Cryptography. International Conference on the Theory and Application of Cryptology and Information Security, Springer.","DOI":"10.1007\/978-3-540-40061-5_29"},{"key":"ref_10","doi-asserted-by":"crossref","unstructured":"Gentry, C. (2003). Certificate-Based Encryption and the Certificate Revocation Problem. International Conference on the Theory and Applications of Cryptographic Techniques, Springer.","DOI":"10.1007\/3-540-39200-9_17"},{"key":"ref_11","unstructured":"Certicom Research (2018, July 10). 2013. SEC4: Elliptic Curve Qu-Vanstone Implicit Certificate Scheme, Standards for Efficient Cryptography Group. Available online: http:\/\/www.secg.org\/sec4-1.0.pdf."},{"key":"ref_12","doi-asserted-by":"crossref","unstructured":"Porambage, P., Schmitt, C., Kumar, P., Gurtov, A., and Ylianttila, M. (2014, January 6\u20139). Two-phase Authentication Protocol for Wireless Sensor Networks in Distributed IoT Applications. Proceedings of the 2014 IEEE Wireless Communications and Networking Conference (WCNC), Istanbul, Turkey.","DOI":"10.1109\/WCNC.2014.6952860"},{"key":"ref_13","unstructured":"Delvaux, J. (2017). Security Analysis of PUF-Based Key Generation and Entity Authentication. [Ph.D. Thesis, Katholieke Universiteit Leuven (KULeuven)]."},{"key":"ref_14","doi-asserted-by":"crossref","first-page":"37","DOI":"10.1109\/TETC.2014.2300635","article-title":"Robust and reverse-engineering resilient PUF authentication and key-exchange by substring matching","volume":"2","author":"Rostami","year":"2014","journal-title":"IEEE Trans. Emerg. Top. Comput."},{"key":"ref_15","doi-asserted-by":"crossref","unstructured":"Yu, M.D., Verbauwhede, I., Devadas, S., and M\u2019Raihi, D. (2014, January 6\u20137). A noise bifurcation architecture for linear additive physical functions. Proceedings of the 2014 IEEE International Symposium on Hardware-Oriented Security and Trust (HOST), Arlington, VA, USA.","DOI":"10.1109\/HST.2014.6855582"},{"key":"ref_16","doi-asserted-by":"crossref","first-page":"146","DOI":"10.1109\/TMSCS.2016.2553027","article-title":"A lockdown technique to prevent machine learning on PUFs for lightweight authentication","volume":"2","author":"Yu","year":"2016","journal-title":"IEEE Trans. Multiscale Comput. Syst."},{"key":"ref_17","doi-asserted-by":"crossref","unstructured":"Sadeghi, A.R., Visconti, I., and Wachsmann, C. (2010). Enhancing RFID security and privacy by physically unclonable functions. Towards Hardware Intrinsic Security\u2014Foundations and Practice, Springer.","DOI":"10.1007\/978-3-642-14452-3_13"},{"key":"ref_18","doi-asserted-by":"crossref","unstructured":"Tuyls, P., and Batina, L. (2006). RFID-Tags for Anti-counterfeiting. Topics in Cryptology\u2014CT-RSA 2006, Springer. Lecture Notes in Computer Science.","DOI":"10.1007\/11605805_8"},{"key":"ref_19","unstructured":"Guartime and Intrinsic ID (2018, July 10). Internet of Things Authentication: A Blockchain solution using SRAM Physical Unclonable Functions. Available online: https:\/\/www.intrinsic-id.com\/wp-content\/uploads\/2017\/05\/gtKSI-PUF-web-1611.pdf."},{"key":"ref_20","doi-asserted-by":"crossref","first-page":"43","DOI":"10.1016\/j.comcom.2016.05.002","article-title":"Lightweight and escrow-less authenticated key agreement for the internet of things","volume":"98","author":"Simplicio","year":"2017","journal-title":"Comput. Commun."},{"key":"ref_21","unstructured":"Wouters, P., Tschofenig, H., Gilmore, J., Weiler, S., and Kivinen, T. (2018, July 10). RFC 7250\u2014Using Raw Public Keys in Transport Layer Security (TLS) and Datagram Transport Layer Security (DTLS), June 2014. Available online: https:\/\/www.rfc-editor.org\/rfc\/rfc7250.txt."},{"key":"ref_22","doi-asserted-by":"crossref","unstructured":"Ha, D.A., Nguyen, K.T., and Zao, J.K. (2016, January 8\u20139). Efficient authentication of resource-constrained IoT devices based on ECQV implicit certificates and datagram transport layer security protocol. Proceedings of the Seventh Symposium on Information and Communication Technology, Ho Chi Minh City, Vietnam.","DOI":"10.1145\/3011077.3011108"},{"key":"ref_23","doi-asserted-by":"crossref","unstructured":"Gao, Y., Ma, H., Al-Sarawi, S.F., Abbott, D., and Ranasinghe, D.C. (2017). PUF-FSM: A Controlled Strong PUF. IEEE Trans. Comput.-Aided Des. Integr. Circuits Syst.","DOI":"10.1109\/TCAD.2017.2740297"},{"key":"ref_24","unstructured":"Hankerson, D., Menezes, A.J., and Vanstone, S. (2003). Guide to Elliptic Curve Cryptography, Springer."},{"key":"ref_25","unstructured":"(2018, July 10). SEC 2: Recommended Elliptic Curve Domain Parameters, Certicom Research, Standards for Efficient Cryptography Version 1.0, September 2000. Available online: http:\/\/www.secg.org\/collateral\/sec2 final.pdf."},{"key":"ref_26","unstructured":"(2018, July 10). Recommended Elliptic Curves for Federal Government Use, National Institute of Standards and Technology, August 1999, Available online: http:\/\/csrc.nist.gov\/groups\/ST\/toolkit\/documents\/dss\/NISTReCur.pdf."},{"key":"ref_27","doi-asserted-by":"crossref","first-page":"198","DOI":"10.1109\/TIT.1983.1056650","article-title":"On the security of public key protocols","volume":"29","author":"Dolev","year":"1983","journal-title":"IEEE Trans. Inf. Theory"},{"key":"ref_28","doi-asserted-by":"crossref","unstructured":"Lu, Y., and Li, J. (2014). Efficient Certificate-Based Signcryption Secure against Public Key Replacement Attacks and Insider Attacks. Sci. World J.","DOI":"10.1155\/2014\/295419"},{"key":"ref_29","first-page":"724","article-title":"Certificate-Based Signcryption Scheme without Pairing: Directly Verifying Signcrypted Messages Using a Public Key","volume":"38","author":"Le","year":"2016","journal-title":"ETRI J."},{"key":"ref_30","doi-asserted-by":"crossref","unstructured":"He, D., Zeadally, S., Wang, H., and Liu, Q. (2017). Lightweight Data Aggregation Scheme against Internal Attackers in Smart Grid Using Elliptic Curve Cryptography. Wirel. Commun. Mob. Comput.","DOI":"10.1155\/2017\/3194845"}],"container-title":["Symmetry"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/www.mdpi.com\/2073-8994\/10\/8\/352\/pdf","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,10,11]],"date-time":"2025-10-11T15:19:48Z","timestamp":1760195988000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.mdpi.com\/2073-8994\/10\/8\/352"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2018,8,20]]},"references-count":30,"journal-issue":{"issue":"8","published-online":{"date-parts":[[2018,8]]}},"alternative-id":["sym10080352"],"URL":"https:\/\/doi.org\/10.3390\/sym10080352","relation":{},"ISSN":["2073-8994"],"issn-type":[{"value":"2073-8994","type":"electronic"}],"subject":[],"published":{"date-parts":[[2018,8,20]]}}}