An Improvement of Robust and Efficient Biometrics Based Password Authentication Scheme for Telecare Medicine Information Systems Using Extended Chaotic Maps

J Med Syst. 2016 Mar;40(3):70. doi: 10.1007/s10916-015-0422-0. Epub 2016 Jan 7.

Abstract

Recently, numerous extended chaotic map-based password authentication schemes that employ smart card technology were proposed for Telecare Medical Information Systems (TMISs). In 2015, Lu et al. used Li et al.'s scheme as a basis to propose a password authentication scheme for TMISs that is based on biometrics and smart card technology and employs extended chaotic maps. Lu et al. demonstrated that Li et al.'s scheme comprises some weaknesses such as those regarding a violation of the session-key security, a vulnerability to the user impersonation attack, and a lack of local verification. In this paper, however, we show that Lu et al.'s scheme is still insecure with respect to issues such as a violation of the session-key security, and that it is vulnerable to both the outsider attack and the impersonation attack. To overcome these drawbacks, we retain the useful properties of Lu et al.'s scheme to propose a new password authentication scheme that is based on smart card technology and requires the use of chaotic maps. Then, we show that our proposed scheme is more secure and efficient and supports security properties.

Keywords: Chebyshev chaotic maps; Smart cards; Telecare medicine information systems; User authentication.

Publication types

  • Research Support, Non-U.S. Gov't

MeSH terms

  • Biometric Identification / methods*
  • Computer Security*
  • Confidentiality
  • Health Smart Cards / methods*
  • Humans
  • Information Systems / standards*
  • Nonlinear Dynamics
  • Telemedicine / standards*