分析了Shen-Yu提出的一个新的智能卡远程用户认证方案,发现该方案无法抵御智能卡的伪造攻击、假冒服务攻击.提出一个改进的方案,利用双向认证的方法,解决了Shen-Yu方案存在的安全漏洞,提高了安全性.
This paper analyzed the new remote user authentication scheme proposed by Shen Yu,found this scheme could not resist to the forging attack and masquerading server attack of smart card,and presented a modified authentication scheme,solved the problem of Shen Yu scheme and improved security by mutual authentication.