2024/06/24 by Iman Jafarian, Jafarian, Iman, Siavash Khorsandi +1
Computer Science · Engineering · #Advanced Authentication Protocols Security #Cryptography and Security (cs.CR) #FOS: Computer and information sciences #User Authentication and Security Systems #Wireless Body Area Networks
paper · pdf · doi:10.48550/arxiv.2406.16804
openalex publication_date 2024/06/24 · openalex created_date 2024/06/26 · openalex updated_date 2026/07/28
The Internet of Medical Things has revolutionized the healthcare industry, enabling the seamless integration of connected medical devices and wearable sensors to enhance patient care and optimize healthcare services. However, the rapid adoption of the Internet of Medical Things also introduces significant security challenges that must be effectively addressed to preserve patient privacy, protect sensitive medical data, and ensure the overall reliability and safety of Internet of Medical Things systems. In this context, a key agreement protocol is used to securely establish shared cryptographic keys between interconnected medical devices and the central system, ensuring confidential and authenticated communication. Recently Chen et al. proposed a lightweight authentication and key agreement protocol for the Internet of health things. In this article, we provide a descriptive analysis of their proposed scheme and prove that Chen et al.'s scheme is vulnerable to Known session-specific temporary information attacks and stolen verifier attacks.