Comment on “Efficient design of an authenticated key agreement protocol for dew-assisted IoT systems”
摘要
We show that the key agreement scheme (Rana et al. in J Supercomput 78(3):3696–3714, 2022) cannot resist impersonation attack, both for the sensor node and dew server. The adversary can use an equivalent computation to finish a core computation for the dew server and retrieve the sensor node’s secret key. We also remark that it seems impossible to revise the scheme due to its simple secret key invoking mechanism.