CRYPTANALYSIS OF AN AUTHENTICATION PROTOCOL FOR DIGITAL RIGHTS MANAGEMENT SYSTEM
Keywords:
DRM Systems, Protocol, Authentication, Cryptanalysis, Attack SchemesAbstract
The latest progress of communication technology and low-power devices has led to in all kinds of resources environment to provide digital content services, such as smart home and the Internet of things. However, digital content is easily replicated and distributed through open channels. Therefore, authentication is becoming more and more important for digital rights management (DRM) systems to provide security services to authorized users.In 2019,SungJin Yu et al. proposed a lightweight three-factor authentication protocol for digital rights management system.This paper introduces the research background of the identity authentication scheme, and reviews the authentication protocol of Sungjin Yu et al. from the perspective of the registration phase and the login authentication phase.Then,through the cryptanalysis, We here prove that the DRM system protocol of SungJin Yu et al. is unsafe, and provide two attack schemes, namely, privileged insider impersonating a legitimate user and privileged insider impersonating a legitimate license server.