Browse > Article
http://dx.doi.org/10.7840/KICS.2012.37.6C.497

One-Handled The Mobile One-Time Password Scheme  

Choi, Jong-Seok (부산대학교 컴퓨터공학과 정보보호 및 시스템 LSI 연구실)
Kim, Ho-Won (부산대학교 컴퓨터공학과 정보보호 및 시스템 LSI 연구실)
Abstract
While increasing online services with developing e-businesses, finance, game companies and others have employed OTP(One-Time Password) to overcome vulnerabilities of static passwords. Existing OTP technology has inconvenience that customers always possess reserved token since requiring the token to generate OTP. In order to supplement the issue we propose mobile OTP generated by mobile devices such as smart phones. Our mobile OTP scheme generates OTP by using a non-linear function based on pairing to eject the collision problem of S/Key scheme universally used to design OTP schemes. Our scheme based on a non-linear function over pairing can complements the collision problem and widely applied to finance and various services to increase security level of the services.
Keywords
OTP; Mobile; Privacy; Pairing; Banking;
Citations & Related Records
Times Cited By KSCI : 1  (Citation Analysis)
연도 인용수 순위
1 Soo-Young Kang and Im-Yeong Lee, "A Study on UICC(Universal IC Card)-based Authentication Mechanism using OTP," Korea Institute of Information Security and Cryptology, Journal of the Korea Institute of Information Security and Cryptology, 21(5), pp.21-31, 2008.
2 Youngjin Kim, Kiyoung Baek , Younggil Kim, Jaecheol Ryou , Gyutae Baek and Junggil Park, "The Development of a One-time Password Mechanism Improving on S/KEY,'' Korea Institute Of Information Security And Cryptology, Journal of the Korea Institute of Information Security and Cryptology, 9(2), pp. 25-35, 1999.
3 Hong Gi Kim and Im Yeong Lee, "A Study on One-Time Password Authentication Scheme in Mobile Environment,'' Korea Multimedia Society, JOURNAL OF KOREA MULTIMEDIA SOCIETY, 14(6), pp. 785-793, 2011   DOI   ScienceOn
4 Neil M. Haller, "The S/KEY One-Time Password System", edited by Dan Nesset and Robj Shirey, Proceedings of the Symposium on Network and Distributed Systems Security, pp.151-157, 1994.
5 Donghyun Choi, Seungjoo Kim, Dongho Won, "One-Time Password Technical Analysis and Standard Trends," Korea Institute Of Information Security And Cryptology, REVIEW OF KIISC, Vol.17 No.3, pp.12-17, 2007.(원동호, 최동현, 김승주, "일회용 패스워드 (OTP: One-Time Password)기술 분석 및 표준화 동향", 한국정보보호학회, 정보보호학회지, 제17권 제3호, pp.12-17, 2007.)
6 Seung-Hyun Seo , Woojin Kang, "OTP Condition and Instance of OTP in Korea", Korea Institute Of Information Security And Cryptology, REVIEW OF KIISC, Vol.17 No.3, pp.18-25, 2007.(서승현, 강우진, "OTP 기술현황 및 국내 금융권 OTP 도입사례", 한국정보보호학회, 정보보호학회지, 제17권 제3호, pp.18-25, 2007.)
7 Yeon-Ho Ryu, "User-Authentication Server Mutual Authentication Model using OTP concept," The Korean Institute of Information Scientists and Engineers, Proceedings of fall conference, pp.652-654, 2003.(류연호, "OTP 개념을 이용한 사용자-인증 서버의 상호 인증 모델," 한국정보과학회, 2003년도 가을 학술발표논문집, pp.652-654, 2003.)
8 Ki Young Kim, "A Study of Authentication System Based on One-time Password," Korea Institute Of Information Security And Cryptology, REVIEW OF KIISC, Vol.17 No.3, pp.26-31, 2007.(김기영, "일회용 패스워드를 기반으로 한 인증 시스템에 대한 고찰", 한국정보보호학회, 정보보호학회지, 제17권 제3호, pp.26-31, 2007.)