IJMSC Vol. 10, No. 4, 8 Dec. 2024
Cover page and Table of Contents: PDF (size: 629KB)
PDF (629KB), PP.51-62
Views: 0 Downloads: 0
VANETs, Certificateless Signature Scheme, Certificateless Aggregate Signature Scheme, ROM, Authentication, Privacy
In a Vehicular Ad Hoc Network (VANET), numerous vehicles are interconnected through a wireless network to facilitate communication. The primary objective of a VANET is to enhance driver safety and comfort by enabling the exchange of traffic-related messages within the vehicular environment. These messages can include vital information such as traffic conditions, accident alerts, and road hazards. However, addressing the security challenges in VANETs is paramount to avoid serious vulnerabilities that can compromise the entire network. One of the critical security challenges is conditional privacy-preserving authentication. This requirement mandates that each vehicle must be authenticated by other vehicles or Roadside Units (RSUs) while ensuring the privacy of the vehicle's identity. Moreover, it is essential to have the capability to trace a malicious user under specific conditions, such as in the event of a security breach or misuse of the network. In this research, we conduct an in-depth cryptanalysis of a recently proposed aggregate signature scheme designed for authentication in VANETs with conditional privacy-preserving property. Our analysis identifies the existing scheme is vulnerable against a malicious Key Generation Center (KGC) attacker, in contrast to the authors' claims. To address these issues, we propose a novel, secure, and efficient authentication scheme that maintains the conditional privacy-preserving property. We evaluate our scheme and provide a formal security proof within the Random Oracle Model (ROM). In addition to enhancing security, our scheme improves efficiency by reducing the computational and communication overhead typically associated with authentication processes in VANETs. This makes our solution not only secure but also practical for real-world deployment.
Parvin Rastegari, " Authentication in VANETs with Conditional Privacy-Preserving Property Using Certificateless Aggregate Signature Schemes", International Journal of Mathematical Sciences and Computing(IJMSC), Vol.10, No.4, pp. 51-62, 2024. DOI: 10.5815/ijmsc.2024.04.05
[1]Adnan Qayyum, Muhammad Usama, Junaid Qadir, and Ala Al-Fuqaha. Securing connected & autonomous vehicles: Challenges posed by adversarial machine learning and the way forward. IEEE Communications Surveys & Tutorials, 22(2):998–1026, 2020.
[2]Santhosh Kumar Sripathi Venkata Naga, Rajkumar Yesuraj, Selvi Munuswamy, and Kannan Arputharaj. A comprehensive survey on certificateless authentication schemes for vehicular ad hoc networks in intelligent transportation systems. Sensors, 23(5):2682, 2023.
[3]Priyank Sharma, Meet Patel, and Apoorva Prasad. A systematic literature review on internet of vehicles security. arXiv preprint arXiv:2212.08754, 2022.
[4]Harsha Vasudev, Debasis Das, and Athanasios V Vasilakos. Secure message propagation protocols for iovs communication components. Computers & Electrical Engineering, 82:106555, 2020.
[5]Ikram Ali, Alzubair Hassan, and Fagen Li. Authentication and privacy schemes for vehicular ad hoc networks (vanets): A survey. Vehicular Communications, 16:45–61, 2019.
[6]Xiaoxue Liu, Yichuan Wang, Yanping Li, and Hao Cao. Ptap: A novel secure privacy-preserving & traceable authentication protocol in vanets. Computer Networks, 226:109643, 2023.
[7]Yanwei Zhou, Lei Cao, Zirui Qiao, Zhe Xia, Bo Yang, Mingwu Zhang, and Wenzheng Zhang. An efficient identity authentication scheme with dynamic anonymity for vanets. IEEE Internet of Things Journal, 10(11):10052–10065, 2023.
[8]Jyoti Grover. Security of vehicular ad hoc networks using blockchain: A comprehensive review. Vehicular Communications, 34:100458, 2022.
[9]Cong Zhao, Nan Guo, Tianhan Gao, Xinyang Deng, and Jiayu Qi. Pepa: Paillier cryptosystem-based efficient privacy-preserving authentication scheme for vanets.Journal of Systems Architecture, 138:102855, 2023.
[10]Shuyi Chen, Yali Liu, Jianting Ning, and Xiuping Zhu. Basrac: An efficient batch authentication scheme with rule-based access control for vanets. Vehicular Communications, 40:100575, 2023.
[11]Ronald L Rivest, Adi Shamir, and Leonard Adleman. A method for obtaining digital signatures and public-key cryptosystems. Communications of the ACM, 21(2):120–126, 1978.
[12]Adi Shamir. Identity-based cryptosystems and signature schemes. In Advances in Cryptology: Proceedings of CRYPTO 84 4, pages 47–53. Springer, 1985.
[13]Sattam S Al-Riyami and Kenneth G Paterson. Certificateless public key cryptography. In International conference on the theory and application of cryptology and information security, pages 452–473. Springer, 2003.
[14]Xiaotong Zhou, Min Luo, Pandi Vijayakumar, Cong Peng, and Debiao He. Efficient certificateless conditional privacy-preserving authentication for vanets.IEEE Transactions on Vehicular Technology, 71(7):7863–7875, 2022.
[15]Lunzhi Deng, Bingqin Ning, and Yuhong Jiang. A lightweight certificateless aggregation signature scheme with provably security in the standard model. IEEE Systems Journal, 14(3):4242–4251, 2020.
[16]Huiwen Wang, Liangliang Wang, Kai Zhang, Jinguo Li, and Yiyuan Luo. A conditional privacy-preserving certificateless aggregate signature scheme in the standard model for vanets. IEEE Access, 10:15605–15618, 2022.
[17]Ziyan Gong, Tianhan Gao, and Nan Guo. Pcas: Cryptanalysis and improvement of pairing-free certificateless aggregate signature scheme with conditional privacy-preserving for vanets. Ad Hoc Networks, 144:103134, 2023.
[18]Yangfan Liang and Yining Liu. Analysis and improvement of an efficient certificateless aggregate signature with conditional privacy preservation in vanets. IEEE Systems Journal, 17(1):664–672, 2022.
[19]Wanjun Xiong, Ruomei Wang, Yujue Wang, Yongzhuang Wei, Fan Zhou, and Xiaonan Luo. Improved certificateless aggregate signature scheme against collusion attacks for vanets. IEEE Systems Journal, 17(1):1098–1109, 2022.
[20]Yulei Chen and Jianhua Chen. Cpp-clas: Efficient and conditional privacy-preserving certificateless aggregate signature scheme for vanets. IEEE Internet of Things Journal, 9(12):10354–10365, 2021.
[21]Gowri Thumbur, G Srinivasa Rao, P Vasudeva Reddy, NB Gayathri, DVR Koti Reddy, and M Padmavathamma. Efficient and secure certificateless aggregate signature-based authentication scheme for vehicular ad hoc networks. IEEE Internet of Things Journal, 8(3):1908–1920, 2020.
[22]Eko Fajar Cahyadi and Min-Shiang Hwang. A comprehensive survey on certificateless aggregate signature in vehicular ad hoc networks. IETE Technical Review, 39(6):1265–1276, 2022.
[23]David Pointcheval and Jacques Stern. Security arguments for digital signatures and blind signatures. Journal of cryptology, 13:361–396, 2000.