English

The Hsu-Harn-Mu-Zhang-Zhu group key establishment protocol is insecure

Cryptography and Security 2018-03-19 v2

Abstract

A significant security vulnerability in a recently published group key establishment protocol is described. This vulnerability allows a malicious insider to fraudulently establish a group key with an innocent victim, with the key chosen by the attacker. This shortcoming is sufficiently serious that the protocol should not be used.

Keywords

Cite

@article{arxiv.1803.05365,
  title  = {The Hsu-Harn-Mu-Zhang-Zhu group key establishment protocol is insecure},
  author = {Chris J Mitchell},
  journal= {arXiv preprint arXiv:1803.05365},
  year   = {2018}
}