Science & Engineering Research Support soCiety (SERSC)
Dynamic ID-based authentication schemes based on password and smart card are widely used to provide two-factor authentication and user anonymity. However, these schemes have one or the other possible security weaknesses. In this paper, the authors analyze the schemes of the researchers published in recent years. After the analysis, they demonstrates that their vulnerable to off-line password guessing attack if the user's identity is compromised, their scheme cannot withstand the impersonation attack and link-ability attack, their schemes cannot resist off-line password guessing attack if the attacker steals a smart card, their schemes fail to provide forward security.