Open Access Open Access  Restricted Access Subscription Access

Another Security Weakness in an Authenticated Group Key Agreement

Z. Eslami,
S. Kabiri Rad,


Recently, Hwang et al. [1] showed that the authenticated group key agreement protocol proposed by Dutta and Barua [2] suffers from an impersonation attack and proposed an improvement to fix the problem. The goal of this paper is to prove that both the scheme of [2] and its improved version have another security weakness. In [2], it is claimed that the protocol has the ability to detect the presence of a corrupted group member so that if an invalid message is sent, then this can be detected by all legitimate members of the group. In this paper, we show that this claim is not true even in the improved version. We prove that two malicious participants can prohibit legitimate participants from obtaining the same shared key and remain completely unnoticed.


Cryptography; Authenticated group key agreement; DDH problem; Attack

Citation Format:
Z. Eslami, S. Kabiri Rad, "Another Security Weakness in an Authenticated Group Key Agreement," Journal of Internet Technology, vol. 11, no. 4 , pp. 573-576, Jul. 2010.

Full Text:



  • There are currently no refbacks.

Published by Executive Committee, Taiwan Academic Network, Ministry of Education, Taipei, Taiwan, R.O.C
JIT Editorial Office, Office of Library and Information Services, National Dong Hwa University
No. 1, Sec. 2, Da Hsueh Rd., Shoufeng, Hualien 974301, Taiwan, R.O.C.
Tel: +886-3-931-7314  E-mail: