Paper 2013/058

Cryptanalysis of the Dragonfly Key Exchange Protocol

Dylan Clarke and Feng Hao

Abstract

Dragonfly is a password authenticated key exchange protocol that has been submitted to the Internet Engineering Task Force as a candidate standard for general internet use. We analyzed the security of this protocol and devised an attack that is capable of extracting both the session key and password from an honest party. This attack was then implemented and experiments were performed to determine the time-scale required to successfully complete the attack.

Metadata
Available format(s)
PDF
Category
Cryptographic protocols
Publication info
Published elsewhere. Unknown where it was published
Keywords
cryptanalysispassword authenticated key exchange
Contact author(s)
dylan clarke @ ncl ac uk
History
2013-02-06: received
Short URL
https://ia.cr/2013/058
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2013/058,
      author = {Dylan Clarke and Feng Hao},
      title = {Cryptanalysis of the Dragonfly Key Exchange Protocol},
      howpublished = {Cryptology ePrint Archive, Paper 2013/058},
      year = {2013},
      note = {\url{https://eprint.iacr.org/2013/058}},
      url = {https://eprint.iacr.org/2013/058}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.