In a key management scheme for hierarchy based access control, each security class having higher clearance can derive the cryptographic secret keys of its other security classes having lower clearances. In 2006 Jeng-Wang proposed an efficient scheme on access control in user hierarchy based on elliptic curve cryptosystem. Their scheme provides solution of key management efficiently for dynamic access problems. However, in this paper, we propose an attack on Jeng-Wang scheme to show that Jeng-Wang scheme is insecure against our proposed attack. We show that in our proposed attack, an attacker (adversary) who is not a user in any security class in a user hierarchy attempts to derive the secret key of a security class .
Tripathy, Laxminath and Paul, Nayan Ranjan
"An Efficient and Secure Key Management Scheme for Hierarchical Access Control Based on ECC,"
International Journal of Communication Networks and Security: Vol. 1
, Article 9.
Available at: https://www.interscience.in/ijcns/vol1/iss2/9