Leakage-Resilient and Lightweight Authenticated Key Exchange for E-Health

Wenjun Zeng, Jie Zhang

Research output: Chapter in Book or Report/Conference proceedingConference Proceedingpeer-review

8 Citations (Scopus)

Abstract

E-Health applications generally involve human users' privacy information such as identity and medical data. To protect these data, authenticated key exchange (AKE) protocols are provided as an underlying security mechanism in many communication techniques for E-Health application. For example, the international communication standard for wireless body area network (WBAN), i.e. IEEE S02.15.6, provides a number of AKE protocols for different E-Health scenarios; the Bluetooth specification 5.0 also defines four AKE protocols applicable in different applications of E-Health. However, all of these AKE protocols in use cannot resist to the emerging side-channel attacks (also known as leakage attacks). This paper thereby aims to enhance security and privacy in E-Health by designing an AKE protocol which can resist side-channel attacks. In particular, a leakage-resilient AKE protocol is proposed by combining the blinding technique with the Elliptic Curve Diffie-Hellman key exchange protocol (ECDH). In addition, to make the protocol friendlier to capability-limited nodes such as medical devices which are widely used in E-Health applications, we transfer some time-consuming computations from a limited node to its communicating partner which is generally more powerful. We also realize a prototype and carry out a series of experiments to study its performance. The proposed AKE protocol has stronger security and higher efficiency than similar protocols in IEEE 802.15.6 and Bluetooth 5.0.

Original languageEnglish
Title of host publication2020 6th IEEE International Conference on Information Management, ICIM 2020
PublisherInstitute of Electrical and Electronics Engineers Inc.
Pages162-166
Number of pages5
ISBN (Electronic)9781728157702
DOIs
Publication statusPublished - Mar 2020
Event6th IEEE International Conference on Information Management, ICIM 2020 - London, United Kingdom
Duration: 27 Mar 202029 Mar 2020

Publication series

Name2020 6th IEEE International Conference on Information Management, ICIM 2020

Conference

Conference6th IEEE International Conference on Information Management, ICIM 2020
Country/TerritoryUnited Kingdom
CityLondon
Period27/03/2029/03/20

Keywords

  • authenticated key exchange
  • e-health
  • leakage-resilience
  • side-channel attacks
  • wireless body area network

Cite this