A Smart Card-Based Two-Factor Mutual Authentication Scheme for Efficient Deployment of an IoT-Based Telecare Medical Information System

The integration of the Internet of Things (IoT) and the telecare medical information system (TMIS) enables patients to receive timely and convenient healthcare services regardless of their location or time zone. Since the Internet serves as the key hub for connection and data sharing, its open natur...

Full description

Bibliographic Details
Main Authors: Muhammad Asghar Khan, Hosam Alhakami, Wajdi Alhakami, Alexey V. Shvetsov, Insaf Ullah
Format: Article
Language:English
Published: MDPI AG 2023-06-01
Series:Sensors
Subjects:
Online Access:https://www.mdpi.com/1424-8220/23/12/5419
_version_ 1827735692015304704
author Muhammad Asghar Khan
Hosam Alhakami
Wajdi Alhakami
Alexey V. Shvetsov
Insaf Ullah
author_facet Muhammad Asghar Khan
Hosam Alhakami
Wajdi Alhakami
Alexey V. Shvetsov
Insaf Ullah
author_sort Muhammad Asghar Khan
collection DOAJ
description The integration of the Internet of Things (IoT) and the telecare medical information system (TMIS) enables patients to receive timely and convenient healthcare services regardless of their location or time zone. Since the Internet serves as the key hub for connection and data sharing, its open nature presents security and privacy concerns and should be considered when integrating this technology into the current global healthcare system. Cybercriminals target the TMIS because it holds a lot of sensitive patient data, including medical records, personal information, and financial information. As a result, when developing a trustworthy TMIS, strict security procedures are required to deal with these concerns. Several researchers have proposed smart card-based mutual authentication methods to prevent such security attacks, indicating that this will be the preferred method for TMIS security with the IoT. In the existing literature, such methods are typically developed using computationally expensive procedures, such as bilinear pairing, elliptic curve operations, etc., which are unsuitable for biomedical devices with limited resources. Using the concept of hyperelliptic curve cryptography (HECC), we propose a new solution: a smart card-based two-factor mutual authentication scheme. In this new scheme, HECC’s finest properties, such as compact parameters and key sizes, are utilized to enhance the real-time performance of an IoT-based TMIS system. The results of a security analysis indicate that the newly contributed scheme is resistant to a wide variety of cryptographic attacks. A comparison of computation and communication costs demonstrates that the proposed scheme is more cost-effective than existing schemes.
first_indexed 2024-03-11T01:58:20Z
format Article
id doaj.art-c4f96d627e1341d5b139f40830e17fd0
institution Directory Open Access Journal
issn 1424-8220
language English
last_indexed 2024-03-11T01:58:20Z
publishDate 2023-06-01
publisher MDPI AG
record_format Article
series Sensors
spelling doaj.art-c4f96d627e1341d5b139f40830e17fd02023-11-18T12:30:45ZengMDPI AGSensors1424-82202023-06-012312541910.3390/s23125419A Smart Card-Based Two-Factor Mutual Authentication Scheme for Efficient Deployment of an IoT-Based Telecare Medical Information SystemMuhammad Asghar Khan0Hosam Alhakami1Wajdi Alhakami2Alexey V. Shvetsov3Insaf Ullah4Department of Electrical Engineering, Hamdard Institute of Engineering and Technology, Hamdard University, Islamabad 44000, PakistanDepartment of Computer Science, College of Computer and Information Systems, Umm Al-Qura University, Makkah 21955, Saudi ArabiaDepartment of Information Technology, College of Computers and Information Technology, Taif University, Taif 21431, Saudi ArabiaDepartment of Smart Technologies, Moscow Polytechnic University, St. Bolshaya Semenovskaya, 38, 107023 Moscow, RussiaDepartment of Electrical Engineering, Hamdard Institute of Engineering and Technology, Hamdard University, Islamabad 44000, PakistanThe integration of the Internet of Things (IoT) and the telecare medical information system (TMIS) enables patients to receive timely and convenient healthcare services regardless of their location or time zone. Since the Internet serves as the key hub for connection and data sharing, its open nature presents security and privacy concerns and should be considered when integrating this technology into the current global healthcare system. Cybercriminals target the TMIS because it holds a lot of sensitive patient data, including medical records, personal information, and financial information. As a result, when developing a trustworthy TMIS, strict security procedures are required to deal with these concerns. Several researchers have proposed smart card-based mutual authentication methods to prevent such security attacks, indicating that this will be the preferred method for TMIS security with the IoT. In the existing literature, such methods are typically developed using computationally expensive procedures, such as bilinear pairing, elliptic curve operations, etc., which are unsuitable for biomedical devices with limited resources. Using the concept of hyperelliptic curve cryptography (HECC), we propose a new solution: a smart card-based two-factor mutual authentication scheme. In this new scheme, HECC’s finest properties, such as compact parameters and key sizes, are utilized to enhance the real-time performance of an IoT-based TMIS system. The results of a security analysis indicate that the newly contributed scheme is resistant to a wide variety of cryptographic attacks. A comparison of computation and communication costs demonstrates that the proposed scheme is more cost-effective than existing schemes.https://www.mdpi.com/1424-8220/23/12/5419internet of thingstelecare medicine information systemsmart cardmutual authenticationhyperelliptic curve cryptography
spellingShingle Muhammad Asghar Khan
Hosam Alhakami
Wajdi Alhakami
Alexey V. Shvetsov
Insaf Ullah
A Smart Card-Based Two-Factor Mutual Authentication Scheme for Efficient Deployment of an IoT-Based Telecare Medical Information System
Sensors
internet of things
telecare medicine information system
smart card
mutual authentication
hyperelliptic curve cryptography
title A Smart Card-Based Two-Factor Mutual Authentication Scheme for Efficient Deployment of an IoT-Based Telecare Medical Information System
title_full A Smart Card-Based Two-Factor Mutual Authentication Scheme for Efficient Deployment of an IoT-Based Telecare Medical Information System
title_fullStr A Smart Card-Based Two-Factor Mutual Authentication Scheme for Efficient Deployment of an IoT-Based Telecare Medical Information System
title_full_unstemmed A Smart Card-Based Two-Factor Mutual Authentication Scheme for Efficient Deployment of an IoT-Based Telecare Medical Information System
title_short A Smart Card-Based Two-Factor Mutual Authentication Scheme for Efficient Deployment of an IoT-Based Telecare Medical Information System
title_sort smart card based two factor mutual authentication scheme for efficient deployment of an iot based telecare medical information system
topic internet of things
telecare medicine information system
smart card
mutual authentication
hyperelliptic curve cryptography
url https://www.mdpi.com/1424-8220/23/12/5419
work_keys_str_mv AT muhammadasgharkhan asmartcardbasedtwofactormutualauthenticationschemeforefficientdeploymentofaniotbasedtelecaremedicalinformationsystem
AT hosamalhakami asmartcardbasedtwofactormutualauthenticationschemeforefficientdeploymentofaniotbasedtelecaremedicalinformationsystem
AT wajdialhakami asmartcardbasedtwofactormutualauthenticationschemeforefficientdeploymentofaniotbasedtelecaremedicalinformationsystem
AT alexeyvshvetsov asmartcardbasedtwofactormutualauthenticationschemeforefficientdeploymentofaniotbasedtelecaremedicalinformationsystem
AT insafullah asmartcardbasedtwofactormutualauthenticationschemeforefficientdeploymentofaniotbasedtelecaremedicalinformationsystem
AT muhammadasgharkhan smartcardbasedtwofactormutualauthenticationschemeforefficientdeploymentofaniotbasedtelecaremedicalinformationsystem
AT hosamalhakami smartcardbasedtwofactormutualauthenticationschemeforefficientdeploymentofaniotbasedtelecaremedicalinformationsystem
AT wajdialhakami smartcardbasedtwofactormutualauthenticationschemeforefficientdeploymentofaniotbasedtelecaremedicalinformationsystem
AT alexeyvshvetsov smartcardbasedtwofactormutualauthenticationschemeforefficientdeploymentofaniotbasedtelecaremedicalinformationsystem
AT insafullah smartcardbasedtwofactormutualauthenticationschemeforefficientdeploymentofaniotbasedtelecaremedicalinformationsystem