A new privacy-preserving authentication protocol for anonymous web browsing

作者:Yang, Xu; Yi, Xun; Khalil, Ibrahim; Cui, Hui; Yang, Xuechao; Nepal, Surya; Huang, Xinyi; Zeng, Yali
来源:Concurrency and Computation: Practice and Experience (CCPE) , 2019, 31(21): e4706.
DOI:10.1002/cpe.4706

摘要

Anonymous authentication technique receives wide attention in recent years since it can protect users' privacy. Anonymous web browsing refers to utilization of the World Wide Web that hides a user's personally identifiable information from the websites visited. Even if a user can hide the IP address and other physical information with anonymity programs such as Tor, the web server can always monitor the user on the basis of the identity. In this paper, we firstly give an overview and cryptanalysis on the protocol of Yang et al and point out the security weaknesses of their protocol. Then, we propose a new authentication protocol for anonymous web browsing. In the proposed protocol, we take the advantages of a pseudo identity mechanism and an identity-based elliptic curve cryptography algorithm to achieve user anonymity, robust security, and high efficiency. The result of security analysis and performance evaluation indicate the feasibility and practicality of our proposed anonymous authentication protocol.