On the security of broadcast signcryption scheme with equality test in smart transportation system

Article Type

Research Article

Publication Title

Iran Journal of Computer Science

Abstract

In smart transportation systems, the traffic control center efficiently disseminates substantial traffic information to numerous vehicles using broadcast communication. While this method is convenient, it also brings several privacy and security challenges. Ensuring secure communication requires meeting essential security properties, including existential unforgeability of chosen message attacks (EUF-CMA) and indistinguishability under chosen ciphertext attacks (IND-CCA). In this paper, we analyze one of the most efficient certificateless broadcast signcryption schemes with an equality test for smart transportation systems, proposed by Niu et al. [Vehicular Communications, 2024]. Our investigation reveals that their scheme fails to meet the essential EUF-CMA and IND-CCA security requirements. Specifically, we show that a Type-I adversary can forge a valid signcrypted ciphertext without access to the sender’s complete private key and can unsigncrypt ciphertexts by substituting the receiver’s public key. Moreover, our theoretical and implemental analysis reveals that these attacks incur minimal computational overhead. To mitigate these vulnerabilities, we propose two modification approaches to enhance the security of the certificateless broadcast signcryption in smart transportation systems.

First Page

597

Last Page

605

DOI

10.1007/s42044-025-00239-7

Publication Date

6-1-2025

Share

COinS