Abstract
Password-based authentication has been used extensively as a one of authentication techniques. Wu et al. presented a robust password authentication technique, in which they can face guessing, stolen-verifier, replaying, and impersonation attacks. However, in this paper, we are going to show that Wu et al. protocol is vulnerable to theft attack and consequentially construct a modified authentication scheme to prevent the shortcomings as a recovery. Proposed technique maintains the Wu et al's security features as well as remedies its security weakness.