RT - Journal Article T1 - Analysis of an RFID Authentication Protocol in Accordance with EPC Standards JF - ITRC YR - 2014 JO - ITRC VO - 6 IS - 4 UR - http://ijict.itrc.ac.ir/article-1-112-en.html SP - 7 EP - 12 K1 - Security and Privacy K1 - RFID Authentication protocols K1 - EPC Class-1 Generation-2 standards AB - In the past few years, the design of RFID authentication protocols in accordance with the EPC Class-1 Generation-2 (EPC C1 G2) standards, has been one of the most important challenges in the information security domain. Although RFID systems provide user-friendly services for end-users, they can make security and privacy concerns for them. In this paper we analyze the security of an RFID mutual authentication protocol which is based on EPC Class-1 Generation-2 standard and proposed in 2013. The designers of protocol claimed that their protocol is secure against different security attacks and provides user privacy. In this paper, we show that unlike their claims, their protocol is not secure against most of the security attacks such as replay attack, the tag’s ID exposure, and the spoofing attacks. As a result, their protocol cannot provide security of RFID users in different authentication applications. Finally, in order to prevent the aforementioned attacks and overcome all the existing weaknesses, we apply a modification in the updating procedure of the protocol and propose a strengthened version of it. LA eng UL http://ijict.itrc.ac.ir/article-1-112-en.html M3 ER -