A Verifier-Based Key Exchange Protocol in Cross-Realm Setting

In 2006, Yoon et al. proposed a secure client to client password-authenticated key exchange(C2C-PAKE) protocol in a cross-realm setting. However, the secure protocol is susceptible to password-compromise impersonation attack and server compromise attack. In this paper, we propose a verifier-based key exchange protocol, which enables two clients to agree on a common session key based on verifier authentication in cross-realm setting. And we also show that our protocol can resist various attacks.