信息网络安全 ›› 2026, Vol. 26 ›› Issue (8): 1308-1326.doi: 10.3969/j.issn.1671-1122.2026.08.011

• 技术研究 • 上一篇    下一篇

抗隐式攻击的基于ASCON的轻量级工业物联网认证方案

刘哲凡1, 郭亚军1(), 郭奕旻2, 赵素芬1   

  1. 1 华中师范大学计算机学院武汉 430079
    2 中南财经政法大学信息工程学院武汉 430073
  • 收稿日期:2026-02-02 出版日期:2026-08-10 发布日期:2026-09-23
  • 通讯作者: 郭亚军 E-mail:yj.guo@ccnu.edu.cn
  • 作者简介:刘哲凡(1997—),男,辽宁,硕士研究生,主要研究方向为信息安全|郭亚军(1965—),男,湖北,教授,博士,CCF高级会员,主要研究方向为信息安全|郭奕旻(1992—),女,湖北,副教授,博士,主要研究方向为信息安全|赵素芬(1981—),女,湖北,讲师,博士,主要研究方向为信息安全、社交网络、数据挖掘
  • 基金资助:
    国家自然科学基金(62102453);湖北省自然科学基金(2025AFC108)

ASCON-based lightweight industrial IoT authentication scheme resistant to implicit attacks

Liu Zhefan1, Guo Yajun1(), Guo Yimin2, Zhao Sufen1   

  1. 1 School of Computer Science, Central China Normal University, Wuhan 430079, China
    2 School of Information Engineering, Zhongnan University of Economics and Law, Wuhan, 430073, China
  • Received:2026-02-02 Online:2026-08-10 Published:2026-09-23
  • Contact: Guo Yajun E-mail:yj.guo@ccnu.edu.cn

摘要:

工业5.0以人机协同、绿色高效、韧性制造为核心特征,其底层工业物联网需满足高实时性、轻量化、分布式协作的核心需求,然而面临设备资源受限、人机交互链路易被攻击、集中式认证架构单点故障等安全问题,且现有协议难以适配工业5.0雾边云协同的计算架构和绿色低耗的设计要求,也无法有效抵御复杂场景下的隐式攻击。针对工业5.0的场景化需求与技术特性,文章提出一种定制化的轻量级认证协议,深度融合物理不可克隆函数(PUF)、NIST标准轻量级加密算法ASCON、联盟链及三因素身份验证技术,将雾节点的边缘计算能力、区块链的分布式可信特性、ASCON的低耗加解密优势与工业5.0人机协同场景深度结合,构建适配工业5.0雾边云架构的网络模型。基于DY和CK威胁模型定义攻击类型,结合最强隐式攻击模型验证安全属性,通过ROR模型形式化证明与非形式化分析,证实方案在多类隐式攻击下满足双向认证、匿名性、前向保密性等关键安全需求。经性能对比与场景实测验证,该方案在完备安全防护基础上,可满足工业5.0低算力开销、低通信时延、绿色低功耗的核心需求,为人机协同场景下的设备交互、远程控制提供高可靠的安全通信支持。

关键词: 隐式攻击, 工业5.0, 区块链, 物理不可克隆函数, 认证

Abstract:

Industrial 5.0 centered on human-machine collaboration, green efficiency, and resilient manufacturing. It’s underlying industrial IoT faced high real-time demands, lightweight constraints and distributed collaboration requirements, alongside security risks including resource-limited terminals, vulnerable human-machine interaction links and single-point failures of centralized authentication architectures. Existing protocols failed to adapt to the fog-edge-cloud collaborative framework and low-power green design standards of Industry 5.0, and they could not effectively defend against complex implicit attacks. To address scenario-specific demands and technical characteristics of Industry 5.0, this paper proposed a customized lightweight authentication protocol. It deeply integrated Physically Unclonable Functions, the NIST-standard lightweight cipher ASCON, consortium blockchain and three-factor authentication. The scheme combined fog nodes’ edge computing capacity, blockchain’s distributed trust and ASCON’s low-cost encryption/decryption advantages with human-machine collaboration scenarios of Industry 5.0, and it constructed a dedicated network architecture matching the fog-edge-cloud hierarchy. The authors defined multiple attack types based on the DY and CK threat models and adopted the strongest implicit attack model to verify security performances. Formal proofs under the ROR model and informal security analyses were conducted.Results show that the protocol satisfies core security properties including mutual authentication, user anonymity and forward secrecy under various implicit attacks. Performance comparisons and scenario-based tests prove that the proposed scheme meets the core requirements of Industry 5.0 featuring low computational overhead, low communication latency and low energy consumption while maintaining robust security. It delivers reliable secure communication support for device interaction and remote control in human-machine collaborative manufacturing.

Key words: implicit attacks, industry 5.0, blockchain, physical unclonable functions, authentication

中图分类号: