A Lightweight Forward-Unlinkable Authenticated Key Agreement Protocol for Secure UAV Communication in Internet of Drones Environments

Authors

  • Kamal A. ElDahshan Mathematics Department, Faculty of Science, Al-Azhar University, Cairo, Egypt
  • Hani Saad Hassan Issa Faculty of Computer Studies, Arab Open University, Cairo, Egypt
  • Hala Mohamed Abbas Computer Science Department, Faculty of Computers and Artificial Intelligence, Capital University, Cairo, Egypt.

DOI:

https://doi.org/10.70917/ijcisim-2026-4673

Keywords:

Cybersecurity, Authenticated Key Agreement, Internet of Drones, Forward Unlinkability, Drone-Capture Resistance

Abstract

Secure authentication, confidentiality, and communication privacy are critical requirements in mission-critical Internet of Drones (IoD) applications such as disaster response, defense, border monitoring, and surveillance, where Unmanned Aerial Vehicles (UAVs) are being increasingly used. Many lightweight authentication and key agreement protocols initially developed for IoT and wireless sensor networks, however, are not sufficiently robust to provide an appropriate level of security for IoD applications, especially considering physical drone capture, long-term credential compromise, and post-compromise transcript correlation challenges. This paper proposes a lightweight forward-unlinkable authenticated key agreement protocol for secure UAV communication in adversarial IoD environments. The protocol is based on an authenticated ephemeral X25519 Diffie–Hellman exchange, key derivation from HKDF, transcript authentication using HMAC and explicit key confirmation. The session keys are based on newly created ephemeral secrets and don't necessarily stem from long-term stored credentials, so if a drone's memory is compromised, the session keys of previous sessions are not exposed. Pseudonym rotation and context-bound key derivation are incorporated to strengthen session separation and reduce the possibility of linking previous or future protocol transcripts after drone capture. The proposed protocol is analyzed under an extended Dolev–Yao adversary model with drone-capture capability and is supported through ProVerif-style symbolic validation. The analysis indicates that the protocol provides mutual authentication, session-key secrecy, replay resistance, man-in-the-middle protection, forward secrecy, and forward unlinkability. Operation-level cost analysis and published embedded-platform benchmarks show that the cryptographic overhead remains lightweight, with per-session computation requiring only a few milliseconds and communication overhead remaining within a few hundred bytes. The results demonstrate that lightweight authenticated key agreement can provide practical cyber-security and privacy protection for resource-constrained UAV communication without relying on heavy infrastructures such as blockchain, certificate-based PKI, or zero-knowledge proof systems.

Downloads

Download data is not yet available.

Downloads

Published

2026-08-12

How to Cite

Kamal A. ElDahshan, Hani Saad Hassan Issa, & Hala Mohamed Abbas. (2026). A Lightweight Forward-Unlinkable Authenticated Key Agreement Protocol for Secure UAV Communication in Internet of Drones Environments. International Journal of Computer Information Systems and Industrial Management Applications, 18(16s), 1388–1412. https://doi.org/10.70917/ijcisim-2026-4673

Issue

Section

Original Articles