Abstract
In 2003, Hwang et al. proposed an enhanced authentication key exchange protocol. Their protocol can generate multiple shared keys for two entities at a time and takes less computation time than Harn and Lin's protocol. However, we will show that Hwang et al.'s protocol cannot withstand the forgery signature attack. At the same time, we will repair the security flaw in their scheme.