A security flaw in the conference distribution scheme, namely GDH.2, proposed byM. Steiner
et al, is found out, and a new secure and efficient conference key distribution scheme suitable for users
exchanging information on insecure communication networks. Compared with GDH.2, the security of this
new scheme is greatly improved at the cost of a slight increase in computation and communication loads.