In this note, we show that a proposed secure broadcasting scheme is insecure. We also present a modified scheme to overcome this weakness. The modified scheme has the extra advantage that each participant can derive his group keys from group identities without the need of knowing other information. ᭧ 1999 Elsevier Science BV. All rights reserved.