Secure and Privacy-Preserving User Authentication Using Biometrics

نویسنده

  • Nikolaos Theodorakis
چکیده

Identity management lies in the field of Information Security, presenting numerous attractive research categories. Biometrics have been established as a new approach to mitigate the limitations and weaknesses of traditional access methods of passwords and tokens. However, biometrics introduce new security and privacy risks since they cannot be easily revoked. Due to the noisy nature of biometrics, traditional cryptography cannot be used to efficiently protect biometric systems. Thus, template protection schemes have been developed in order to encrypt and decrypt biometric data in an error-tolerant way. In this thesis, we design, implement and evaluate a fuzzy vault template protection scheme, in order to protect fingerprint minutiae points. Fuzzy vault schemes can protect a secret value using a biometric template, and this secret value can be decrypted only if an input template overlaps significantly with the original one. In these designs, the security is based on the hardness of the polynomial reconstruction problem. During this research, the most challenging issue that has been faced is the issue of alignment for the biometric templates in the encrypted domain. State-of-the art is discussed, being focused on the use of minutiae points and any information extracted from the fingerprint image. By addressing the advantages and disadvantages of the suggested methods, we utilize an alignment technique to handle the problematic area of the minutiae patterns alignment in cryptographic approaches. This method is considered to be ideal for private friendly biometric designs based on stored minutiae points, instead of full fingerprints, rendering irreversible the access at the original images. After the fuzzy vault implementation, our experiments show that there is significant trade-off between system’s security and performance, under different parameter values. Finally, the results of this thesis can provide a useful tool for other researchers, since our findings indicate which of the combinations for the experiments can be utilized for the design of a biometric scheme that is both accurate and secure.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A Lightweight Privacy-preserving Authenticated Key Exchange Scheme for Smart Grid Communications

Smart grid concept is introduced to modify the power grid by utilizing new information and communication technology. Smart grid needs live power consumption monitoring to provide required services and for this issue, bi-directional communication is essential. Security and privacy are the most important requirements that should be provided in the communication. Because of the complex design of s...

متن کامل

Biometric Authentication of Fingerprint for Banking Users, Using Stream Cipher Algorithm

Providing banking services, especially online banking and electronic payment systems, has always been associated with high concerns about security risks. In this paper, customer authentication for their transactions in electronic banking has been discussed, and a more appropriate way of using biometric fingerprint data, as well as encrypting those data in a different way, has been suggest...

متن کامل

Privacy-Preserving Biometric Authentication Model for e-Finance Applications

Widespread use of biometric architectures implies the need to secure highly sensitive data to respect the privacy rights of the users. In this paper, we discuss the following question: To what extent can biometric designs be characterized as Privacy Enhancing Technologies? The terms of privacy and security for biometric schemes are defined, while current regulations for the protection of biomet...

متن کامل

A privacy-aware continuous authentication scheme for proximity-based access control

Continuous authentication is mainly associated with the use of biometrics to guarantee that a resource is being accessed by the same user throughout the usage period. Wireless devices can also serve as a supporting technology for continuous authentication or even as a complete alternative to biometrics when accessing proximity-based services. In this paper we present the implementation of a sec...

متن کامل

Privacy-Preserving Biometric Authentication: Challenges and Directions

An emerging direction for authenticating people is the adoption of biometric authentication systems. Biometric credentials are becoming increasingly popular as a mean of authenticating people due to the wide rage of advantages that they provide with respect to classical authentication methods (e.g., password-based authentication). The most characteristic feature of this authentication method is...

متن کامل

On Privacy-Preserving Biometric Authentication

Biometric authentication is becoming increasingly popular as a convenient authentication method. However, the privacy and security issues associated with biometric authentication are very serious. Privacy-preserving biometric authentication addresses privacy concerns associated with the use of biometrics and offers a secure solution for user authentication. Given the tremendous expansion of wir...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2017