An enhanced user authentication solution for mobile payment systems using wearables

被引:4
|
作者
Wong, Kok-Seng [1 ]
Kim, Myung Ho [1 ]
机构
[1] Soongsil Univ, Sch Software, Seoul 06978, South Korea
基金
新加坡国家研究基金会;
关键词
mobile payment systems; biometrics-based authentication; mobile devices; wearable devices; secret splitting;
D O I
10.1002/sec.1654
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
As technology continues to evolve, banks and other enterprises are restructuring their businesses to provide services to customers anywhere and anytime. However, it is challenging to move from conventional payment systems toward digital wallets across a range of payment services. Mobile devices are easily lost or stolen, so the rapid adoption of mobile devices for payment systems requires protection against unauthorized access to private applications and data. When mobile devices communicate with merchant point-of-sale systems, there is a risk of data leakage because third party applications in point-of-sale systems might access private data stored on the device without the user's knowledge or permission. We thus propose the use of wearable devices to store partial private data for the user and to participate in the user authentication. In this paper, we design a practical user authentication solution for mobile payment systems, and the main idea is to split the user's private data, such as credit card and banking information, and then store them across two separate devices (e.g., a smartphone and a wearable device). Our solution can improve the security of existing mobile payment systems that utilize user biometrics as an authentication factor, such as Apple Pay and Samsung Pay. Copyright (C) 2016 John Wiley & Sons, Ltd.
引用
收藏
页码:4639 / 4649
页数:11
相关论文
共 50 条
  • [1] User Authentication Using Mobile Phones for Mobile Payment
    Sung, Soonhwa
    Youn, Cheong
    Kong, Eunbae
    Ryou, Jaecheol
    2015 INTERNATIONAL CONFERENCE ON INFORMATION NETWORKING (ICOIN), 2015, : 51 - 56
  • [2] Authentication and payment in future mobile systems
    Horn, G
    Preneel, B
    COMPUTER SECURITY - ESORICS 98, 1998, 1485 : 277 - 293
  • [3] Authentication and payment in future mobile systems
    Siemens AG, Muenchen, Germany
    Journal of Computer Security, 2000, 8 (02) : 183 - 207
  • [4] Mobile Payment Solution based on Vertical Authentication
    Hu, Xiang-Yi
    Zhao, Gui-Fen
    Ma, Yan-Jiao
    2016 INTERNATIONAL CONFERENCE ON COMPUTER SCIENCE AND INFORMATION SECURITY (CSIS 2016), 2016, : 482 - 488
  • [5] Privacy Enhanced Mobile User Authentication Method Using Motion Sensors
    Xiong, Chunlin
    Weng, Zhengqiu
    Liu, Jia
    Gu, Liang
    Alqahtani, Fayez
    Gafar, Amr
    Sharma, Pradip Kumar
    CMES-COMPUTER MODELING IN ENGINEERING & SCIENCES, 2024, 138 (03): : 3013 - 3032
  • [6] Identity Authentication Security Management in Mobile Payment Systems
    Wang, Feng
    Shan, Ge Bao
    Chen, Yong
    Zheng, Xianrong
    Wang, Hong
    Sun Mingwei
    Li Haihua
    JOURNAL OF GLOBAL INFORMATION MANAGEMENT, 2020, 28 (01) : 189 - 203
  • [7] Using Mobile Devices for User Authentication
    Lach, Jacek
    COMPUTER NETWORKS, 2010, 79 : 263 - 268
  • [8] Enhanced authentication services for Internet systems using mobile networks
    Looi, M
    GLOBECOM '01: IEEE GLOBAL TELECOMMUNICATIONS CONFERENCE, VOLS 1-6, 2001, : 3468 - 3472
  • [9] Ticket based authentication and payment protocol for mobile telecommunications systems
    Lee, BR
    Kim, TY
    Kang, SS
    2001 PACIFIC RIM INTERNATIONAL SYMPOSIUM ON DEPENDABLE COMPUTING, PROCEEDINGS, 2001, : 218 - 221
  • [10] Fully Authentication Services Scheme for NFC Mobile Payment Systems
    Alshammari, Munefah
    Nashwan, Shadi
    INTELLIGENT AUTOMATION AND SOFT COMPUTING, 2022, 32 (01): : 401 - 428