Addressing Smartphone-based Multi-factor Authentication via Hardware-rooted Technologies

被引:3
作者
Ba, Zhongjie [1 ]
Ren, Kui [1 ]
机构
[1] Univ Buffalo State Univ New York, Dept CSE, Buffalo, NY 14260 USA
来源
2017 IEEE 37TH INTERNATIONAL CONFERENCE ON DISTRIBUTED COMPUTING SYSTEMS (ICDCS 2017) | 2017年
关键词
CAMERA IDENTIFICATION;
D O I
10.1109/ICDCS.2017.88
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Multi-factor authentication is a well-recognized access control method that enhances the security of users' sensitive data and identities. A successful authentication attempt requires a user to correctly present two or more authentication factors such as knowledge factors, possession factors and inherence factors. For smartphone-based multi-factor authentication, a promising way to authenticate a user is to verify his possession of a legitimate smartphone, which calls for secure and usable device authentication schemes. In this article, we propose to authenticate a device through tracking the hardware fingerprint of its built-in sensor. We first review the existing hardware rooted identification methods and discuss the merits of applying a hardware fingerprint as a smartphone's unique identity. Then, we analyze the security issues underlying these methods and identify two security requirements for the identification methods to be used in an authentication scheme: Fingerprint Leakage Resilience and Fingerprint Forgery Resilience. Finally, we look into a specific hardware fingerprint originally used for digital cameras. We analyze the feasibility of applying this fingerprint to differentiate off-the-shelf smartphones and list several challenging practical issues underlying this methods.
引用
收藏
页码:1910 / 1914
页数:5
相关论文
共 35 条
[1]  
[Anonymous], 2008, P IEEE SARN S PRINC
[2]  
[Anonymous], 2009, USENIX SECUR S
[3]  
[Anonymous], 2015, ARXIV150301874
[4]  
[Anonymous], NDSS
[5]  
[Anonymous], 2009, IS TSPIE ELECT IMAGI
[6]  
[Anonymous], 2014, P 2014 ACM SIGSAC C
[7]  
[Anonymous], 2016, P 23 ANN NETW DISTR
[8]  
Bojinov H., 2014, Mobile Device Identification via Sensor Fingerprinting
[9]  
Breach Level Index, 2016, 2016 1 HALF REP ITS
[10]   Robust Stable Radiometric Fingerprinting for Wireless Devices [J].
Candore, Andrea ;
Kocabas, Ovunc ;
Koushanfar, Farinaz .
2009 IEEE INTERNATIONAL WORKSHOP ON HARDWARE-ORIENTED SECURITY AND TRUST, 2009, :43-+