Uncoupling Biometrics from Templates for Secure and Privacy-Preserving Authentication

被引:2
|
作者
Abidin, Aysajan [1 ]
Rua, Enrique Argones [1 ]
Peeters, Roel [1 ]
机构
[1] Katholieke Univ Leuven, IMEC, COSIC, Leuven, Belgium
来源
PROCEEDINGS OF THE 22ND ACM SYMPOSIUM ON ACCESS CONTROL MODELS AND TECHNOLOGIES (SACMAT'17) | 2017年
关键词
Biometrics; multi-factor authentication; template protection; unlinkability; irreversibility; PROTECTION; SCHEME;
D O I
10.1145/3078861.3078863
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Biometrics are widely used for authentication in several domains, services and applications. However, only very few systems succeed in effectively combining highly secure user authentication with an adequate privacy protection of the biometric templates, due to the difficulty associated with jointly providing good authentication performance, unlinkability and irreversibility to biometric templates. This thwarts the use of biometrics in remote authentication scenarios, despite the advantages that this kind of architectures provides. We propose a user-specific approach for decoupling the biometrics from their binary representation before using biometric protection schemes based on fuzzy extractors. This allows for more reliable, flexible, irreversible and unlinkable protected biometric templates. With the proposed biometrics decoupling procedures, biometric metadata, that does not allow to recover the original biometric template, is generated. However, different biometric metadata that are generated starting from the same biometric template remain statistically linkable, therefore we propose to additionally protect these using a second authentication factor (e.g., knowledge or possession based). We demonstrate the potential of this approach within a two-factor authentication protocol for remote biometric authentication in mobile scenarios.
引用
收藏
页码:21 / 29
页数:9
相关论文
共 50 条
  • [1] Secure and Privacy-preserving Biometrics based Active Authentication
    Sui, Yan
    Zou, Xukai
    Du, Eliza Y.
    Li, Feng
    PROCEEDINGS 2012 IEEE INTERNATIONAL CONFERENCE ON SYSTEMS, MAN, AND CYBERNETICS (SMC), 2012, : 1291 - 1296
  • [2] A Survey on Biometric Authentication: Towards Secure and Privacy-Preserving Identification
    Rui, Zhang
    Yan, Zheng
    IEEE ACCESS, 2019, 7 : 5994 - 6009
  • [3] A survey on privacy-preserving authentication protocols for secure vehicular communication
    Sutradhar, Kartick
    Pillai, Beena G.
    Amin, Ruhul
    Narayan, Dayanand Lal
    COMPUTER COMMUNICATIONS, 2024, 219 : 1 - 18
  • [4] A privacy-preserving multifactor authentication system
    Acar, Abbas
    Liu, Wenyi
    Beyah, Raheem
    Akkaya, Kemal
    Uluagac, Arif Selcuk
    SECURITY AND PRIVACY, 2019, 2 (05):
  • [5] A review of privacy-preserving biometric identification and authentication protocols
    Zeng, Li
    Shen, Peisong
    Zhu, Xiaojie
    Tian, Xue
    Chen, Chi
    COMPUTERS & SECURITY, 2025, 150
  • [6] PTAP: A novel secure privacy-preserving & traceable authentication protocol in VANETs
    Liu, Xiaoxue
    Wang, Yichuan
    Li, Yanping
    Cao, Hao
    COMPUTER NETWORKS, 2023, 226
  • [7] Physically Secure Lightweight and Privacy-Preserving Message Authentication Protocol for VANET in Smart City
    Othman, Wajdy
    Miao Fuyou
    Xue, Kaiping
    Hawbani, Ammar
    IEEE TRANSACTIONS ON VEHICULAR TECHNOLOGY, 2021, 70 (12) : 12902 - 12917
  • [8] A Review of Homomorphic Encryption for Privacy-Preserving Biometrics
    Yang, Wencheng
    Wang, Song
    Cui, Hui
    Tang, Zhaohui
    Li, Yan
    SENSORS, 2023, 23 (07)
  • [9] Hardware Secure Module Based Lightweight Conditional Privacy-Preserving Authentication for VANETs
    Zhang, Zihou
    Li, Jiangtao
    Li, Yufeng
    Cao, Chenhong
    Cao, Zhenfu
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2024, 19 : 6337 - 6350
  • [10] PRIVACY-PRESERVING AUTHENTICATION USING FINGERPRINT
    Feng, Quan
    Su, Fei
    Cai, Anni
    INTERNATIONAL JOURNAL OF INNOVATIVE COMPUTING INFORMATION AND CONTROL, 2012, 8 (11): : 8001 - 8018