Security Enhancement of Biometric-Based Authentication Systems Using Smart Card

被引:0
|
作者
Kim, Hyunseok [1 ]
机构
[1] ICT Polytech Inst Korea, Dept Informat & Secur, Gwangju Si 12777, Gyeonggi Do, South Korea
来源
IEEE ACCESS | 2024年 / 12卷
关键词
Servers; Protocols; Authentication; Passwords; Smart cards; Biometrics; Impersonation attacks; Biological system modeling; Wireless sensor networks; Reviews; Password based authentication; biometrics; BPR model; fomal verification; AVISPA tool; REMOTE USER AUTHENTICATION; KEY AGREEMENT SCHEME; E-HEALTH SYSTEMS;
D O I
10.1109/ACCESS.2024.3502632
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Remote authentication has been extensively studied over the past few decades, with password-based authentication being a common approach since Lamport's 1981 proposal of a password-based remote authentication scheme. Despite numerous advancements, including the introduction of biometric and smart card-based schemes by Li and Hwang, as well as Chen et al.'s claims of robustness against various attacks, these protocols continue to exhibit vulnerabilities. These weaknesses include susceptibility to attacks such as replay, man-in-the-middle, user impersonation, and offline password guessing, among others. In this study, we conduct a comprehensive analysis of several existing biometric-based authentication protocols, identifying critical vulnerabilities and areas for improvement. To address these issues, we propose a novel authentication protocol that leverages the biometrics of mobile devices. Our protocol incorporates a collision-free one-way hash function to enhance security. We conduct a thorough security analysis of the proposed protocol using the Automated Validation of Internet Security Protocols and Applications (AVISPA) tool, alongside both formal and informal security evaluations. The results of these analyses indicate that our proposed scheme significantly improves security by effectively mitigating common attacks that have compromised previous protocols. Additionally, our protocol demonstrates superior computational efficiency, making it practical for real-world applications. By addressing the security flaws inherent in existing protocols and optimizing for performance, our scheme provides a robust and efficient solution for secure remote authentication using mobile device biometrics.
引用
收藏
页码:174053 / 174065
页数:13
相关论文
共 50 条
  • [21] A Lightweight Biometric-based Authentication Scheme for Telecare Medicine Information Systems Using ECC
    Sahoo, Shreeya Swagatika
    Mohanty, Sujata
    2018 9TH INTERNATIONAL CONFERENCE ON COMPUTING, COMMUNICATION AND NETWORKING TECHNOLOGIES (ICCCNT), 2018,
  • [22] A secure biometric-based authentication protocol for global mobility networks in smart cities
    Ghahramani, Meysam
    Javidan, Reza
    Shojafar, Mohammad
    JOURNAL OF SUPERCOMPUTING, 2020, 76 (11): : 8729 - 8755
  • [23] A secure biometric-based authentication protocol for global mobility networks in smart cities
    Meysam Ghahramani
    Reza Javidan
    Mohammad Shojafar
    The Journal of Supercomputing, 2020, 76 : 8729 - 8755
  • [24] Biometric-Based Authentication System Using Rough Set Theory
    Own, Hala S.
    Al-Mayyan, Waheeda
    Zedan, Hussein
    ROUGH SETS AND CURRENT TRENDS IN COMPUTING, PROCEEDINGS, 2010, 6086 : 560 - +
  • [25] A Biometric-based Security for Data Authentication in Wireless Body Area Network (WBAN)
    Ramli, Sofia Najwa
    Ahmad, Rabiah
    Abdollah, Mohd Faizal
    Dutkiewicz, Eryk
    2013 15TH INTERNATIONAL CONFERENCE ON ADVANCED COMMUNICATION TECHNOLOGY (ICACT), 2013, : 998 - 1001
  • [26] A Novel Approach for Biometric Based Remote User Authentication Scheme using Smart Card
    Doshi, Nishant
    Patel, Chintan
    2018 INTERNATIONAL CONFERENCE ON ADVANCES IN COMPUTING, COMMUNICATIONS AND INFORMATICS (ICACCI), 2018, : 2093 - 2097
  • [27] Enhanced Biometric-based User Authentication Protocol Using Non-tamper Resistant Smart Cards
    Park, Minsu
    Kim, Hyunsung
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2015, 9 (12): : 129 - 135
  • [28] Secure Biometric-Based Authentication for Cloud Computing
    Wong, Kok-Seng
    Kim, Myung Ho
    CLOUD COMPUTING AND SERVICES SCIENCE, CLOSER 2012, 2013, 367 : 86 - 101
  • [29] Multimodal Biometric-Based Authentication with Secured Templates
    Choudhary, Swati K.
    Naik, Ameya K.
    INTERNATIONAL JOURNAL OF IMAGE AND GRAPHICS, 2021, 21 (02)
  • [30] Finger-Vein as a Biometric-Based Authentication
    Liu, Chun-Yu
    Ruan, Shanq-Jang
    Lai, Yu-Ren
    Yao, Chih-Yuan
    IEEE CONSUMER ELECTRONICS MAGAZINE, 2019, 8 (06) : 29 - 34