论文标题

基于击键动态的连续身份验证的通用隐私权协议

A Generic Privacy-Preserving Protocol For Keystroke Dynamics-Based Continuous Authentication

论文作者

Baig, Ahmed Fraz, Eskeland, Sigurd

论文摘要

连续身份验证利用自动识别某些用户功能的无缝和被动身份验证,而无需用户注意。这样的特征可以分为生理生物识别和行为生物识别技术的类别。通过通过键入模式识别用户,为行为生物识别的身份验证提出了击键动力学。但是,已经指出,使用生理生物识别技术和行为生物识别的持续身份验证会导致隐私风险,从而揭示个人特征和活动。在本文中,我们考虑了先前提出的基于击键动力学的身份验证方案,该方案没有隐私性属性。在这方面,我们提出了此身份验证方案的通用隐私版本,其中所有用户功能均已加密 - 以防止将其披露到身份验证服务器上。我们的方案是普通的,因为它假设具有同态密码原始基底。由于协议的同构密码属性,根据加密数据进行身份验证。

Continuous authentication utilizes automatic recognition of certain user features for seamless and passive authentication without requiring user attention. Such features can be divided into categories of physiological biometrics and behavioral biometrics. Keystroke dynamics is proposed for behavioral biometrics-oriented authentication by recognizing users by means of their typing patterns. However, it has been pointed out that continuous authentication using physiological biometrics and behavior biometrics incur privacy risks, revealing personal characteristics and activities. In this paper, we consider a previously proposed keystroke dynamics-based authentication scheme that has no privacy-preserving properties. In this regard, we propose a generic privacy-preserving version of this authentication scheme in which all user features are encrypted -- preventing disclosure of those to the authentication server. Our scheme is generic in the sense that it assumes homomorphic cryptographic primitives. Authentication is conducted on the basis of encrypted data due to the homomorphic cryptographic properties of our protocol.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源