Securing fuzzy vault schemes through biometric hashing∗
نویسندگان
چکیده
The fuzzy vault scheme is a well-known technique to mitigate privacy, security, and usability related problems in biometric identification applications. The basic idea is to hide biometric data along with secret information amongst randomly selected chaff points during the enrollment process. Only the owner of the biometric data who presents correct biometrics can recover the secret and identify himself. Recent research, however, has shown that the scheme is vulnerable to certain types of attacks. The recently proposed “correlation attack”, that allows linking two vaults of the same biometric, pose serious privacy risks that have not been sufficiently addressed. The primary aim of this work is to remedy those problems by proposing a framework based on distance preserving hash functions to render the correlation attack inapplicable. We first give definitions which capture the requirements such hash functions must posses. We then propose a specific family of hash functions that fulfills these requirements and lends itself to efficient implementation. We also provide formal proofs that the proposed family of hash functions indeed protects the fuzzy vault against correlation attacks. We implement a hashed fuzzy vault using fingerprint data and investigate the effects of the proposed method on the false accept and false reject rates (FAR and FRR, respectively) extensively. Implementation results suggest that the proposed method provides a complete protection against correlation attacks at the expense of small degradation in the FRR.
منابع مشابه
Fuzzy Vault with Iris and Retina: A Review
Biometric systems play an important role in authenticating the identity of an individual. Such authenticated systems are still prone to attacks and securing them is an important issue. To overcome this, biometric based authentication is blended with cryptography resulting in a framework called fuzzy vault which provides a high level of security. Fuzzy vault is a biometric cryptosystem used for ...
متن کاملAutomatic Alignment of Fingerprint Features for Fuzzy Fingerprint Vault
Biometrics-based user authentication has several advantages over traditional password-based systems for standalone authentication applications. This is also true for new authentication architectures known as crypto-biometric systems, where cryptography and biometrics are merged to achieve high security and user convenience at the same time. Recently, a cryptographic construct, called fuzzy vaul...
متن کاملRetina and Iris Based Multimodal Biometric Fuzzy Vault
Biometric authentication technology is gaining much importance as it serves as a powerful alternative for traditional password based authentication. In the current scenario securing the biometric template against attack is an important issue. Fuzzy vault is a proven biometric crypto system that is used to protect biometric templates and secret data. Multi biometric systems are more secure compa...
متن کاملSecuring Iris Templates using Double Encryption Method
The important aspect of all verification system is authentication and security. This aspect necessitates the development of a method that ensures user security and privacy. The traditional methods such as tokens and passwords provide security to the users. Uncertainly, the attackers can easily compromise these techniques. In recent years, the combination of biometrics and cryptography technique...
متن کاملFeature Distribution of the Fingerprint Template Generated by the Geometric Hashing-Based Fuzzy Vault
Recently, a cryptographic construct, called fuzzy vault, has been proposed for crypto-biometric systems, and some implementations for fingerprint have been reported to protect the stored fingerprint template by hiding the fingerprint features, i.e., adding “chaff” minutiae into the original minutiae set. Also, solutions to the most challenging issue in applying the fuzzy vault to fingerprint(i....
متن کاملذخیره در منابع من
با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید
عنوان ژورنال:
دوره شماره
صفحات -
تاریخ انتشار 2010