Smartcard-based Secret Distribution for Secure Fingerprint Verification

Citations

WEB OF SCIENCE

2
Citations

SCOPUS

2

초록

Recently, in the smartcard-based authentication system, there is an increasing trend of using fingerprint for the card holder verification, instead of passwords. However, the security of the fingerprint data is particularly important as the possible compromise of the data will be permanent. In order to protect the fingerprint data, the fuzzy vault scheme has emerged as a promising solution to the user privacy problem. The techniques, such as "fuzzy vault," which is based on the difficulty of the polynomial reconstruction need to be developed for the smartcard-based environment. In this paper, we propose a secure and efficient approach, which reconstructs a polynomial on a smartcard with the aid of a server by using fuzzy fingerprint vaults distributed into the smartcard and the server. The goal of our approach is, under the real-time constraint, to enhance the security level of the fuzzy vault scheme against not only the typical brute-force attack, but recently reported correlation attack which finds the real minutiae using multiple fuzzy vaults enrolled for different applications. Based on the experimental results, we confirmed that our secret distribution-based approach can perform the fuzzy vault-based fingerprint verification more securely (by a factor of 177 in brute-force attack, and by a factor of 10 (9) in correlation attack) and quickly (by a factor of 17) on a combination of a smartcard and a server.

키워드

Correlation attackFuzzy vaultInformation securitySecret distributionVAULT
제목
Smartcard-based Secret Distribution for Secure Fingerprint Verification
저자
Choi, HannaLee, SungjuChung, YongwhaCho, HyeonjoongChoi, WooyongPan, Sungbum
DOI
10.4103/0377-2063.86263
발행일
2011-07
유형
Article
저널명
IETE Journal of Research
57
4
페이지
299 ~ 307