Cargando…

A novel privacy-preserving biometric authentication scheme

Most existing secure biometric authentication schemes are server-centric, and users must fully trust the server to store, process, and manage their biometric data. As a result, users’ biometric data could be leaked by outside attackers or the service provider itself. This paper first constructs the...

Descripción completa

Detalles Bibliográficos
Autores principales: Mao, Xuechun, Chen, Ying, Deng, Cong, Zhou, Xiaqing
Formato: Online Artículo Texto
Lenguaje:English
Publicado: Public Library of Science 2023
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC10212112/
https://www.ncbi.nlm.nih.gov/pubmed/37228099
http://dx.doi.org/10.1371/journal.pone.0286215
_version_ 1785047396174004224
author Mao, Xuechun
Chen, Ying
Deng, Cong
Zhou, Xiaqing
author_facet Mao, Xuechun
Chen, Ying
Deng, Cong
Zhou, Xiaqing
author_sort Mao, Xuechun
collection PubMed
description Most existing secure biometric authentication schemes are server-centric, and users must fully trust the server to store, process, and manage their biometric data. As a result, users’ biometric data could be leaked by outside attackers or the service provider itself. This paper first constructs the EDZKP protocol based on the inner product, which proves whether the secret value is the Euclidean distance of the secret vectors. Then, combined with the Cuproof protocol, we propose a novel user-centric biometric authentication scheme called BAZKP. In this scheme, all the biometric data remain encrypted during authentication phase, so the server will never see them directly. Meanwhile, the server can determine whether the Euclidean distance of two secret vectors is within a pre-defined threshold by calculation. Security analysis shows BAZKP satisfies completeness, soundness, and zero-knowledge. Based on BAZKP, we propose a privacy-preserving biometric authentication system, and its evaluation demonstrates that it provides reliable and secure authentication.
format Online
Article
Text
id pubmed-10212112
institution National Center for Biotechnology Information
language English
publishDate 2023
publisher Public Library of Science
record_format MEDLINE/PubMed
spelling pubmed-102121122023-05-26 A novel privacy-preserving biometric authentication scheme Mao, Xuechun Chen, Ying Deng, Cong Zhou, Xiaqing PLoS One Research Article Most existing secure biometric authentication schemes are server-centric, and users must fully trust the server to store, process, and manage their biometric data. As a result, users’ biometric data could be leaked by outside attackers or the service provider itself. This paper first constructs the EDZKP protocol based on the inner product, which proves whether the secret value is the Euclidean distance of the secret vectors. Then, combined with the Cuproof protocol, we propose a novel user-centric biometric authentication scheme called BAZKP. In this scheme, all the biometric data remain encrypted during authentication phase, so the server will never see them directly. Meanwhile, the server can determine whether the Euclidean distance of two secret vectors is within a pre-defined threshold by calculation. Security analysis shows BAZKP satisfies completeness, soundness, and zero-knowledge. Based on BAZKP, we propose a privacy-preserving biometric authentication system, and its evaluation demonstrates that it provides reliable and secure authentication. Public Library of Science 2023-05-25 /pmc/articles/PMC10212112/ /pubmed/37228099 http://dx.doi.org/10.1371/journal.pone.0286215 Text en © 2023 Mao et al https://creativecommons.org/licenses/by/4.0/This is an open access article distributed under the terms of the Creative Commons Attribution License (https://creativecommons.org/licenses/by/4.0/) , which permits unrestricted use, distribution, and reproduction in any medium, provided the original author and source are credited.
spellingShingle Research Article
Mao, Xuechun
Chen, Ying
Deng, Cong
Zhou, Xiaqing
A novel privacy-preserving biometric authentication scheme
title A novel privacy-preserving biometric authentication scheme
title_full A novel privacy-preserving biometric authentication scheme
title_fullStr A novel privacy-preserving biometric authentication scheme
title_full_unstemmed A novel privacy-preserving biometric authentication scheme
title_short A novel privacy-preserving biometric authentication scheme
title_sort novel privacy-preserving biometric authentication scheme
topic Research Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC10212112/
https://www.ncbi.nlm.nih.gov/pubmed/37228099
http://dx.doi.org/10.1371/journal.pone.0286215
work_keys_str_mv AT maoxuechun anovelprivacypreservingbiometricauthenticationscheme
AT chenying anovelprivacypreservingbiometricauthenticationscheme
AT dengcong anovelprivacypreservingbiometricauthenticationscheme
AT zhouxiaqing anovelprivacypreservingbiometricauthenticationscheme
AT maoxuechun novelprivacypreservingbiometricauthenticationscheme
AT chenying novelprivacypreservingbiometricauthenticationscheme
AT dengcong novelprivacypreservingbiometricauthenticationscheme
AT zhouxiaqing novelprivacypreservingbiometricauthenticationscheme