Cargando…
Augmented PIN Authentication through Behavioral Biometrics
Personal Identification Numbers (PINs) are widely used today for user authentication on mobile devices. However, this authentication method can be subject to several attacks such as phishing, smudge, and side-channel. In this paper, we increase the security of PIN-based authentication by considering...
Autores principales: | , , |
---|---|
Formato: | Online Artículo Texto |
Lenguaje: | English |
Publicado: |
MDPI
2022
|
Materias: | |
Acceso en línea: | https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9269565/ https://www.ncbi.nlm.nih.gov/pubmed/35808354 http://dx.doi.org/10.3390/s22134857 |
_version_ | 1784744268481429504 |
---|---|
author | Nerini, Matteo Favarelli, Elia Chiani, Marco |
author_facet | Nerini, Matteo Favarelli, Elia Chiani, Marco |
author_sort | Nerini, Matteo |
collection | PubMed |
description | Personal Identification Numbers (PINs) are widely used today for user authentication on mobile devices. However, this authentication method can be subject to several attacks such as phishing, smudge, and side-channel. In this paper, we increase the security of PIN-based authentication by considering behavioral biometrics, specifically the smartphone movements typical of each user. To this end, we propose a method based on anomaly detection that is capable of recognizing whether the PIN is inserted by the smartphone owner or by an attacker. This decision is taken according to the smartphone movements, which are recorded during the PIN insertion through the built-in motion sensors. For each digit in the PIN, an anomaly score is computed using Machine Learning (ML) techniques. Subsequently, these scores are combined to obtain the final decision metric. Numerical results show that our authentication method can achieve an Equal Error Rate (EER) as low as 5% in the case of 4-digit PINs, and 4% in the case of 6-digit PINs. Considering a reduced training set, composed of solely 50 samples, the EER only slightly worsens, reaching 6%. The practicality of our approach is further confirmed by the low processing time required, on the order of fractions of milliseconds. |
format | Online Article Text |
id | pubmed-9269565 |
institution | National Center for Biotechnology Information |
language | English |
publishDate | 2022 |
publisher | MDPI |
record_format | MEDLINE/PubMed |
spelling | pubmed-92695652022-07-09 Augmented PIN Authentication through Behavioral Biometrics Nerini, Matteo Favarelli, Elia Chiani, Marco Sensors (Basel) Article Personal Identification Numbers (PINs) are widely used today for user authentication on mobile devices. However, this authentication method can be subject to several attacks such as phishing, smudge, and side-channel. In this paper, we increase the security of PIN-based authentication by considering behavioral biometrics, specifically the smartphone movements typical of each user. To this end, we propose a method based on anomaly detection that is capable of recognizing whether the PIN is inserted by the smartphone owner or by an attacker. This decision is taken according to the smartphone movements, which are recorded during the PIN insertion through the built-in motion sensors. For each digit in the PIN, an anomaly score is computed using Machine Learning (ML) techniques. Subsequently, these scores are combined to obtain the final decision metric. Numerical results show that our authentication method can achieve an Equal Error Rate (EER) as low as 5% in the case of 4-digit PINs, and 4% in the case of 6-digit PINs. Considering a reduced training set, composed of solely 50 samples, the EER only slightly worsens, reaching 6%. The practicality of our approach is further confirmed by the low processing time required, on the order of fractions of milliseconds. MDPI 2022-06-27 /pmc/articles/PMC9269565/ /pubmed/35808354 http://dx.doi.org/10.3390/s22134857 Text en © 2022 by the authors. https://creativecommons.org/licenses/by/4.0/Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/). |
spellingShingle | Article Nerini, Matteo Favarelli, Elia Chiani, Marco Augmented PIN Authentication through Behavioral Biometrics |
title | Augmented PIN Authentication through Behavioral Biometrics |
title_full | Augmented PIN Authentication through Behavioral Biometrics |
title_fullStr | Augmented PIN Authentication through Behavioral Biometrics |
title_full_unstemmed | Augmented PIN Authentication through Behavioral Biometrics |
title_short | Augmented PIN Authentication through Behavioral Biometrics |
title_sort | augmented pin authentication through behavioral biometrics |
topic | Article |
url | https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9269565/ https://www.ncbi.nlm.nih.gov/pubmed/35808354 http://dx.doi.org/10.3390/s22134857 |
work_keys_str_mv | AT nerinimatteo augmentedpinauthenticationthroughbehavioralbiometrics AT favarellielia augmentedpinauthenticationthroughbehavioralbiometrics AT chianimarco augmentedpinauthenticationthroughbehavioralbiometrics |