Cargando…

Augmented PIN Authentication through Behavioral Biometrics

Personal Identification Numbers (PINs) are widely used today for user authentication on mobile devices. However, this authentication method can be subject to several attacks such as phishing, smudge, and side-channel. In this paper, we increase the security of PIN-based authentication by considering...

Descripción completa

Detalles Bibliográficos
Autores principales: Nerini, Matteo, Favarelli, Elia, Chiani, Marco
Formato: Online Artículo Texto
Lenguaje:English
Publicado: MDPI 2022
Materias:
Acceso en línea:https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9269565/
https://www.ncbi.nlm.nih.gov/pubmed/35808354
http://dx.doi.org/10.3390/s22134857
_version_ 1784744268481429504
author Nerini, Matteo
Favarelli, Elia
Chiani, Marco
author_facet Nerini, Matteo
Favarelli, Elia
Chiani, Marco
author_sort Nerini, Matteo
collection PubMed
description Personal Identification Numbers (PINs) are widely used today for user authentication on mobile devices. However, this authentication method can be subject to several attacks such as phishing, smudge, and side-channel. In this paper, we increase the security of PIN-based authentication by considering behavioral biometrics, specifically the smartphone movements typical of each user. To this end, we propose a method based on anomaly detection that is capable of recognizing whether the PIN is inserted by the smartphone owner or by an attacker. This decision is taken according to the smartphone movements, which are recorded during the PIN insertion through the built-in motion sensors. For each digit in the PIN, an anomaly score is computed using Machine Learning (ML) techniques. Subsequently, these scores are combined to obtain the final decision metric. Numerical results show that our authentication method can achieve an Equal Error Rate (EER) as low as 5% in the case of 4-digit PINs, and 4% in the case of 6-digit PINs. Considering a reduced training set, composed of solely 50 samples, the EER only slightly worsens, reaching 6%. The practicality of our approach is further confirmed by the low processing time required, on the order of fractions of milliseconds.
format Online
Article
Text
id pubmed-9269565
institution National Center for Biotechnology Information
language English
publishDate 2022
publisher MDPI
record_format MEDLINE/PubMed
spelling pubmed-92695652022-07-09 Augmented PIN Authentication through Behavioral Biometrics Nerini, Matteo Favarelli, Elia Chiani, Marco Sensors (Basel) Article Personal Identification Numbers (PINs) are widely used today for user authentication on mobile devices. However, this authentication method can be subject to several attacks such as phishing, smudge, and side-channel. In this paper, we increase the security of PIN-based authentication by considering behavioral biometrics, specifically the smartphone movements typical of each user. To this end, we propose a method based on anomaly detection that is capable of recognizing whether the PIN is inserted by the smartphone owner or by an attacker. This decision is taken according to the smartphone movements, which are recorded during the PIN insertion through the built-in motion sensors. For each digit in the PIN, an anomaly score is computed using Machine Learning (ML) techniques. Subsequently, these scores are combined to obtain the final decision metric. Numerical results show that our authentication method can achieve an Equal Error Rate (EER) as low as 5% in the case of 4-digit PINs, and 4% in the case of 6-digit PINs. Considering a reduced training set, composed of solely 50 samples, the EER only slightly worsens, reaching 6%. The practicality of our approach is further confirmed by the low processing time required, on the order of fractions of milliseconds. MDPI 2022-06-27 /pmc/articles/PMC9269565/ /pubmed/35808354 http://dx.doi.org/10.3390/s22134857 Text en © 2022 by the authors. https://creativecommons.org/licenses/by/4.0/Licensee MDPI, Basel, Switzerland. This article is an open access article distributed under the terms and conditions of the Creative Commons Attribution (CC BY) license (https://creativecommons.org/licenses/by/4.0/).
spellingShingle Article
Nerini, Matteo
Favarelli, Elia
Chiani, Marco
Augmented PIN Authentication through Behavioral Biometrics
title Augmented PIN Authentication through Behavioral Biometrics
title_full Augmented PIN Authentication through Behavioral Biometrics
title_fullStr Augmented PIN Authentication through Behavioral Biometrics
title_full_unstemmed Augmented PIN Authentication through Behavioral Biometrics
title_short Augmented PIN Authentication through Behavioral Biometrics
title_sort augmented pin authentication through behavioral biometrics
topic Article
url https://www.ncbi.nlm.nih.gov/pmc/articles/PMC9269565/
https://www.ncbi.nlm.nih.gov/pubmed/35808354
http://dx.doi.org/10.3390/s22134857
work_keys_str_mv AT nerinimatteo augmentedpinauthenticationthroughbehavioralbiometrics
AT favarellielia augmentedpinauthenticationthroughbehavioralbiometrics
AT chianimarco augmentedpinauthenticationthroughbehavioralbiometrics