Combining PIN and Biometric Identifications as Enhancement to User Authentication in Internet Banking

05/20/2021
by   Cherinor Umaru Bah, et al.
0

Internet banking (IB) continues to face security concerns arising from illegal access to users accounts. Use of personal identification numbers (PIN) as a single authentication method for IB users is prone to insecurities such as phishing, hacking and shoulder surfing. Fingerprint matching (FPM) as an alternative to PIN equally has a downside as fingerprints reside on individual mobile devices. A survey we conducted from 170 IB respondents of 5 different banks in Brunei established that majority (65 biometric authentication methods. In this work, we propose a two-level integrated authentication mechanism (2L-IAM). At the first level, the user logs in to their IB portal using either PIN or FPM. At the second level, user is authenticated by means of face recognition (FR) should they initiate a transaction classified as sensitive. The merits of the introduced 2L-IAM are 3-fold: - (1) FR guarantees the identity of the rightful user irrespective of the login device; (2) By classifying banking products sensitivity, the sensitive transactions are more effectively secured; (3) It is accommodative of different users authentication preferences. Adoption of this framework could thus improve both users and banks experiences in terms of enhanced security and service delivery respectively.

READ FULL TEXT
research
11/18/2019

"Please enter your PIN" – On the Risk of Bypass Attacks on Biometric Authentication on Mobile Devices

Nowadays, most mobile devices support biometric authentication schemes l...
research
12/07/2017

A Secure Mobile Authentication Alternative to Biometrics

Biometrics are widely used for authentication in consumer devices and bu...
research
10/08/2022

Study and security analysis of the Spanish identity card

The National Identity Document is a fundamental piece of documentation f...
research
05/26/2023

Fast IDentity Online with Anonymous Credentials (FIDO-AC)

Web authentication is a critical component of today's Internet and the d...
research
10/25/2017

Biometrics-as-a-Service: A Framework to Promote Innovative Biometric Recognition in the Cloud

Biometric recognition, or simply biometrics, is the use of biological at...
research
04/12/2022

Beautiful secrets: using aesthetic images to authenticate users

We propose and evaluate an authentication scheme that improves usability...
research
05/21/2020

Towards Seamless Authentication for Zoom-Based Online Teaching and Meeting

The lockdowns and travel restrictions in current coronavirus pandemic si...

Please sign up or login with your details

Forgot password? Click here to reset