首页> 外文期刊>Pattern recognition letters >An evaluation of indirect attacks and countermeasures in fingerprintverification systems
【24h】

An evaluation of indirect attacks and countermeasures in fingerprintverification systems

机译:指纹验证系统中的间接攻击评估和对策

获取原文
获取原文并翻译 | 示例
           

摘要

Biometric recognition systems are vulnerable to numerous security threats. These include direct attacks to the sensor or indirect attacks, which represent the ones aimed towards internal system modules. In this work, indirect attacks against fingerprint verification systems are analyzed in order to better understand how harmful they can be. Software attacks via hill climbing algorithms are implemented and their success rate is studied under different conditions. In a hill climbing attack, a randomly generated synthetic template is presented to the matcher, and is iteratively modified based on the score output until it is accepted as genuine. Countermeasures against such attacks are reviewed and analyzed, focusing on score quantization as a case study. It is found that hill climbing attacks are highly effective in the process of creating synthetic templates that are accepted by the matcher as genuine ones. We also find that score quantization drastically reduces the attack success rate. We analyze the hill climbing approach over two state-of-the-art fingerprint verification systems: the NIST Fingerprint Image Software 2, running on a PC and a prototype system fully embedded in a smart card (Match-on-Card). Results of both systems are obtained using a sub corpus of the publicly available MCYT database.
机译:生物特征识别系统容易受到众多安全威胁的攻击。其中包括对传感器的直接攻击或间接攻击,它们表示针对内部系统模块的攻击。在这项工作中,分析了对指纹验证系统的间接攻击,以便更好地了解它们的危害性。通过爬山算法实施软件攻击,并研究了在不同条件下的成功率。在爬山攻击中,将随机生成的合成模板呈现给匹配器,并根据分数输出进行迭代修改,直到其被接受为真实。审查和分析了针对此类攻击的对策,并以案例量化为重点。发现爬山攻击在创建合成模板的过程中非常有效,合成模板被匹配者视为真实模板。我们还发现分数量化会大大降低攻击成功率。我们通过两种最先进的指纹验证系统来分析爬坡方法:在PC上运行的NIST指纹图像软件2,以及完全嵌入在智能卡(Match-on-Card)中的原型系统。这两个系统的结果都是使用公开的MCYT数据库的子语集获得的。

著录项

  • 来源
    《Pattern recognition letters》 |2011年第12期|p.1643-1651|共9页
  • 作者单位

    Biometric Recognition Group - ATVS, Escuela Politecnica Superior, Universidad Autonoma de Madrid, Campus de Cantoblanco, C/Fmncisco Tomas y Valiente, J 1 28049 Madrid, Spain;

    Biometric Recognition Group - ATVS, Escuela Politecnica Superior, Universidad Autonoma de Madrid, Campus de Cantoblanco, C/Fmncisco Tomas y Valiente, J 1 28049 Madrid, Spain;

    Biometric Recognition Group - ATVS, Escuela Politecnica Superior, Universidad Autonoma de Madrid, Campus de Cantoblanco, C/Fmncisco Tomas y Valiente, J 1 28049 Madrid, Spain;

    Biometric Recognition Group - ATVS, Escuela Politecnica Superior, Universidad Autonoma de Madrid, Campus de Cantoblanco, C/Fmncisco Tomas y Valiente, J 1 28049 Madrid, Spain;

  • 收录信息 美国《科学引文索引》(SCI);美国《工程索引》(EI);
  • 原文格式 PDF
  • 正文语种 eng
  • 中图分类
  • 关键词

    biometrics; indirect attacks; fingerprint verification; match-on-card; vulnerabilities; hill climbing;

    机译:生物识别技术;间接攻击;指纹验证;卡匹配;漏洞;爬坡;

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号