A critical survey of the security and privacy aspects of the Aadhaar framework

被引:1
|
作者
Sadhya, Debanjan [1 ]
Sahu, Tanya [1 ]
机构
[1] Indian Inst Informat Technol & Management Gwalior, ABV, Dept Comp Sci & Engn, Gwalior, Madhya Pradesh, India
关键词
Aadhaar; Biometrics; Security; Privacy; Linkage attacks; BIOMETRIC AUTHENTICATION; K-ANONYMITY; NOISE;
D O I
10.1016/j.cose.2024.103782
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Aadhaar is an identification document issued by the Unique Identification Authority of India (UIDAI) to the residents of India. It contains a 12-digit unique identification number (known as the Aadhaar number) and personal details such as name, address, date of birth and biometric data. The biometric data captured for Aadhaar includes fingerprints, facial images and iris scans, which are unique to each individual. The Aadhaar data is used for entity authentication while accessing various government services, availing subsidies, opening bank accounts and conducting other identity-dependent transactions. Thus, the Aadhaar framework provides efficient authentication services in India's public delivery systems. Although UIDAI has implemented stringent security measures such as encryption, access controls and regular audits of the system, the use of Aadhaar has raised several concerns regarding privacy and data security aspects. In this regard, only a handful of studies discuss the security challenges related to Aadhaar. Furthermore, the Aadhaar framework itself is always evolving, thus making prior studies less informative. This paper describes in detail the security features of the Aadhaar card while emphasizing the security challenges involving demographic and biometric data. We have also outlined the preventive measures that can be enforced to secure these data. Finally, this study investigates possible linkage attacks that could occur when different databases are linked for Aadhaar-enabled public schemes. Hence, our work summarizes the security and privacy implications of the Aadhaar infrastructure from a holistic perspective. We believe that our work would be useful for security professionals and policy makers engaged in designing large-scale authentication frameworks.
引用
收藏
页数:16
相关论文
共 50 条
  • [21] A Survey on Security and Privacy Issues of Bitcoin
    Conti, Mauro
    Kumar, E. Sandeep
    Lal, Chhagan
    Ruj, Sushmita
    [J]. IEEE COMMUNICATIONS SURVEYS AND TUTORIALS, 2018, 20 (04): : 3416 - 3452
  • [22] A survey on privacy and security of Internet of Things
    Ogonji, Mark Mbock
    Okeyo, George
    Wafula, Joseph Muliaro
    [J]. COMPUTER SCIENCE REVIEW, 2020, 38
  • [23] A Survey on Security and Privacy in Social Networks
    Jayaram, B.
    Jayakumar, C.
    [J]. COMPUTATIONAL VISION AND BIO-INSPIRED COMPUTING ( ICCVBIC 2021), 2022, 1420 : 807 - 822
  • [24] A brief survey on RFID privacy and security
    Aragones-Vilella, J.
    Martinez-Balleste, A.
    Solanas, A.
    [J]. WORLD CONGRESS ON ENGINEERING 2007, VOLS 1 AND 2, 2007, : 1488 - +
  • [25] Security and Privacy Issues: A Survey on FinTech
    Gai, Keke
    Qiu, Meikang
    Sun, Xiaotong
    Zhao, Hui
    [J]. SMART COMPUTING AND COMMUNICATION, SMARTCOM 2016, 2017, 10135 : 236 - 247
  • [26] Security and Privacy in Cloud Computing: A Survey
    Shankarwar, Mahesh U.
    Pawar, Ambika V.
    [J]. PROCEEDINGS OF THE 3RD INTERNATIONAL CONFERENCE ON FRONTIERS OF INTELLIGENT COMPUTING: THEORY AND APPLICATIONS (FICTA) 2014, VOL 2, 2015, 328 : 1 - 11
  • [27] Privacy Preserving and Data Security - A Survey
    Nagaraja, Arun
    Mangathayaru, N.
    Rajashekar, N.
    [J]. 2016 INTERNATIONAL CONFERENCE ON ENGINEERING & MIS (ICEMIS), 2016,
  • [28] RFID security and privacy: A research survey
    Juels, A
    [J]. IEEE JOURNAL ON SELECTED AREAS IN COMMUNICATIONS, 2006, 24 (02) : 381 - 394
  • [29] A Survey of Security and Privacy in Big Data
    Ye, Haina
    Cheng, Xinzhou
    Yuan, Mingqiang
    Xu, Lexi
    Gao, Jie
    Cheng, Chen
    [J]. 2016 16TH INTERNATIONAL SYMPOSIUM ON COMMUNICATIONS AND INFORMATION TECHNOLOGIES (ISCIT), 2016, : 268 - 272
  • [30] Security and Privacy in Metaverse: A Comprehensive Survey
    Huang, Yan
    Li, Yi
    Cai, Zhipeng
    [J]. BIG DATA MINING AND ANALYTICS, 2023, 6 (02): : 234 - 247