Efficient Mobile User Authentication Service with Privacy Preservation and User Untraceability

被引:0
|
作者
Braeken, An [1 ]
Touhafi, Abdellah [1 ]
机构
[1] Vrije Univ Brussel VUB, INDI, Brussels, Belgium
关键词
Authentication; Anonymity; Physical Unclonable Function; SECURITY;
D O I
10.1109/CloudTech49835.2020.9365896
中图分类号
TP18 [人工智能理论];
学科分类号
081104 ; 0812 ; 0835 ; 1405 ;
摘要
Security questions and answers for authentication are a common approach to enable the user to reset forgotten passwords. Moreover, they are also sometimes used as alternative for the classical username-password system, which fails in offering a good balance between user friendliness and security as long and complex passwords are required. However, in order to guarantee the privacy of the user as imposed by the new General Data Protection Regulation (GDPR), it should be impossible to derive the answer of the user by any other entity, including the server provider or the server managing the authentication. In this paper, we present an efficient mobile based security mechanism to realise this goal. The proposed scheme can be applied on top of any type of question-answer based authentication system. In addition, our solution also offers anonymity and untraceability of the user, such that no activity patterns can be drawn by simply eavesdropping on the communication channel to the service provider or the authentication server. We show that our proposed mechanism not only offers more security features compared to related work, but it is also significantly faster, in particular at the side of the user.
引用
收藏
页码:39 / 46
页数:8
相关论文
共 50 条
  • [1] Efficient handover authentication with user anonymity and untraceability for Mobile Cloud Computing
    Yang, Xu
    Huang, Xinyi
    Liu, Joseph K.
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2016, 62 : 190 - 195
  • [2] Scalable and efficient mobile authentication scheme preserving user privacy
    Pu, Qiong
    Wang, Jian
    Wu, Shuhua
    [J]. INTERNATIONAL JOURNAL OF AD HOC AND UBIQUITOUS COMPUTING, 2013, 12 (02) : 65 - 74
  • [4] A lightweight authentication scheme with user untraceability
    Kuo-Hui Yeh
    [J]. Frontiers of Information Technology & Electronic Engineering, 2015, 16 : 259 - 271
  • [5] Mobile user authentication protocol with privacy preserving for roaming service in GLOMONET
    R. Madhusudhan
    Shashidhara R.
    [J]. Peer-to-Peer Networking and Applications, 2020, 13 : 82 - 103
  • [6] Mobile user authentication protocol with privacy preserving for roaming service in GLOMONET
    Madhusudhan, R.
    Shashidhara, R.
    [J]. PEER-TO-PEER NETWORKING AND APPLICATIONS, 2020, 13 (01) : 82 - 103
  • [7] Secure and efficient authentication protocol with user untraceability for global roaming services
    Prasanta Kumar Roy
    Ansuman Bhattacharya
    [J]. Wireless Networks, 2021, 27 : 5189 - 5206
  • [8] Secure and efficient authentication protocol with user untraceability for global roaming services
    Roy, Prasanta Kumar
    Bhattacharya, Ansuman
    [J]. WIRELESS NETWORKS, 2021, 27 (08) : 5189 - 5206
  • [9] Authentication protocol providing user anonymity and untraceability in wireless mobile communication systems
    Park, CS
    [J]. COMPUTER NETWORKS, 2004, 44 (02) : 267 - 273
  • [10] On Security of Privacy-Preserving Remote User Authentication with K-Times Untraceability
    Zhang, Qijia
    Zhang, Jianhong
    Liu, Linhan
    Wang, Jing
    Liu, Pei
    [J]. International Journal of Network Security, 2021, 23 (03) : 449 - 454