Dynamic Multi-level Privilege Control in Behavior-based Implicit Authentication Systems Leveraging Mobile Devices

08/02/2018
by   Yingyuan Yang, et al.
0

Implicit authentication (IA) is gaining popularity over recent years due to its use of user behavior as the main input, relieving users from explicit actions such as remembering and entering passwords. However, such convenience comes at a cost of authentication accuracy and delay which we propose to improve in this paper. Authentication accuracy deteriorates as users' behaviors change as a result of mood, age, a change of routine, etc. Current authentication systems handle failed authentication attempts by locking the user out of her mobile device. It is unsuitable for IA whose accuracy deterioration induces high false reject rate, rendering the IA system unusable. Furthermore, existing IA systems leverage computationally expensive machine learning which can introduce large authentication delay. It is challenging to improve the authentication accuracy of these systems without sacrificing authentication delay. In this paper, we propose a multi-level privilege control (MPC) scheme that dynamically adjusts users' access privilege based on their behavior change. MPC increases the system's confidence on users' legitimacy even when their behaviors deviate from historical data, thus improving authentication accuracy. It is a lightweight feature added to the existing IA schemes that helps avoid frequent and expensive retraining of machine learning models, thus improving authentication delay. We demonstrate that MPC increases authentication accuracy by 18.63% and reduces authentication delay by 7.02 minutes on average, using a public dataset that contains comprehensive user behavior data.

READ FULL TEXT
research
06/15/2020

BubbleMap: Privilege Mapping for Behavior-based Implicit Authentication Systems

Implicit authentication (IA) is gaining popularity over recent years due...
research
05/08/2019

Blockchain-enabled Authentication Handover with Efficient Privacy Protection in SDN-based 5G Networks

5G mobile networks provide additional benefits in terms of lower latency...
research
06/13/2020

EchoIA: Implicit Authentication System Based on User Feedback

Implicit authentication (IA) transparently authenticates users by utiliz...
research
07/27/2022

Continuous User Authentication Using Machine Learning and Multi-Finger Mobile Touch Dynamics with a Novel Dataset

As technology grows and evolves rapidly, it is increasingly clear that m...
research
10/07/2022

mPSAuth: Privacy-Preserving and Scalable Authentication for Mobile Web Applications

As nowadays most web application requests originate from mobile devices,...
research
02/06/2023

AuthentiSense: A Scalable Behavioral Biometrics Authentication Scheme using Few-Shot Learning for Mobile Platforms

Mobile applications are widely used for online services sharing a large ...
research
11/11/2019

A New Approach: Cognitive Multi-Level Authentication (CMLA) in Nuclear Command and Control

Nuclear monitoring must considered as high precedence against national s...

Please sign up or login with your details

Forgot password? Click here to reset