Authentication mechanisms typically verify the user identity only at login, or with tedious explicit authentication requests that improve security at the expense of usability. However, especially for critical systems, workstations have to be tightly and continuously secured in order to prevent unauthorised interventions. Recent researches envisage multi-biometric systems for continuous authentication, where biometric traits are acquired transparently to the user and authentication is provided without requiring explicit actions. In this work we propose a multi-biometric authentication system that continuously and transparently verifies the user identity through face, fingerprint and keystroke recognition. This paper presents the design, prototype implementation and assessment of our system. We evaluate the system usability and its trade-off with security in an experiment involving 60 users. Our findings show that security enhancements are provided and users: 1) perform the actions without additional effort; 2) largely accept the authentication system, which only requires minimal training.

Design, implementation, and assessment of a usable multi-biometric continuous authentication system / Schiavone E.; Ceccarelli A.; Carvalho A.; Bondavalli A.. - In: INTERNATIONAL JOURNAL OF CRITICAL COMPUTER-BASED SYSTEMS. - ISSN 1757-8779. - ELETTRONICO. - 9:(2019), pp. 215-247. [10.1504/IJCCBS.2019.104490]

Design, implementation, and assessment of a usable multi-biometric continuous authentication system

Schiavone E.;Ceccarelli A.;Bondavalli A.
2019

Abstract

Authentication mechanisms typically verify the user identity only at login, or with tedious explicit authentication requests that improve security at the expense of usability. However, especially for critical systems, workstations have to be tightly and continuously secured in order to prevent unauthorised interventions. Recent researches envisage multi-biometric systems for continuous authentication, where biometric traits are acquired transparently to the user and authentication is provided without requiring explicit actions. In this work we propose a multi-biometric authentication system that continuously and transparently verifies the user identity through face, fingerprint and keystroke recognition. This paper presents the design, prototype implementation and assessment of our system. We evaluate the system usability and its trade-off with security in an experiment involving 60 users. Our findings show that security enhancements are provided and users: 1) perform the actions without additional effort; 2) largely accept the authentication system, which only requires minimal training.
2019
9
215
247
Schiavone E.; Ceccarelli A.; Carvalho A.; Bondavalli A.
File in questo prodotto:
File Dimensione Formato  
final referred version.pdf

Open Access dal 02/12/2020

Tipologia: Versione finale referata (Postprint, Accepted manuscript)
Licenza: Tutti i diritti riservati
Dimensione 830.26 kB
Formato Adobe PDF
830.26 kB Adobe PDF

I documenti in FLORE sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificatore per citare o creare un link a questa risorsa: https://hdl.handle.net/2158/1188688
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 2
  • ???jsp.display-item.citation.isi??? ND
social impact