Security analysis of smartcard to card reader communications for biometric cardholder authentication

  • Authors:
  • Luciano Rila;Chris J. Mitchell

  • Affiliations:
  • Information Security Group, Royal Holloway, University of London, Surrey, UK;Information Security Group, Royal Holloway, University of London, Surrey, UK

  • Venue:
  • CARDIS'02 Proceedings of the 5th conference on Smart Card Research and Advanced Application Conference - Volume 5
  • Year:
  • 2002

Quantified Score

Hi-index 0.00

Visualization

Abstract

The use of biometrics, and fingerprint recognition in particular, for cardholder authentication in smart-card systems is growing in popularity. In such a biometrics-based cardholder authentication system, sensitive data may be transferred between the smartcard and the card reader. In this paper we identify and classify possible threats to the communications link between card and card reader during cardholder authentication. We also analyse the impact of these threats. We consider five different architectures and use the threat analysis to indicate the relative security of the various possible architectures.