DocumentCode
1199775
Title
Join the IEEE Computer Society
Author
Chen, Yuanfeng ; Liginlal, D.
Author_Institution
Dept. of Operations & Inf. Manage., Univ. of Wisconsin-Madison, Madison, WI
Volume
19
Issue
4
fYear
2007
fDate
4/1/2007 12:00:00 AM
Firstpage
582
Lastpage
584
Abstract
Knowledge-based authentication (KBA) has gained prominence as a user authentication method for electronic transactions. This paper presents a Bayesian network model of KBA grounded in probabilistic reasoning and information theory. The probabilistic semantics of the model parameters naturally lead to the definitions of two key KBA metrics - guessability and memorability. The statistical modeling approach allows parameter estimation using methods such as the maximum likelihood estimator (MLE). The information-theoretic view helps to derive the closed-form solutions to estimating the guessability and guessing entropy metrics. The results related to KBA metrics and the models under different attacking strategies and factoid distributions are unified under a game-theoretic framework that yields lower and upper bounds of optimal guessability. The paper also proposes a methodology for implementing a Bayesian network-based KBA system. Further, an empirical evaluation of the relative merits of two Bayesian network structures for KBA, the naive Bayes (NB) and the tree augmented naive Bayes (TAN), confirms the hypothesis that the TAN structure is superior in terms of authentication accuracy and error rates. The results of the theoretical analysis and the empirical study provide insights into the KBA design problem and establish a foundation for future research in the KBA area
Keywords
belief networks; game theory; inference mechanisms; message authentication; Bayesian network; electronic transaction; information theory; knowledge-based authentication; maximum likelihood estimator; probabilistic reason; tree augmented naive Bayes method;
fLanguage
English
Journal_Title
Knowledge and Data Engineering, IEEE Transactions on
Publisher
ieee
ISSN
1041-4347
Type
jour
DOI
10.1109/TKDE.2007.1021
Filename
4118714
Link To Document