Title :
Evaluating the Reliability of Credential Hardening through Keystroke Dynamics
Author :
Bartlow, Nick ; Cukic, Bojan
Author_Institution :
Lane Dept. of Comput. Sci. & Electr. Eng., West Virginia Univ., Morgantown, WV
Abstract :
Most computer systems rely on usernames and passwords as a mechanism for authentication and access control. These credential sets offer weak protection to a broad scope of applications with differing levels of sensitivity. Traditional physiological biometric systems such as fingerprint, face, and iris recognition are not readily deployable in remote authentication schemes. Keystroke dynamics provide the ability to combine the ease of use of username/password schemes with the increased trustworthiness associated with biometrics. Our research extends previous work on keystroke dynamics by incorporating shift-key patterns. The system is capable of operating at various points on a traditional ROC curve depending on application specific security needs. A 1% false accept rate is attainable at a 14% false reject rate. An equal error rate of 5% is suitable for systems requiring a relatively low security. As a username password authentication scheme, our approach decreases the system penetration rate associated with compromised passwords by 95%-99%. Said performance measures can be further improved through optimization of the classification algorithm on a user specific basis
Keywords :
authorisation; feature extraction; keyboards; pattern classification; pattern matching; access control; biometrics; classification; credential hardening; keystroke dynamics; password; remote authentication; security; shift-key patterns; trustworthiness; username; Access control; Application software; Authentication; Biometrics; Error analysis; Fingerprint recognition; Iris recognition; Protection; Security; Sensitivity;
Conference_Titel :
Software Reliability Engineering, 2006. ISSRE '06. 17th International Symposium on
Conference_Location :
Raleigh, NC
Print_ISBN :
0-7695-2684-5
DOI :
10.1109/ISSRE.2006.25