• DocumentCode
    2803012
  • Title

    Evaluating the Reliability of Credential Hardening through Keystroke Dynamics

  • Author

    Bartlow, Nick ; Cukic, Bojan

  • Author_Institution
    Lane Dept. of Comput. Sci. & Electr. Eng., West Virginia Univ., Morgantown, WV
  • fYear
    2006
  • fDate
    7-10 Nov. 2006
  • Firstpage
    117
  • Lastpage
    126
  • Abstract
    Most computer systems rely on usernames and passwords as a mechanism for authentication and access control. These credential sets offer weak protection to a broad scope of applications with differing levels of sensitivity. Traditional physiological biometric systems such as fingerprint, face, and iris recognition are not readily deployable in remote authentication schemes. Keystroke dynamics provide the ability to combine the ease of use of username/password schemes with the increased trustworthiness associated with biometrics. Our research extends previous work on keystroke dynamics by incorporating shift-key patterns. The system is capable of operating at various points on a traditional ROC curve depending on application specific security needs. A 1% false accept rate is attainable at a 14% false reject rate. An equal error rate of 5% is suitable for systems requiring a relatively low security. As a username password authentication scheme, our approach decreases the system penetration rate associated with compromised passwords by 95%-99%. Said performance measures can be further improved through optimization of the classification algorithm on a user specific basis
  • Keywords
    authorisation; feature extraction; keyboards; pattern classification; pattern matching; access control; biometrics; classification; credential hardening; keystroke dynamics; password; remote authentication; security; shift-key patterns; trustworthiness; username; Access control; Application software; Authentication; Biometrics; Error analysis; Fingerprint recognition; Iris recognition; Protection; Security; Sensitivity;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Software Reliability Engineering, 2006. ISSRE '06. 17th International Symposium on
  • Conference_Location
    Raleigh, NC
  • ISSN
    1071-9458
  • Print_ISBN
    0-7695-2684-5
  • Type

    conf

  • DOI
    10.1109/ISSRE.2006.25
  • Filename
    4021977