• DocumentCode
    3613230
  • Title

    Efficient biometric and password based mutual authentication for consumer USB mass storage devices

  • Author

    Giri, Debasis ; Sherratt, R. Simon ; Maitra, Tanmoy ; Amin, Ruhul

  • Author_Institution
    Department of Computer Science and Engineering, Haldia Institute of Technology, Haldia-721657, India
  • Volume
    61
  • Issue
    4
  • fYear
    2015
  • fDate
    11/1/2015 12:00:00 AM
  • Firstpage
    491
  • Lastpage
    499
  • Abstract
    A Universal Serial Bus (USB) Mass Storage Device (MSD), often termed a USB flash drive, is ubiquitously used to store important information in unencrypted binary format. This low cost consumer device is incredibly popular due to its size, large storage capacity and relatively high transfer speed. However, if the device is lost or stolen an unauthorized person can easily retrieve all the information. Therefore, it is advantageous in many applications to provide security protection so that only authorized users can access the stored information. In order to provide security protection for a USB MSD, this paper proposes a session key agreement protocol after secure user authentication. The main aim of this protocol is to establish session key negotiation through which all the information retrieved, stored and transferred to the USB MSD is encrypted. This paper not only contributes an efficient protocol, but also does not suffer from the forgery attack and the password guessing attack as compared to other protocols in the literature. This paper analyses the security of the proposed protocol through a formal analysis which proves that the information is stored confidentially and is protected offering strong resilience to relevant security attacks. The computational cost and communication cost of the proposed scheme is analyzed and compared to related work to show that the proposed scheme has an improved tradeoff for computational cost, communication cost and security.
  • Keywords
    Authentication; Cryptography; Forgery; Protocols; Servers; Universal Serial Bus; Authentication; Biometric; Consumer Storage; MSD; Password; Security; USB;
  • fLanguage
    English
  • Journal_Title
    Consumer Electronics, IEEE Transactions on
  • Publisher
    ieee
  • ISSN
    0098-3063
  • Type

    jour

  • DOI
    10.1109/TCE.2015.7389804
  • Filename
    7389804