Biometrics-security » Computer internet security 
information computer networking security
 
|
|
|
News
|
Advertise
|
|
Products
|
Contact
 

Posts Tagged ‘Biometrics-security’

Does using biometrics increase likelihood of capture, coercion or

Sunday, September 30, 2007 4:13

Users may be concerned that the use of biometric authentication will increase the danger that they will find themselves targeted by ruthless criminals who are intent on gaining entry to the assets protected by the biometric. With non-biometric authentication, cards, keys, and passwords could be stolen and used by criminals without the presence of ...

This was posted under category: Biometrics security  |  Read Full Story  |  0 Comments

Does publicising countermeasures make the systems less secure?

Sunday, September 30, 2007 4:06

If details of countermeasures employed in biometric systems are publicised, it may help attackers to avoid or defeat them. Similarly, if attackers know what countermeasures are not employed, this will help them identify potential weaknesses in the system, and direct attacks towards those weak areas. The counter-argument is that public exposure of countermeasures and ...

This was posted under category: Biometrics security  |  Read Full Story  |  1 Comment

Biometric algorithms are proprietary and not validated

Sunday, September 30, 2007 3:54

Many encryption algorithms are publicly available to allow cryptographers to analyse and verify the strength of the encryption. Biometric algorithms are not readily available for review and are thus an unknown factor. Biometric algorithms do not generally fulfil the same purpose as cryptographic algorithms. Rather, they represent the encoding rules for the biometric feature ...

This was posted under category: Biometrics security  |  Read Full Story  |  0 Comments

Biometrics should only be stored on smart-cards

Saturday, September 29, 2007 3:58

This is a sometimes heard expression of concern about the potential misuse of biometric data stored on central databases. It refers to the threat to privacy that such centralised collections of personal data could pose if compromised. Biometric data are regarded as personal data and hence subject to the controls appropriate to personal data. ...

This was posted under category: Biometrics security  |  Read Full Story  |  2 Comments

How do we know when the system is becoming less secure?

Friday, September 28, 2007 4:05

Biometric systems may be initially adequately secure, but become less so with passing time. This could be because critical security parameters such as threshold settings become maladjusted, or sloppy enrolment procedures lead to poor enrolment quality. Some biometric systems are self-adaptive which means that the templates are updated each time a user accesses the ...

This was posted under category: Biometrics security  |  Read Full Story  |  0 Comments

Will I know when and how my biometric has been used?

Thursday, September 27, 2007 4:12

This is related to the covert use of biometrics (see “Can my biometric be collected covertly?” previously), and to functional creep in applications. It is important to realise that authentication does not necessarily imply consent, and it is consent which is the issue of concern here. Any application could be affected though the ...

This was posted under category: Biometrics security  |  Read Full Story  |  0 Comments

Valuable assets are traditionally protected by secrecy

Thursday, September 27, 2007 3:52

Valuable assets are traditionally protected by secrecy, typically secret passwords. Biometric features are often readily observed and do not possess equivalent secrecy. They may also be captured with varying degrees of difficulty. This is a variation on the spoofing concern. It is certainly true that the source biometric features are not secret, but the ...

This was posted under category: Biometrics security  |  Read Full Story  |  0 Comments

Idacan Launch world’s first biometric coat-check cloakroom system

Thursday, September 20, 2007 13:37

IDscan launches world’s first biometric cloakroom and lost property management system Cloakscan is the world’s first biometric cloakroom ticket system. It’s been created by the makers of pioneering ID scanning device Clubscan. Cloakscan quickly registers a fingerprint as customers leave their personal belongings. Simultaneously, it records a video still of the transaction. ...

This was posted under category: Biometrics security  |  Read Full Story  |  0 Comments

Biometrics cannot be changed when compromised

Wednesday, September 19, 2007 3:58

It is true that the basic biometric features cannot be changed, though in some cases, alternatives may be available (e.g. different fingers). However the simplicity of the headline argument conceals some more complex and subtle issues. We need to understand what can be compromised, examine a number of scenarios where compromise might occur and ...

This was posted under category: Biometrics security  |  Read Full Story  |  0 Comments

Template integrity and confidentiality are distinctly different

Wednesday, September 19, 2007 3:48

Template integrity and confidentiality are distinctly different issues related to template data though similar solutions may be employed to deal with both problems. Template integrity is concerned with threats to the authentication process caused by planted or modified templates, whereas template confidentiality relates to the legal and privacy issues around the template data and ...

This was posted under category: Biometrics security  |  Read Full Story  |  0 Comments

Latency or residual images are a possible security concern

Wednesday, September 19, 2007 3:46

Latency or residual images are a possible security concern that could occur in 2 forms: § Physical residual biometric image, and § Latency in internal memory. This could occur through a combination of failure to clear memory, and failure to detect and correctly action a “failure to acquire” (resulting in previous biometric image or ...

This was posted under category: Biometrics security  |  Read Full Story  |  0 Comments

The biometric system must be able to detect and reject the use of a copy of

Wednesday, September 19, 2007 3:44

Technically, the biometric system must be able to detect and reject the use of a copy of a biometric instead of the live biometric. This functionality is usually termed liveness detection, which refers to the ability of the system to distinguish between a sample feature provided by a live human being and a ...

This was posted under category: Biometrics security  |  Read Full Story  |  0 Comments