破解可撤销生物特征保险箱,发现其模板可逆且可关联
Cryptanalysis of Cancelable Biometrics Vault
- 针对生物特征编码方案发起逆向与关联攻击
- 无需额外假设即可恢复保险箱中的加密密钥
- 揭示了该方案在可撤销性与隐私性上的漏洞
可撤销生物特征(CB)是一类结合生物特征与用户特定令牌的变换方案,旨在生成安全模板。要求模板具备不可逆、不可链接性及高识别准确率,并支持撤销。在生物特征密钥绑定方案中,利用生物特征数据保护加密密钥,仅当认证时获取正确生物特征数据才能重新计算密钥,典型应用为磁盘加密。本文对近期提出的基于可撤销生物特征的密钥绑定方案——可撤销生物特征保险箱(CBV)进行密码分析。具体地,针对其核心的生物特征编码(BioEncoding)变换方案,从模板可逆性和可链接性角度发起攻击。结果表明,所提链接攻击可不依赖额外假设直接恢复保险箱中的密钥。本工作揭示了CBV方案在可撤销性与链接性方面的潜在漏洞,这些缺陷在同类方案中此前未被识别。
原文摘要 · Abstract (English)
Cancelable Biometrics (CB) stands for a range of biometric transformation schemes combining biometrics with user specific tokens to generate secure templates. Required properties are the irreversibility, unlikability and recognition accuracy of templates while making their revocation possible. In biometrics, a key-binding scheme is used for protecting a cryptographic key using a biometric data. The key can be recomputed only if a correct biometric data is acquired during authentication. Applications of key-binding schemes are typically disk encryption, where the cryptographic key is used to encrypt and decrypt the disk. In this paper, we cryptanalyze a recent key-binding scheme, called Cancelable Biometrics Vault (CBV) based on cancelable biometrics. More precisely, the introduced cancelable transformation, called BioEncoding scheme, for instantiating the CBV framework is attacked in terms of reversibility and linkability of templates. Subsequently, our linkability attack enables to recover the key in the vault without additional assumptions. Our cryptanalysis introduces a new perspective by uncovering the CBV scheme's revocability and linkability vulnerabilities, which were not previously identified in comparable biometric-based key-binding schemes.
Thank you to arXiv for use of its open access interoperability. PaperDance 不是 arXiv 官方产品;中文卡片由大模型生成,请以原文为准。