Title :
Quantifying privacy and security of biometric fuzzy commitment
Author :
Zhou, Xuebing ; Kuijper, A. ; Veldhuis, Raymond ; Busch, Christoph
Author_Institution :
Fraunhofer IGD, Darmstadt, Germany
Abstract :
Fuzzy commitment is an efficient template protection algorithm that can improve security and safeguard privacy of biometrics. Existing theoretical security analysis has proved that although privacy leakage is unavoidable, perfect security from information-theoretical points of view is possible when bits extracted from biometric features are uniformly and independently distributed. Unfortunately, this strict condition is difficult to fulfill in practice. In many applications, dependency of binary features is ignored and security is thus suspected to be highly overestimated. This paper gives a comprehensive analysis on security and privacy of fuzzy commitment regarding empirical evaluation. The criteria representing requirements in practical applications are investigated and measured quantitatively in an existing protection system for 3D face recognition. The evaluation results show that a very significant reduction of security and enlargement of privacy leakage occur due to the dependency of biometric features. This work shows that in practice, one has to explicitly measure the security and privacy instead of trusting results under non-realistic assumptions.
Keywords :
biometrics (access control); data privacy; face recognition; fuzzy set theory; 3D face recognition; biometric features; biometric fuzzy commitment; bits extraction; quantifying privacy; quantifying security; template protection algorithm; theoretical security analysis; Face; Face recognition; Magnetic resonance; Testing; Training;
Conference_Titel :
Biometrics (IJCB), 2011 International Joint Conference on
Conference_Location :
Washington, DC
Print_ISBN :
978-1-4577-1358-3
Electronic_ISBN :
978-1-4577-1357-6
DOI :
10.1109/IJCB.2011.6117543