• DocumentCode
    652211
  • Title

    An Application Security Framework for Near Field Communication

  • Author

    Abu-Saymeh, Dirar ; Abou-Tair, Dhiah El Diehn I. ; Zmily, Ahmad

  • Author_Institution
    Sch. of Inf. Technol. & Eng., German-Jordanian Univ., Jordan
  • fYear
    2013
  • fDate
    16-18 July 2013
  • Firstpage
    396
  • Lastpage
    403
  • Abstract
    Smart phones equipped with Near Field Communication (NFC) provide a simple way to initiate contactless transactions and data exchange without having the need to carry additional items such as credit cards, personal IDs, and access keys. To prevent unauthorized NFC transactions in the case of lost or stolen devices, the user needs to be authenticated before each transaction, which adds extra burden on users. In this paper we propose an NFC security framework that simplifies the initiation of secure NFC transactions. The framework calculates a current measure of device security based on user activities and behavior. NFC transactions are authorized if the current device security measure meets the minimum requirement of the application. The framework uses a combination of authentication methods such as password, pin, pattern, finger print, voice and face recognition. In addition, we propose adjusting the device security level dynamically based on user activities, behavior, and background face and voice authentication. As a case study, the framework has been implemented on the Google Android platform. The NFC security framework minimizes the need to intrusively authenticate the user for every NFC transaction thus maintaining the simplicity of using NFC while enhancing its security.
  • Keywords
    authorisation; electronic data interchange; near-field communication; smart phones; Google Android platform; NFC security framework; contactless transaction; data exchange; device security level; mobile device security; near field communication; smart phone; voice authentication; Authentication; Authorization; DSL; Face recognition; Smart phones; Mobile Device Security; Near Field Communication; Security Framework; Smart Authentication;
  • fLanguage
    English
  • Publisher
    ieee
  • Conference_Titel
    Trust, Security and Privacy in Computing and Communications (TrustCom), 2013 12th IEEE International Conference on
  • Conference_Location
    Melbourne, VIC
  • Type

    conf

  • DOI
    10.1109/TrustCom.2013.50
  • Filename
    6680867