DocumentCode
652211
Title
An Application Security Framework for Near Field Communication
Author
Abu-Saymeh, Dirar ; Abou-Tair, Dhiah El Diehn I. ; Zmily, Ahmad
Author_Institution
Sch. of Inf. Technol. & Eng., German-Jordanian Univ., Jordan
fYear
2013
fDate
16-18 July 2013
Firstpage
396
Lastpage
403
Abstract
Smart phones equipped with Near Field Communication (NFC) provide a simple way to initiate contactless transactions and data exchange without having the need to carry additional items such as credit cards, personal IDs, and access keys. To prevent unauthorized NFC transactions in the case of lost or stolen devices, the user needs to be authenticated before each transaction, which adds extra burden on users. In this paper we propose an NFC security framework that simplifies the initiation of secure NFC transactions. The framework calculates a current measure of device security based on user activities and behavior. NFC transactions are authorized if the current device security measure meets the minimum requirement of the application. The framework uses a combination of authentication methods such as password, pin, pattern, finger print, voice and face recognition. In addition, we propose adjusting the device security level dynamically based on user activities, behavior, and background face and voice authentication. As a case study, the framework has been implemented on the Google Android platform. The NFC security framework minimizes the need to intrusively authenticate the user for every NFC transaction thus maintaining the simplicity of using NFC while enhancing its security.
Keywords
authorisation; electronic data interchange; near-field communication; smart phones; Google Android platform; NFC security framework; contactless transaction; data exchange; device security level; mobile device security; near field communication; smart phone; voice authentication; Authentication; Authorization; DSL; Face recognition; Smart phones; Mobile Device Security; Near Field Communication; Security Framework; Smart Authentication;
fLanguage
English
Publisher
ieee
Conference_Titel
Trust, Security and Privacy in Computing and Communications (TrustCom), 2013 12th IEEE International Conference on
Conference_Location
Melbourne, VIC
Type
conf
DOI
10.1109/TrustCom.2013.50
Filename
6680867
Link To Document