English

Comments on a recently proposed Privacy Preserving Lightweight Biometric Authentication System for IoT Security

Cryptography and Security 2019-10-15 v2

Abstract

In this paper, we show that a recently published lightweight adaptation of a Fingerprint matching algorithm called the Minutia Cylinder-Code may not be secure as intruders may be able to illegitimately yet successfully authenticate themselves to the system under consideration. We also show that the lightweight adaptation has other privacy related vulnerabilities that make it unsuitable for use in Biometrics. We make it clear that we are neither investigating nor commenting on the security of the original Minutia Cylinder-Code algorithm by itself, rather we highlight the vulnerabilities of the lightweight adaptation. In the process of doing this, we provide a high-level overview of the role of one-way functions in cryptography and biometrics to provide a context to the aforementioned lightweight algorithm and its deficiencies.

Keywords

Cite

@article{arxiv.1910.01446,
  title  = {Comments on a recently proposed Privacy Preserving Lightweight Biometric Authentication System for IoT Security},
  author = {SrinivasaRao SubramanyaRao and Enrique Argones Rua},
  journal= {arXiv preprint arXiv:1910.01446},
  year   = {2019}
}

Comments

The paper has been submitted to IEEE for possible communication - this comment has been added on Page-1 of the paper

R2 v1 2026-06-23T11:33:41.319Z