Authentication Method through Keystrokes Measurement of Mobile users in Cloud Environment
Mahnoush Babaeizadeh, Majid Bakhtiari, Mohd Aizaini Maarof · 2014
In order to deal with security of Mobile Cloud Computing (MCC) authentication plays an important role. It is aimed to verify user’s identity when they wish to request services via the Internet through Cloud Service Provider (CSP). Personal identification number is the most common mechanism for authentication in mobile devices; however, it is not secure way for authenticating users. This work presents a new behavioral biometric authentication method which enable identify users based on Keystroke Dynamic Authentication (KDA). Furthermore, keystrokes duration is considered as an attribute for measuring keystrokes of mobile. Elliptic Curve Cryptography (ECC) is used as cryptography technique to improve the security of proposed method. Simulation results using JUnit package revealed that, even if an unauthorized person knows the username and password of legal user they cannot gain access rights on 97.33% of efforts. This is due to the keystroke duration of each user which depends on their behavioral characteristic. Therefore, applying this method, it becomes very difficult for an attacker to pretend as the owner. Hence, this method offers the potential to enhance the security of authentication in MCC.