Secured SAML cloud authentication using fingerprint

Muhammad Yaasir Khodabacchus, K. M. S. Soyjaudah, Gianeshwar Ramsawock · 2017

Single Sign-On (SSO) is a centralized certification method where consumer gains use of many services using one credential. This evolution is driving the next generation of authentication on the cloud. However, Single Sign-On has one big point of failure. If an attacker has obtained one credential, he may obtain use of several providers. SAML (Security Assertion Markup Language) SSO protocol, which is widely used with a password, suffers from this vulnerability. In the past, researchers have focused their attention on XML Signature Wrapping vulnerability and very less on the main component of authentication. This research provides a solution to such problem by combining the dominant features of cancelable fingerprints in existing SAML SSO protocol. During our tests, the effectiveness of the solution has been examined using CVSS (Common Vulnerability Scoring System). Based on the scores provided, it has therefore been concluded that the new combined solution of cancelable fingerprint and SAML SSO protocol has a better protection against the attacks. Nevertheless, the score can further be improved.

Read the paper · More papers on PaperTik