Secure Mobile Internet Banking System Using QR Code and Biometric Authentication
S. Ajish, K. S. Anil Kumar · 2025
With the digital technology explosion, internet banking users increased exponentially due to worldwide accessibility and convenience. The leading challenge of online banking is to ensure security for online transactions and the accounts of customers. Phishing attempts to get users&s; login credentials, like usernames and passwords by disguising themselves as a trusted entity in the banking sector. SIM swap is a new cyber fraud where the attacker collects the personal data of the bank customer and gets a new SIM card. The attacker can easily steal the user&s;s login credentials, like username and password, using a phishing attack and the OTP using the SIM swap fraud attack. This chapter analyzes the security of the online banking system and proposes a new anomaly-based fraud detection method to overcome phishing and SIM swap fraud attacks. The login attributes like IP address, device, cookie, operating system, and browser are used to generate and update the user&s;s profile. The primary user profile contains the most recently used login attributes, and the second profile contains the most frequently used login attributes. If the current login attributes match either the primary or secondary user profile, the user can access their account. Otherwise, additional security mechanisms like OTP with QR code or biometric authentication or both are used to identify the suspicious behavior of the user. This method reduces the login burden of the user and provides better security for the online mobile banking system.