Description
This work deals with the security problems in authentication schemes employing volatile biometric features, where the authentication is indeed a comparison between a fresh feature and that enrolled during the initialization phase. We propose a security model for biometric-based authentication schemes by assuming that the biometric features to be public. Extra attentions have been paid to the privacy issues related to the sensitive relation between a biometric feature and the relevant identity. To formally study the security issues in biometric information comparison, we introduce a new cryptographic primitive, i.e., Decisional Private Information Retrieval (DPIR), inspired by the concept of Private Information Retrieval (PIR). DPIR protocols enable a client to obtain some information about an item from a database without retrieving this item directly. One DPIR protocol is constructed using Paillier's public key encryption scheme and the ElGamal scheme. Finally, we present an authentication scheme based on this DPIR protocol, proved secure in our security model.<br/> Cet exposé est basé sur des travaux communs avec Hervé Chabanne (Sagem Défense Sécurité), Malika Izabachéne, David Pointcheval, Qiang Tang, et Sébastien Zimmer (ENS).
Prochains exposés
-
Module Learning With Errors and Structured Extrapolated Dihedral Cosets
Orateur : Jinwei Zheng - Télécom Paris
The Module Learning With Errors (MLWE) problem is the fundamental hardness assumption underlying the key encapsulation and signature schemes ML-KEM and ML-DSA, which have been selected by NIST for post-quantum cryptography standardization. Understanding its quantum hardness is crucial for assessing the security of these standardized schemes. Inspired by the equivalence between LWE and[…]-
Cryptography
-
-
European Cyber Week: atelier cryptographie post-quantique
Dans la continuité des éditions 2021, 2022 et 2024, la DGA — en partenariat avec CREACH LABS et avec le soutien de l'ANSSI, de l'IRISA, de l'IRMAR et du Pôle d'Excellence Cyber — organise la 4e édition de l'atelier consacré à la cryptographie post-quantique dans le cadre de l'European Cyber Week 2026. Attention, il faut s'inscrire (gratuitement) au préalable — s'inscrire à la conférence Les[…] -
Post-quantum day of the cryptography seminar
A scientific day devoted to post-quantum cryptography, held in the wake of the European Cyber Week, with talks more technical than those presented at the ECW.