Aug 2026· Pragmatic Cybersecurity· 0 citations· 22 references
TL;DR
This work proposes a threshold-based decentralized authentication framework that keeps all sensitive Biometric-Enhanced Key Derivation tokens entirely off-chain, using the blockchain solely for freshness enforcement, and provides a game-based security analysis of brute-force resistance, unforgeability, and unlinkability.
Abstract
Biometric authentication offers enhanced usability for digital payments, but traditional centralized architectures suffer from single points of failure. While blockchain integration promises decentralized trust, existing solutions often store biometric helper data (e.g., fuzzy commitments) directly on-chain. We demonstrate that such transparency, even in permissioned settings, exposes low-entropy biometric inputs to offline brute-force attacks and identity-linkage risks if the immutable ledger is accessed by malicious nodes. To resolve this transparency–privacy paradox, we propose a threshold-based decentralized authentication framework. Unlike prior works, our protocol keeps all sensitive Biometric-Enhanced Key Derivation (BEKD) tokens entirely off-chain, using the blockchain solely for freshness enforcement. We provide a game-based security analysis of brute-force resistance, unforgeability, and unlinkability. Our experimental results demonstrate that our scheme’s gas cost is acceptable, offering a robust solution for self-sovereign biometric identity.
This research presents a novel decentralized identity management system leveraging Ethereum smart contracts and cryptographic protocols to enable self-sovereign digital identities and introduces a privacy-preserving mechanism using encryption-key splitting among trusted peers to enable recovery of encrypted off-chain d...
Harika Naidu Beesabathuni· International Journal of Int...· 1 citation· ⚡1
The evaluation confirms that the proposed model, incorporating differential privacy, provides a secure and scalable solution for managing sensitive citizen data while achieving reliable performance in privacy-aware biometric verification for real-world e-governance applications.
Saad Nasser Altamimi, S. Alahmari, Ibrahim Alghamdi et al.· PeerJ Computer Science· 0 citations
Aiming at open wireless vulnerabilities, limited airborne computing resources and single-point failure risks of centralized authentication architectures in UAV swarms, this paper proposes an AKA scheme integrating PUF and Chebyshev chaotic map, which constructs a three-layer security framework covering hardware securit...
Yu-Jie Sang, Cheng-Long Xu, Long-hui Lv et al.· Journal of King Saud Univers...· 0 citations
PEUAP-W3 is presented, a Privacy-Enhanced and User-centric Authentication Protocol that combines five established components into a single deployed and formally analyzed system and satisfies six properties against a nine-property framework.
Adarsh S. V. Nair, R. Achary· Computers· 0 citations
A flexible credential model that employs vector commitments with a padding strategy to unify credentials from heterogeneous issuers, enabling privacy-preserving authentication without enforcing a global static attribute set or verifier-defined policies is proposed.
Bin Xie, Rui Song, Xuyuan Cai et al.· IEEE Transactions on Network...· 0 citations
This research introduces a novel Unified Quantum-Resilient Blockchain-Zero Knowledge Proofs Privacy Authentication Framework (QBC-ZKPAF), which provides strong security and privacy solutions for Internet of Things networks by adopting multi-factor authentication and decentralizing identity management.
Uzma Shereen, Lubna Nausheen· American Journal of AI Cyber...· 0 citations
We use cookies to run the site and, with your consent, for analytics and to show ads.
See our Cookie Policy.