Open Research Newcastle
Browse

Enhanced knowledge based authentication using iterative session parameters

Download (284.04 kB)
journal contribution
posted on 2025-05-10, 07:41 authored by Ali Alkhalifah, Geoffrey SkinnerGeoffrey Skinner
Current Knowledge Based Authentication (KBA) schemes have been subjected to increasing criticism of late due to the realization that many of the secret questions being used are easily compromised. That is, normally a user’s secret questions are based on personal details and personally related facts (which we term personal factoids). Often these facts are easily deduced by other entities that are able to gather information about the target user in question. Therefore, our research has been focused on enhancing the KBA process by using factoids not based on personal details. This paper provides the details of a novel scheme we have designed and tested that uses past session parameters in an iterative fashion as the basis for future KBA questions. To date the scheme has proved effective when used in conjunction with an initial registration process that verifies a user’s trusted email address and mobile/cell phone number.

History

Journal title

Proceedings of World Academy of Science, Engineering and Technology

Volume

71

Pagination

293-299

Publisher

World Academy of Science, Engineering and Technology

Language

  • en, English

College/Research Centre

Faculty of Engineering and Built Environment

School

School of Engineering

Usage metrics

    Publications

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC