Indian Journal of Forensic Medicine & Toxicology
  • Year: 2017
  • Volume: 11
  • Issue: 2

A Design of Personal Secure Authentication Scheme based on the Digital ECG Code

1Department of Computer Science and Engineering, Soongsil University, 369 Sangdo-Ro, Dongjak-gu, Seoul 156–743, Korea

Online published on 4 November, 2017.

Abstract

As the various online markets grow and wearable devices increase, the need for personal authentication is also increasing. Since authentication technology which is based onstatic bio-information is vulnerable, a characteristic extraction method that makes counterfeiting difficult is needed.

If ECG information that is unique to each individual can be used for user authentication, an effective authentication is possible. The suggested method first receives ECG information through a wearable device and authenticates the user through the points of inflection in the ECG, namely, P, Q, R, S, T. Among the inflection points, P and T show different values every time, making it secure than authentication using static bio-information.

This paper presents a user authentication method that uses dynamic bio-information occurring from the ECG and that is in accordance with FIDO standards. The suggested authentication method uses a different value every time, making it secures against re-use attacks or hijacking attacks. Moreover, it is much secure than static bio-information that cannot be changed once they are stolen, such as information on finger prints or irises.

The suggested user authentication scheme through ECG is expected to be the next generation of individual authentication that can be widely applied to healthcare or security entries.

Keywords

ECG, FIDO, Wearable Device, PQRST, Authentication