strengths and weaknesses of access control … and weaknesses of access control systems eric...

89
Strengths and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel

Upload: hoanganh

Post on 14-Mar-2018

216 views

Category:

Documents


4 download

TRANSCRIPT

Page 1: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Strengths and Weaknesses of Access Control Systems

Eric Schmiedl and Mike Spindel

Page 2: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Choosing a System

• Error rate

• Environment

• Cost

• Physical Vulnerability

• Additional Constraints

Page 3: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Error Rate

• False Reject Rate (Type I error)

• False Accept Rate (Type II error)

• Equal Error Rate

Page 4: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Environment

• Does it have to handle inclement weather?

• Vandals?

• Extreme temperatures?

Page 5: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Cost

• You’re on a budget.

Page 6: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Physical Vulnerability• Decreased resistance to forced and covert

entry

• Electromagnets can be bypassed with packing tape

• Electric strikes can disable anti-loiding features on locksets• “Loiding”: from the celluloid strips originally used to slip latches.

Credit cards can also be used.

• Request to exit sensors can be defeated with balloons, long pieces of plastic, etc.

Page 7: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Additional Constraints• What load does the system need to handle?

How fast does it have to process users?

• Do you need different levels of access for different users? An audit trail?

• Does the system have to talk to a separate alarm system?

• Will it detect or resist physical attacks? From

DO

D U

G-2

045-

SHR

Page 8: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

How to improve the security of any access control system

Page 9: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Stacking

What you have + What you know + What you are

• Improve either FAR or FRR (in the most common configuration)

• Can reduce security

• e.g. mechanical key bypass

Page 10: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Centralized systems

• Terminals

• Communication lines

• Servers

Page 11: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Categories of Systems

• Guard

• Token

• Knowledge

• Biometric

Page 12: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Guard Checks Photo ID

• Good:

• Simple

• Low initial cost

• Fast

• Not affected by the environment.

Page 13: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Guard Checks Photo ID• Bad:

• Easy to counterfeit ID cards

• Cards can be stolen

• People get complacent

• Guards have salaries, not a one-time purchase cost.

Page 14: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Guard Checks Photo ID

Sour

ce: w

ww.a

frica

n-sa

fari-

pict

ures

.com

Page 15: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Guard Checks Photo ID• Ugly:

Sour

ce: w

ww.a

frica

n-sa

fari-

pict

ures

.com

Page 16: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Guard Checks Photo ID• Ugly:

• 32.6% error overall

Sour

ce: w

ww.a

frica

n-sa

fari-

pict

ures

.com

Page 17: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Guard Checks Photo ID• Ugly:

• 32.6% error overall

• Paranoid: 3/6 cashiers rejected a recent, accurate photo at least once

Sour

ce: w

ww.a

frica

n-sa

fari-

pict

ures

.com

Page 18: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Guard Checks Photo ID• Ugly:

• 32.6% error overall

• Paranoid: 3/6 cashiers rejected a recent, accurate photo at least once

• 34.09% of the time a blatantly wrong photo was accepted

Sour

ce: w

ww.a

frica

n-sa

fari-

pict

ures

.com

Page 19: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Guard Checks Photo ID• Ugly:

• 32.6% error overall

• Paranoid: 3/6 cashiers rejected a recent, accurate photo at least once

• 34.09% of the time a blatantly wrong photo was accepted

• 50% false accept rate

Sour

ce: w

ww.a

frica

n-sa

fari-

pict

ures

.com

Page 20: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Guard Checks Photo ID• Ugly:

• 32.6% error overall

• Paranoid: 3/6 cashiers rejected a recent, accurate photo at least once

• 34.09% of the time a blatantly wrong photo was accepted

• 50% false accept rate

• 63.64% FAR for a similar-looking photo

Sour

ce: w

ww.a

frica

n-sa

fari-

pict

ures

.com

Page 21: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Tokens• Mechanical key locks

• Magnetic cards

• Barcodes

• Proximity / RFID

• Smart cards / CPU tokens

• BFV and Wiegand Wire

• VingCard

Page 22: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Mechanical key locks• Very reliable and need no power supply

• No audit trail

• Lots of security issues

• Picking

• Bumping

• Decoding

• Attacking the master key

• Many different mechanical lock technologies

Page 23: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

VingCard

• Mechanical keycards

• Quick to rekey

• Easy to copy

• Hotel thieves example

• Electronic lock decoding

• Low security

Page 24: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Magnetic Stripe cards

• Low vs. High Coercivity

• Reliable (as long as there’s no magnet around)

• Audit trail limited by back-end

• Cheap

• Trivial to read, duplicate, and potentially modify

Page 25: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Barrium Ferrite Cards• Preceded HiCo magstripe standard

• Embedded layer of Barium Ferrite

• Tough:

• Weather-resistant

• High Coercivity

• Easy to decode

• Last seen in an automated parking system

Page 26: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Wiegand Wire

• Processed magnetic alloy

• Single apparent domain wall

• Low coercivity core

• High coercivity shell

Imag

e ad

apte

d fr

om S

witc

hing

Beh

avio

r of

Str

esse

d Vi

callo

y W

ire, I

EEE

Tran

sact

ions

on

Mag

netic

s, 19

79

Page 27: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Imag

e ad

apte

d fr

om U

S pa

tent

4,7

36,1

22

Page 28: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Wiegand

Page 29: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Wiegand Wire

• First attack published in 1996 on cypherpunks list:

• Cut wires out of a card and rearrange

• Vulnerable to emulation style attacks

Page 30: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Barcodes

• Cheap, low security

• 1D and 2D versions

• Easy to duplicate

• Invisible barcodes

Page 31: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Prox / RFID

• Many well-known issues

• Cloning

• Hybrid RFID / Magstripe systems

http://web.mit.edu/keithw/Public/MIT-Card-Vulnerabilities-March31.pdf

Page 32: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Richard M. Stallman’s Office Key

Imag

e cr

edit

Aus

tin R

oach

, Jos

h M

ande

l, a

nd K

eith

Win

stei

n of

MIT

Page 33: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

CPU Tokens• Smart cards, iButtons

• It’s easy to make a ‘virtual’ token

• Cryptographic authentication is necessary for real security

• DirecTV vs. Hackers Imag

e fr

om C

A T

echn

olog

y In

c. /

Key

less

depo

t.com

Page 34: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Knowledge

• Mechanical combination locks

• Electronic keypads

• Safe-type electronic locks

Page 35: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Mechanical combination locks

Page 36: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Mechanical combination locks

• Good:

• Simple, reliable, and no power necessary

Page 38: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Simplex operation

Page 39: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Opening Procedure

Page 40: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Which tumbler is binding?

binding

not binding

Page 41: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Push 1. Is a new tumbler binding?

Page 42: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Advance tumbler 1 by pushing a “throwaway” button -- here, number 5 -- and check if another tumbler is binding

This tumbler is advanced by 1

when I push this one

Page 43: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Try pushing another throwaway button -- 4 -- and check for binding

binding

Page 44: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Reset, and try the combination 152

Page 45: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Check if any new tumblers are binding now

Page 46: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Reset, and try the combination 125

Page 47: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Check if any new tumblers are binding now

Page 48: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Reset and try the combination 123

Page 49: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Electronic keypads

Page 50: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Electronic keypads• Attacks

Page 51: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Electronic keypads• Attacks

• The UV powder trick

• Attacker needs to enter very many combinations

• So use a highlighter

Page 52: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Electronic keypads• Attacks

• The UV powder trick

• Attacker needs to enter very many combinations

• So use a highlighter

• Shoulder surfing and hidden cameras

Page 53: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •
Page 54: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •
Page 55: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •
Page 56: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •
Page 57: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •
Page 58: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •
Page 59: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •
Page 60: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •
Page 61: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •
Page 62: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •
Page 63: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Electronic keypads

Page 64: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Security Management System

Model SERIIIScramble Keypad

FEATURES & BENEFITS• Very narrow viewing angle of the lighted, scrambled digits• The membrane keypad is extremely durable• Random allocation of digits ensures even wear to the keys• Individual PIN codes can be up to 9 digits in length• The SERlll has a weatherproof rating of IP65• An audible alarm signals when a button is depressed• Robust polycarbonate enclosure• The unit is equipped with power-up diagnostics and

self-test routine• The SERlll is provided with Wiegand

communication protocol• Over 3.6 million unique permutations are available• Terminal connection on the rear of the unit

Overview

The SERlll Scramble Keypad is a keypad reader designed toprevent onlookers from detecting the PIN code being entered.The LED’s display a randomly allocated set of numbers from 0 to 9. The position of the numbers change every time thekeypad is activated. Only the user standing directly infront of the keypad can see the scrambled digits.

SPECIFICATIONS:• Dimensions: 5.39" x 4.17" x 2.05"• Input Voltage: 8-14 VDC• Input Current: 500mA max.• Operating Temperature: 5F to 122F• Weight: 16.76 oz.• Cable Distance (Wiegand ): 500’ with 22AWG 6

conductor stranded with overall shield

ORDERING INFORMATION:SERlll-WS – Scramble Keypad with Surface Mount

SERIII-WF – Scramble Keypad with Flush Mount

Electronic keypads

Phot

ogra

ph b

y Sc

hlag

e

Page 65: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Security Management System

Model SERIIIScramble Keypad

FEATURES & BENEFITS• Very narrow viewing angle of the lighted, scrambled digits• The membrane keypad is extremely durable• Random allocation of digits ensures even wear to the keys• Individual PIN codes can be up to 9 digits in length• The SERlll has a weatherproof rating of IP65• An audible alarm signals when a button is depressed• Robust polycarbonate enclosure• The unit is equipped with power-up diagnostics and

self-test routine• The SERlll is provided with Wiegand

communication protocol• Over 3.6 million unique permutations are available• Terminal connection on the rear of the unit

Overview

The SERlll Scramble Keypad is a keypad reader designed toprevent onlookers from detecting the PIN code being entered.The LED’s display a randomly allocated set of numbers from 0 to 9. The position of the numbers change every time thekeypad is activated. Only the user standing directly infront of the keypad can see the scrambled digits.

SPECIFICATIONS:• Dimensions: 5.39" x 4.17" x 2.05"• Input Voltage: 8-14 VDC• Input Current: 500mA max.• Operating Temperature: 5F to 122F• Weight: 16.76 oz.• Cable Distance (Wiegand ): 500’ with 22AWG 6

conductor stranded with overall shield

ORDERING INFORMATION:SERlll-WS – Scramble Keypad with Surface Mount

SERIII-WF – Scramble Keypad with Flush Mount

Electronic keypads

• Dynamically changing “scramble-key” high-security keypads fix most of these problems

Phot

ogra

ph b

y Sc

hlag

e

Page 66: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Security Management System

Model SERIIIScramble Keypad

FEATURES & BENEFITS• Very narrow viewing angle of the lighted, scrambled digits• The membrane keypad is extremely durable• Random allocation of digits ensures even wear to the keys• Individual PIN codes can be up to 9 digits in length• The SERlll has a weatherproof rating of IP65• An audible alarm signals when a button is depressed• Robust polycarbonate enclosure• The unit is equipped with power-up diagnostics and

self-test routine• The SERlll is provided with Wiegand

communication protocol• Over 3.6 million unique permutations are available• Terminal connection on the rear of the unit

Overview

The SERlll Scramble Keypad is a keypad reader designed toprevent onlookers from detecting the PIN code being entered.The LED’s display a randomly allocated set of numbers from 0 to 9. The position of the numbers change every time thekeypad is activated. Only the user standing directly infront of the keypad can see the scrambled digits.

SPECIFICATIONS:• Dimensions: 5.39" x 4.17" x 2.05"• Input Voltage: 8-14 VDC• Input Current: 500mA max.• Operating Temperature: 5F to 122F• Weight: 16.76 oz.• Cable Distance (Wiegand ): 500’ with 22AWG 6

conductor stranded with overall shield

ORDERING INFORMATION:SERlll-WS – Scramble Keypad with Surface Mount

SERIII-WF – Scramble Keypad with Flush Mount

Electronic keypads

• Dynamically changing “scramble-key” high-security keypads fix most of these problems

• Users can still distribute the combination

Phot

ogra

ph b

y Sc

hlag

e

Page 67: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Safe-type electronic locks

Page 68: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Safe-type electronic locks

Page 69: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Safe-type electronic locks• Very secure

Page 70: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Safe-type electronic locks• Very secure

• Audit trail usually available

• LaGard Navigator

• Web-based lock designed for ATMs, extensive audit trail

• User connects smart phone or PDA loaded with client software that allows the lock to communicate with the server

Page 71: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Safe-type electronic locks• Very secure

• Audit trail usually available

• LaGard Navigator

• Web-based lock designed for ATMs, extensive audit trail

• User connects smart phone or PDA loaded with client software that allows the lock to communicate with the server

• Some are vulnerable to spiking and other safe-technician tricks

Page 72: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Biometrics• Voice

• Face

• Fingerprints

• Hand geometry

• Retina scan

• Iris scan

• Signature

Page 73: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Voice pattern recognition

• Reliability

• Time, stress, illness

• Easy to defeat

Page 74: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Face recognition

Hold up a photo or a laptop

Page 75: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Fingerprints

Page 76: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Fingerprints• Guess what your fingers leave behind on the

sensor?

• Use gummi bears, breath, water-filled bag (condom)

Page 77: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Fingerprints• Guess what your fingers leave behind on the

sensor?

• Use gummi bears, breath, water-filled bag (condom)

• Environment around the sensor has fingerprints too

Page 78: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Fingerprints• Guess what your fingers leave behind on the

sensor?

• Use gummi bears, breath, water-filled bag (condom)

• Environment around the sensor has fingerprints too

• Supervision by trained guards

Page 79: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Multispectral imaging• The manufacturer claims that it:

• Does not require contact between the finger and reader

• Is capable of reading when the reader is immersed in water

• Inherently differentiates between a live finger and any prosthetic

Page 80: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Imag

es fr

om lu

mid

igm

.com

Page 81: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Multispectral imaginghttp://www.lumidigm.com

Imag

es fr

om lu

mid

igm

.com

Page 82: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Hand geometry

• Hands are not unique

• Privacy

• Dummy hands

Page 83: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •
Page 84: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Retina scan

• Nobody in the public literature has yet falsified a retina.

• Invasive

Page 85: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Iris scan

Page 86: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Iris scan• Effectively zero error rate

• 1 in 1 million Equal Error Rate

• For FRR of 0.0001%, an FAR of 1 in a trillion (1x10-12%)

Page 87: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Iris scan• Effectively zero error rate

• 1 in 1 million Equal Error Rate

• For FRR of 0.0001%, an FAR of 1 in a trillion (1x10-12%)

• Defeating iris scan

• Magazine covers

• Printing on contact lenses

Page 88: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

Signature• Measure pressure and

velocity

• 1% ERR

• Banks demand 1% FAR and 0.01% FRR

• Forging signatures is easy to learn

Page 89: Strengths and Weaknesses of Access Control … and Weaknesses of Access Control Systems Eric Schmiedl and Mike Spindel Choosing a System • Error rate • Environment • Cost •

• Ross Anderson’s Security Engineering

• Ross, et al. Handbook of Multibiometrics

Further reading