Volltext-Downloads (blau) und Frontdoor-Views (grau)

Internet Users' Willingness to Disclose Biometric Data for Continuous Online Account Protection: An Empirical Investigation

  • Continuous authentication has emerged as a promising approach to increase user account security for online services. Unlike traditional authentication methods, continuous authentication provides ongoing security throughout the session, protecting against session takeover attacks due to illegitimate access. The effectiveness of continuous authentication systems relies on the continuous processing of users' sensitive biometric data. To balance security and privacy trade-offs, it's crucial to understand when users are willing to disclose biometric data for enhanced account security, addressing inevitable privacy concerns and user acceptance. To address this knowledge gap, we conducted an online study with 830 participants from the U.S., aiming to investigate user perceptions towards continuous authentication across different classes of online services. Our analysis identified four groups of biometric traits that directly reflect users' willingness to disclose them. Our findings demonstrate that willingness to disclose is influenced by both the specific biometric traits and the type of online service involved. User perceptions are strongly shaped by factors such as response efficacy, perceived privacy risks associated with the biometric traits, and concerns about the service providers' handling of such data. Our results emphasize the inadequacy of one-size-fits-all solutions and provide valuable insights for the design and implementation of continuous authentication systems.

Download full text files

Export metadata

Additional Services

Search Google Scholar Check availability

Statistics

Show usage statistics
Metadaten
Document Type:Article
Language:English
Author:Florian Dehling, Jan Tolsdorf, Hannes Federrath, Luigi Lo Iacono
Parent Title (English):PoPETs (Proceedings on Privacy Enhancing Technologies)
Volume:2024
Issue:2
Number of pages:30
First Page:479
Last Page:508
ISSN:2299-0984
URN:urn:nbn:de:hbz:1044-opus-84843
DOI:https://doi.org/10.56553/popets-2024-0060
Publisher:Privacy Enhancing Technologies Symposium Advisory Board
Publishing Institution:Hochschule Bonn-Rhein-Sieg
Date of first publication:2024/06/24
Copyright:© 2024 Copyright held by the owner/author(s). This work is licensed under the Creative Commons Attribution 4.0 International License.
Keywords:Biometric Traits; Continuous Authentication; PLS-SEM; Usable Privacy Security; User Privacy Perception; factor analysis
Departments, institutes and facilities:Fachbereich Informatik
Institut für Cyber Security & Privacy (ICSP)
Dewey Decimal Classification (DDC):0 Informatik, Informationswissenschaft, allgemeine Werke / 00 Informatik, Wissen, Systeme / 005 Computerprogrammierung, Programme, Daten
Entry in this database:2024/07/15
Licence (German):License LogoCreative Commons - CC BY - Namensnennung 4.0 International