Biometrics-Authenticated Key Exchange for Secure Messaging
Mei Wang, Kun He, Jing Chen, Zengpeng Li, Wei Zhao, Ruiying Du
Abstract
Secure messaging heavily relies on a session key negotiated by an Authenticated Key Exchange (AKE) protocol. However, existing AKE protocols only verify the existence of a random secret key (corresponding to a certificated public key) stored in the terminal, rather than a legal user who uses the messaging application. In this paper, we propose a Biometrics-Authenticated Key Exchange (BAKE) framework, in which a secret key is derived from a user's biometric characteristics that are not necessary to be stored. To protect the privacy of users' biometric characteristics and realize one-round key exchange, we present an Asymmetric Fuzzy Encapsulation Mechanism (AFEM) to encapsulate messages with a public key derived from a biometric secret key, such that only a similar secret key can decapsulate them. To manifest the practicality, we present two AFEM constructions for two types of biometric secret keys and instantiate them with irises and fingerprints, respectively. We perform security analysis of BAKE and show its performance through extensive experiments.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get 83cff93c-5b89-4c0a-881a-8fb846c3c2d9Cited by top-tier papers1
Ask how each one uses itRelated papers
- Revisiting Fuzzy Signatures: Towards a More Risk-Free Cryptographic Authentication System based on BiometricsShuichi Katsumata, Takahiro Matsuda, Wataru Nakamura, Kazuma Ohara et al.CCS 2021 · 19 citations
- Multisketches: Practical Secure Sketches Using Off-the-Shelf Biometric Matching AlgorithmsRahul Chatterjee, M. Sadegh Riazi, Tanmoy Chowdhury, Emanuela Marasco et al.CCS 2019 · 14 citations
- Fuzzy Extractors are Practical: Cryptographic Strength Key Derivation from the IrisAmey Shukla, Luke Demarest, Benjamin Fuller, Sohaib Ahmad et al.CCS 2025
- Post-quantum Internet Key Exchange via Authenticated Forward-Secure KEMYunlei Zhao, Biming Zhou, Zhixiang Zhao, Yifan Dong et al.CRYPTO 2026
- How to Tolerate Typos in Strong Asymmetric PAKEIan McQuoid, Mike Rosulek, Jiayu XuCRYPTO 2025 · 3 citations
