Secure distributed multimodal biometric authentication using blockchain with 3D face and 3D ear recognition
摘要
To managing identities in a secure and decentralized manner, new opportunities have emerged because of recent breakthroughs in blockchain technology and biometric authentication. Blockchain is different from traditional biometric systems in that it is an unchangeable, distributed ledger that runs safe, decentralized code. Traditional biometric systems store data in one location and can’t be updated. Traditional biometric systems have some flaws, including template tampering, channel interception, and comparator overrides. So, the proposed work presents a Distributed Multimodal Biometric Security System with Blockchain to handle such issues. This system uses 3D face and 3D ear biometrics with blockchain technology, which comprises IPFS, smart contracts, and decentralized applications. Features from 3D face and 3D ear are embedded into a single multimodal template, which then undergoes encryption and storage on IPFS via content-addressed storage. The Content Identifier (CID) and data are then archived by smart contracts on the blockchain to maintain data integrity, security, verifiability, and immutability. In this way, a person can prove his identity without using any central services, further improving privacy. Blockchain consensus and the smart-contract-based access control mechanism further provide security, audibility, and simplicity to P2P transactions in biometric enrolment testing results show that feature extraction takes from 120 ms to 300 ms, uploading to IPFS takes between 200 and 600 ms, and completing blockchain transactions on local private network takes from 0.5 to 1 s, using 117,519 gas per enrolment. Additional analysis on the Ethereum Sepolia test network reveals that transaction fees change depending on network conditions, but gas consumption stays deterministic. The suggested solution is resistant to typical attacks like replay, interception, and template alteration; it is also irreversible, revocable, and unlinkable, according to security analysis conducted under a formal adversarial model.