Two Factor Authentication: Voice Biometric and Token-Based Authentication
摘要
For many years, the issue with traditional single-schema password-based authentication systems has been the lack of security. Billions of passwords have been compromised due to the usage of weak passwords who find it troublesome to create and remember different and complex passwords every time they want access to the web services. The purpose of this project is to study, develop and to test a two factor web authentication system that allows users to authenticate using a federated and text-dependent voice authentication in an Android smartphone. This project seeks to eliminate the need to create and memorize long and complex passwords when authenticating to a web service. This project offers a convenient but secure alternative method, which does not store any of the users’ passwords but rather obtains the users’ identity from the users’ federated identity providers. It also removes the user’s burden of having to create and remember different, long, and complex passwords during sign-up and login to a web application and also provides convenience for the web administrator as there is no database to maintain. This project reduces the impact of security issues as user’s credentials are stored separately in two different cloud databases, thus making it very difficult for hackers to access and utilize.