Nowhere to Hide: Cross-modal Identity Leakage between Biometrics and Devices



Lu, Chris Xiaoxuan, Li, Yang, Xiangli, Yuanbo and Li, Zhengxiong
(2020) Nowhere to Hide: Cross-modal Identity Leakage between Biometrics and Devices. In: Web Conference2020, 2020-4-20 - 2020-4-24, Taipei, Taiwan.

[img] Text
main.pdf - Author Accepted Manuscript

Download (10MB) | Preview

Abstract

Along with the benefits of Internet of Things (IoT) come potential privacy risks, since billions of the connected devices are granted permission to track information about their users and communicate it to other parties over the Internet. Of particular interest to the adversary is the user identity which constantly plays an important role in launching attacks. While the exposure of a certain type of physical biometrics or device identity is extensively studied, the compound effect of leakage from both sides remains unknown in multi-modal sensing environments. In this work, we explore the feasibility of the compound identity leakage across cyber-physical spaces and unveil that co-located smart device IDs (e.g., smartphone MAC addresses) and physical biometrics (e.g., facial/vocal samples) are side channels to each other. It is demonstrated that our method is robust to various observation noise in the wild and an attacker can comprehensively profile victims in multi-dimension with nearly zero analysis effort. Two real-world experiments on different biometrics and device IDs show that the presented approach can compromise more than 70\% of device IDs and harvests multiple biometric clusters with ~94% purity at the same time.

Item Type: Conference or Workshop Item (Unspecified)
Additional Information: 12 pages
Uncontrolled Keywords: Identity Leakage, Cross-modality Association, Internet of Things
Depositing User: Symplectic Admin
Date Deposited: 29 May 2020 10:48
Last Modified: 18 Jan 2023 23:50
DOI: 10.1145/3366423.3380108
Related URLs:
URI: https://livrepository.liverpool.ac.uk/id/eprint/3089153