%0 Conference Proceedings %T Client-Side Biometric Verification Based on Trusted Computing %+ Catholic University of Leuven = Katholieke Universiteit Leuven (KU Leuven) %A Vossaert, Jan %A Lapon, Jorn %A Decker, Bart, De %A Naessens, Vincent %Z Part 1: Research Papers %< avec comité de lecture %( Lecture Notes in Computer Science %B 14th International Conference on Communications and Multimedia Security (CMS) %C Magdeburg,, Germany %Y Bart Decker %Y Jana Dittmann %Y Christian Kraetzer %Y Claus Vielhauer %I Springer %3 Communications and Multimedia Security %V LNCS-8099 %P 34-49 %8 2013-09-25 %D 2013 %R 10.1007/978-3-642-40779-6_3 %Z Computer Science [cs] %Z Computer Science [cs]/Networking and Internet Architecture [cs.NI]Conference papers %X Traditionally, a user requires substantial trust in a workstation for correctly handling her credentials (e.g. password/login). Unfortunately, malware and compromised software makes them unsuitable for secure credential management. Credentials are easily stolen and the user cannot trust what is being displayed on her workstation, obstructing informed consent.This paper presents a new solution that addresses these issues. Credentials are bound to the owner using biometrics, effectively impeding abuse through credential sharing and theft. The biometric verification is performed on the client side, preserving the privacy of the user. The solution ensures that the user is correctly informed about the pending authentication, preventing abuse by malware. To demonstrate the feasibility of our approach, a prototype was implemented. %G English %Z TC 6 %Z TC 11 %2 https://inria.hal.science/hal-01492832/document %2 https://inria.hal.science/hal-01492832/file/978-3-642-40779-6_3_Chapter.pdf %L hal-01492832 %U https://inria.hal.science/hal-01492832 %~ IFIP-LNCS %~ IFIP %~ IFIP-TC %~ IFIP-TC11 %~ IFIP-TC6 %~ IFIP-CMS %~ IFIP-LNCS-8099