Recovering Access to Account Using Location Data
35th Annual Computer Security Applications Conference (ACSAC 2019), 2019/12
セキュリティ・プライバシー (Security & Privacy)
- Account recovery has been known as a backup mechanism to reclaim a user’s lost account. However, typical knowledge-based methods are known as vulnerable to account abuse. To improve security while keeping usability, we propose an account recovery system verifying the similarity of two types of location datasets that have been collected via different devices of users without any explicit registration process. With the proposed method, we conducted an experimental study to evaluate performance measures such as false acceptance and false rejection using the location data of 285 users and obtained a 0.075 equal error rate.