F-RBA: A Federated Learning-based Framework for Risk-based Authentication
Hamidreza Fereidouni, Abdelhakim Senhaji Hafid, Dimitrios Makrakis,, Yaser Baseri

TL;DR
This paper introduces F-RBA, a federated learning-based framework for risk-based user authentication that enhances security and privacy by performing local risk assessments on user devices, improving detection of suspicious activities.
Contribution
It presents a novel federated risk-based authentication framework with similarity-based feature engineering, addressing data heterogeneity and cold-start issues in distributed environments.
Findings
Achieves higher true positive rates in detecting suspicious logins.
Demonstrates effective privacy-preserving risk assessment across devices.
Addresses data heterogeneity with similarity-based feature engineering.
Abstract
The proliferation of Internet services has led to an increasing need to protect private data. User authentication serves as a crucial mechanism to ensure data security. Although robust authentication forms the cornerstone of remote service security, it can still leave users vulnerable to credential disclosure, device-theft attacks, session hijacking, and inadequate adaptive security measures. Risk-based Authentication (RBA) emerges as a potential solution, offering a multi-level authentication approach that enhances user experience without compromising security. In this paper, we propose a Federated Risk-based Authentication (F-RBA) framework that leverages Federated Learning to ensure privacy-centric training, keeping user data local while distributing learning across devices. Whereas traditional approaches rely on centralized storage, F-RBA introduces a distributed architecture where…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAccess Control and Trust · Korean Peninsula Historical and Political Studies
Methodstravel james
