Search engine for discovering works of Art, research articles, and books related to Art and Culture
ShareThis
Javascript must be enabled to continue!

Two-Factor Authentication Scheme for Mobile Money: A Review of Threat Models and Countermeasures

View through CrossRef
The proliferation of digital financial innovations like mobile money has led to the rise in mobile subscriptions and transactions. It has also increased the security challenges associated with the current two-factor authentication (2FA) scheme for mobile money due to the high demand. This review paper aims to determine the threat models in the 2FA scheme for mobile money. It also intends to identify the countermeasures to overcome the threat models. A comprehensive literature search was conducted from the Google Scholar and other leading scientific databases such as IEEE Xplore, MDPI, Emerald Insight, Hindawi, ACM, Elsevier, Springer, and Specific and International Journals, where 97 papers were reviewed that focused on the topic. Descriptive research papers and studies related to the theme were selected. Three reviewers extracted information independently on authentication, mobile money system architecture, mobile money access, the authentication scheme for mobile money, various attacks on the mobile money system (MMS), threat models in the 2FA scheme for mobile money, and countermeasures. Through literature analysis, it was found that the threat models in the 2FA scheme for mobile money were categorised into five, namely, attacks against privacy, attacks against authentication, attacks against confidentiality, attacks against integrity, and attacks against availability. The countermeasures include use of cryptographic functions (e.g., asymmetric encryption function, symmetric encryption function, and hash function) and personal identification (e.g., number-based and biometric-based countermeasures). This review study reveals that the current 2FA scheme for mobile money has security gaps that need to be addressed since it only uses a personal identification number (PIN) and a subscriber identity module (SIM) to authenticate users, which are susceptible to attacks. This work, therefore, will help mobile money service providers (MMSPs), decision-makers, and governments that wish to improve their current 2FA scheme for mobile money.
Title: Two-Factor Authentication Scheme for Mobile Money: A Review of Threat Models and Countermeasures
Description:
The proliferation of digital financial innovations like mobile money has led to the rise in mobile subscriptions and transactions.
It has also increased the security challenges associated with the current two-factor authentication (2FA) scheme for mobile money due to the high demand.
This review paper aims to determine the threat models in the 2FA scheme for mobile money.
It also intends to identify the countermeasures to overcome the threat models.
A comprehensive literature search was conducted from the Google Scholar and other leading scientific databases such as IEEE Xplore, MDPI, Emerald Insight, Hindawi, ACM, Elsevier, Springer, and Specific and International Journals, where 97 papers were reviewed that focused on the topic.
Descriptive research papers and studies related to the theme were selected.
Three reviewers extracted information independently on authentication, mobile money system architecture, mobile money access, the authentication scheme for mobile money, various attacks on the mobile money system (MMS), threat models in the 2FA scheme for mobile money, and countermeasures.
Through literature analysis, it was found that the threat models in the 2FA scheme for mobile money were categorised into five, namely, attacks against privacy, attacks against authentication, attacks against confidentiality, attacks against integrity, and attacks against availability.
The countermeasures include use of cryptographic functions (e.
g.
, asymmetric encryption function, symmetric encryption function, and hash function) and personal identification (e.
g.
, number-based and biometric-based countermeasures).
This review study reveals that the current 2FA scheme for mobile money has security gaps that need to be addressed since it only uses a personal identification number (PIN) and a subscriber identity module (SIM) to authenticate users, which are susceptible to attacks.
This work, therefore, will help mobile money service providers (MMSPs), decision-makers, and governments that wish to improve their current 2FA scheme for mobile money.

Related Results

Development of a secure multi-factor authentication algorithm for mobile money applications
Development of a secure multi-factor authentication algorithm for mobile money applications
With the expansion of industry 4.0, financial technology (FinTech) has become paramount in this era. Mobile money as one of the FinTech has immensely contributed to improving finan...
ANALISIS PERTIMBANGAN MAHKAMAH AGUNG DALAM MENGABULKAN KASASI TERDAKWA (STUDI PUTUSAN NOMOR 2959/K/PID.SUS/2022)
ANALISIS PERTIMBANGAN MAHKAMAH AGUNG DALAM MENGABULKAN KASASI TERDAKWA (STUDI PUTUSAN NOMOR 2959/K/PID.SUS/2022)
<p><em><span class="markedContent"><span style="left: calc(var(--scale-factor)*195.53px); top: calc(var(--scale-factor)*496.87px); font-size: calc(var(--scale-...
Development of a secure multi-factor authentication algorithm for mobile money applications
Development of a secure multi-factor authentication algorithm for mobile money applications
With the evolution of industry 4.0, financial technologies have become paramount and mobile money as one of the financial technologies has immensely contributed to improving financ...
Development of a secure multi-factor authentication algorithm for mobile money applications
Development of a secure multi-factor authentication algorithm for mobile money applications
With the evolution of industry 4.0, financial technologies have become paramount and mobile money as one of the financial technologies has immensely contributed to improving financ...
Mobile Money Adoption and Performance of Informal Family Enterprises During COVID-19 Lockdown in Ekiti State, Nigeria
Mobile Money Adoption and Performance of Informal Family Enterprises During COVID-19 Lockdown in Ekiti State, Nigeria
The study was carried out on family enterprises in Ekiti state during COVID-19 Lockdown: to identify socio-economic characteristics of the family enterprises; to determine the type...
KEDUDUKAN AHLI BAHASA DALAM PEMBUKTIAN PERKARA PENCEMARAN NAMA BAIK (STUDI PUTUSAN NOMOR: 47/PID.SUS/2019/PN. MGT)
KEDUDUKAN AHLI BAHASA DALAM PEMBUKTIAN PERKARA PENCEMARAN NAMA BAIK (STUDI PUTUSAN NOMOR: 47/PID.SUS/2019/PN. MGT)
<em><span id="page3R_mcid52" class="markedContent"><span style="left: calc(var(--scale-factor)*125.30px); top: calc(var(--scale-factor)*539.11px); font-size: calc(va...
Control of fraud on mobile money services in Ghana: an exploratory study
Control of fraud on mobile money services in Ghana: an exploratory study
Purpose Fraud is a global economic menace which threatens the survival of individuals, firms, industries and economies, and the mobile money service is no exception. This paper aim...

Back to Top