Smart Grid and Internet of Things. Second EAI International Conference, SGIoT 2018, Niagara Falls, ON, Canada, July 11, 2018, Proceedings

Research Article

A Multi-factor Authentication Method for Security of Online Examinations

Download
200 downloads
  • @INPROCEEDINGS{10.1007/978-3-030-05928-6_13,
        author={Abrar Ullah and Hannan Xiao and Trevor Barker},
        title={A Multi-factor Authentication Method for Security of Online Examinations},
        proceedings={Smart Grid and Internet of Things. Second EAI International Conference, SGIoT 2018, Niagara Falls, ON, Canada, July 11, 2018, Proceedings},
        proceedings_a={SGIOT},
        year={2019},
        month={1},
        keywords={Security Authentication Online examination},
        doi={10.1007/978-3-030-05928-6_13}
    }
    
  • Abrar Ullah
    Hannan Xiao
    Trevor Barker
    Year: 2019
    A Multi-factor Authentication Method for Security of Online Examinations
    SGIOT
    Springer
    DOI: 10.1007/978-3-030-05928-6_13
Abrar Ullah1,*, Hannan Xiao2,*, Trevor Barker2,*
  • 1: Cardiff Metropolitan University
  • 2: University of Hertfordshire
*Contact email: aaaullah@cardiffmet.ac.uk, H.xiao@herts.ac.uk, T.1.barker@herts.ac.uk

Abstract

Security of online examinations is the key to success of remote online learning. However, it faces many conventional and non-conventional security threats. Impersonation and abetting are rising non-conventional security threats, when a student invites a third party to impersonate or abet in a remote exam. This work proposed dynamic profile questions authentication to identify that the person taking an online test is the same who completed the course work. This is combined with remote proctoring to prevent students from taking help from a third party during exam. This research simulated impersonation and abetting attacks in remote online course and laboratory based control simulation to analyse the impact of dynamic profile questions and proctoring. The study also evaluated effectiveness of the proposed method. The findings indicate that dynamic profile questions are highly effective. The security analysis shows that impersonation attack was not successful.