Existing solutions for protecting biometric templates are typically based on encryption or feature transformations, which may increase system’s complexity or degrade its accuracy. In this paper, we put forward the idea of departing from encryption and protecting biometrics through fragmentation. By partitioning templates into unlinkable fragments, fragmentation provides protection since the limited information contained in each fragment is not sufficient for correct identification and hence cannot be exploited to impersonate legitimate subjects. In storage, fragments are mapped to fragtemplates on which the matching process is then performed. In each fragtemplate, genuine fragments are confused with synthetic ones and are indistinguishable from them. We design a fragmentation approach for iris templates and experimentally evaluate its accuracy and protection guarantees. Our experimental results confirm that fragmentation, when properly designed, can effectively provide protection while preserving identification accuracy.

Fragmentation for Iris Template Protection / S. De Capitani Di Vimercati, R.D.L. (LECTURE NOTES IN COMPUTER SCIENCE). - In: Computer Security – ESORICS 2026 / [a cura di] A. Spognardi, K. Sun, F. De Gaspari, L.V. Mancini. - [s.l] : Springer, 2026 Sep 26. - ISBN 978-3-032-38695-3. - pp. 319-337 (( 31. European Symposium on Research in Computer Security, Proceedings, Part II : September, 14th – 18th Roma 2026 [10.1007/978-3-032-38695-3_16].

Fragmentation for Iris Template Protection

S. De Capitani Di Vimercati
Primo
;
R. Donida Labati
Secondo
;
S. Foresti;V. Piuri;P. Samarati;F. Scotti
Penultimo
;
M. Vulpio
Ultimo
2026

Abstract

Existing solutions for protecting biometric templates are typically based on encryption or feature transformations, which may increase system’s complexity or degrade its accuracy. In this paper, we put forward the idea of departing from encryption and protecting biometrics through fragmentation. By partitioning templates into unlinkable fragments, fragmentation provides protection since the limited information contained in each fragment is not sufficient for correct identification and hence cannot be exploited to impersonate legitimate subjects. In storage, fragments are mapped to fragtemplates on which the matching process is then performed. In each fragtemplate, genuine fragments are confused with synthetic ones and are indistinguishable from them. We design a fragmentation approach for iris templates and experimentally evaluate its accuracy and protection guarantees. Our experimental results confirm that fragmentation, when properly designed, can effectively provide protection while preserving identification accuracy.
Settore INFO-01/A - Informatica
   SEcurity and RIghts in the CyberSpace (SERICS)
   SERICS
   MINISTERO DELL'UNIVERSITA' E DELLA RICERCA
   codice identificativo PE00000014
26-set-2026
Book Part (author)
File in questo prodotto:
File Dimensione Formato  
ddfjpssv-esorics2026.pdf

embargo fino al 27/09/2027

Descrizione: e-pub ahead of print
Tipologia: Post-print, accepted manuscript ecc. (versione accettata dall'editore)
Licenza: Publisher
Dimensione 2.11 MB
Formato Adobe PDF
2.11 MB Adobe PDF   Visualizza/Apri   Richiedi una copia
Pubblicazioni consigliate

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/2434/1273999
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus ND
  • ???jsp.display-item.citation.isi??? ND
  • OpenAlex ND
social impact