Analyzing Multi-Factor Authentication Through Cryptographic Security Properties

arXiv:2609.16214 · cs.CR · Submitted 2026-09-14 · Read on arXiv

cs.CR

Submitted: 2026-09-14

Updated: 2026-09-16

License: http://creativecommons.org/licenses/by/4.0/

The gist: Modern authentication systems use cybersecurity techniques to validate the identity of the person (or applications acting on behalf of the person) as a primary defense against unauthorized access.

Terminology

Abstract

Modern authentication systems use cybersecurity techniques to validate the identity of the person (or applications acting on behalf of the person) as a primary defense against unauthorized access. While initially built around single mechanisms such as usernames/passwords, physical tokens, or biometrics, current systems have evolved into multi-factor authentication (MFA) platforms that combine multiple mechanisms. Among them, several focus on strategies that prevent replay attacks (i.e. the reuse of a component that could have been potentially compromised).

Related papers