SoK: Security Evaluation of Wi-Fi CSI Biometrics: Attacks, Metrics, and Open Challenges

Fuente: arXiv
Salvato in:
Dettagli Bibliografici
Autori principali: Braga, Gioliano de Oliveira, Rocha, Pedro Henrique dos Santos, Paixão, Rafael Pimenta de Mattos, da Costa, Giovani Hoff, Morais, Gustavo Cavalcanti, Júnior, Lourenço Alves Pereira
Natura: Preprint
Pubblicazione: 2025
Soggetti:
Accesso online:
Tags: Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
_version_ 1866911278604222464
author Braga, Gioliano de Oliveira
Rocha, Pedro Henrique dos Santos
Paixão, Rafael Pimenta de Mattos
da Costa, Giovani Hoff
Morais, Gustavo Cavalcanti
Júnior, Lourenço Alves Pereira
author_facet Braga, Gioliano de Oliveira
Rocha, Pedro Henrique dos Santos
Paixão, Rafael Pimenta de Mattos
da Costa, Giovani Hoff
Morais, Gustavo Cavalcanti
Júnior, Lourenço Alves Pereira
contents Wi-Fi Channel State Information (CSI) has been repeatedly proposed as a biometric modality, often with reports of high accuracy and operational feasibility. However, the field lacks a consolidated understanding of its security properties, adversarial resilience, and methodological consistency. This Systematization of Knowledge (SoK) examines CSI-based biometric authentication through a security lens, analyzing how existing works diverge in sensing infrastructure, signal representations, feature pipelines, learning models, and evaluation methodologies. Our synthesis reveals systemic inconsistencies: reliance on aggregate accuracy metrics, limited reporting of FAR/FRR/EER, absence of per-user risk analysis, and scarce consideration of threat models or adversarial feasibility. To this end, we construct a unified evaluation framework to expose these issues empirically and demonstrate how security-relevant metrics such as per-class EER, Frequency Count of Scores (FCS), and the Gini Coefficient uncover risk concentration that remains hidden under traditional reporting practices. The resulting analysis highlights concrete attack surfaces--including replay, geometric mimicry, and environmental perturbation--and shows how methodological choices materially influence vulnerability profiles. Based on these findings, we articulate the security boundaries of current CSI biometrics and provide guidelines for rigorous evaluation, reproducible experimentation, and future research directions. This SoK offers the security community a structured, evidence-driven reassessment of Wi-Fi CSI biometrics and their suitability as an authentication primitive.
format Preprint
id arxiv_https___arxiv_org_abs_2511_11381
institution arXiv
publishDate 2025
record_format arxiv
spellingShingle SoK: Security Evaluation of Wi-Fi CSI Biometrics: Attacks, Metrics, and Open Challenges
Braga, Gioliano de Oliveira
Rocha, Pedro Henrique dos Santos
Paixão, Rafael Pimenta de Mattos
da Costa, Giovani Hoff
Morais, Gustavo Cavalcanti
Júnior, Lourenço Alves Pereira
Cryptography and Security
Machine Learning
Networking and Internet Architecture
K.6.5; C.2.1; I.5.4
Wi-Fi Channel State Information (CSI) has been repeatedly proposed as a biometric modality, often with reports of high accuracy and operational feasibility. However, the field lacks a consolidated understanding of its security properties, adversarial resilience, and methodological consistency. This Systematization of Knowledge (SoK) examines CSI-based biometric authentication through a security lens, analyzing how existing works diverge in sensing infrastructure, signal representations, feature pipelines, learning models, and evaluation methodologies. Our synthesis reveals systemic inconsistencies: reliance on aggregate accuracy metrics, limited reporting of FAR/FRR/EER, absence of per-user risk analysis, and scarce consideration of threat models or adversarial feasibility. To this end, we construct a unified evaluation framework to expose these issues empirically and demonstrate how security-relevant metrics such as per-class EER, Frequency Count of Scores (FCS), and the Gini Coefficient uncover risk concentration that remains hidden under traditional reporting practices. The resulting analysis highlights concrete attack surfaces--including replay, geometric mimicry, and environmental perturbation--and shows how methodological choices materially influence vulnerability profiles. Based on these findings, we articulate the security boundaries of current CSI biometrics and provide guidelines for rigorous evaluation, reproducible experimentation, and future research directions. This SoK offers the security community a structured, evidence-driven reassessment of Wi-Fi CSI biometrics and their suitability as an authentication primitive.
title SoK: Security Evaluation of Wi-Fi CSI Biometrics: Attacks, Metrics, and Open Challenges
topic Cryptography and Security
Machine Learning
Networking and Internet Architecture
K.6.5; C.2.1; I.5.4
url https://arxiv.org/abs/2511.11381