<?xml version="1.0" encoding="UTF-8"?><!DOCTYPE article PUBLIC "-//NLM//DTD JATS (Z39.96) Journal Publishing DTD v1.2 20190208//EN" "http://jats.nlm.nih.gov/publishing/1.2/JATS-journalpublishing1.dtd"><article xmlns:mml="http://www.w3.org/1998/Math/MathML" xmlns:xlink="http://www.w3.org/1999/xlink" article-type="systematic-review" dtd-version="1.2" xml:lang="en">
    <front>
        <journal-meta>
            <journal-id journal-id-type="pmc">F1000Research</journal-id>
            <journal-title-group>
                <journal-title>F1000Research</journal-title>
            </journal-title-group>
            <issn pub-type="epub">2046-1402</issn>
            <publisher>
                <publisher-name>F1000 Research Limited</publisher-name>
                <publisher-loc>London, UK</publisher-loc>
            </publisher>
        </journal-meta>
        <article-meta>
            <article-id pub-id-type="doi">10.12688/f1000research.173855.1</article-id>
            <article-categories>
                <subj-group subj-group-type="heading">
                    <subject>Systematic Review</subject>
                </subj-group>
                <subj-group>
                    <subject>Articles</subject>
                </subj-group>
            </article-categories>
            <title-group>
                <article-title>A Systematic Literature Review on Biometric Authentication in Mobile Banking</article-title>
                <fn-group content-type="pub-status">
                    <fn>
                        <p>[version 1; peer review: 1 approved with reservations, 1 not approved]</p>
                    </fn>
                </fn-group>
            </title-group>
            <contrib-group>
                <contrib contrib-type="author" corresp="yes">
                    <name>
                        <surname>Naji Ali</surname>
                        <given-names>Hasan</given-names>
                    </name>
                    <role content-type="http://credit.niso.org/">Formal Analysis</role>
                    <role content-type="http://credit.niso.org/">Funding Acquisition</role>
                    <role content-type="http://credit.niso.org/">Methodology</role>
                    <role content-type="http://credit.niso.org/">Resources</role>
                    <role content-type="http://credit.niso.org/">Visualization</role>
                    <role content-type="http://credit.niso.org/">Writing &#x2013; Original Draft Preparation</role>
                    <uri content-type="orcid">https://orcid.org/0009-0007-6880-0038</uri>
                    <xref ref-type="corresp" rid="c1">a</xref>
                    <xref ref-type="aff" rid="a1">1</xref>
                    <xref ref-type="aff" rid="a2">2</xref>
                </contrib>
                <contrib contrib-type="author" corresp="no">
                    <name>
                        <surname>SALIM MAHMOOD AL-Dabbagh</surname>
                        <given-names>SUFYAN</given-names>
                    </name>
                    <role content-type="http://credit.niso.org/">Validation</role>
                    <role content-type="http://credit.niso.org/">Writing &#x2013; Review &amp; Editing</role>
                    <xref ref-type="aff" rid="a3">3</xref>
                </contrib>
                <aff id="a1">
                    <label>1</label>Computer Science, University of Mosul College of Computer Sciences and Mathematics, Mosul, Nineveh Governorate, Iraq</aff>
                <aff id="a2">
                    <label>2</label>Computer Science, Tikrit University College of Computer Science and Mathematics, Tikrit, Saladin Governorate, Iraq</aff>
                <aff id="a3">
                    <label>3</label>Cybersecurity, University of Mosul College of Computer Sciences and Mathematics, Mosul, Nineveh Governorate, Iraq</aff>
            </contrib-group>
            <author-notes>
                <corresp id="c1">
                    <label>a</label>
                    <email xlink:href="mailto:hasan.23csp47@student.uomosul.edu.iq">hasan.23csp47@student.uomosul.edu.iq</email>
                </corresp>
                <fn fn-type="conflict">
                    <p>No competing interests were disclosed.</p>
                </fn>
            </author-notes>
            <pub-date pub-type="epub">
                <day>6</day>
                <month>1</month>
                <year>2026</year>
            </pub-date>
            <pub-date pub-type="collection">
                <year>2026</year>
            </pub-date>
            <volume>15</volume>
            <elocation-id>5</elocation-id>
            <history>
                <date date-type="accepted">
                    <day>23</day>
                    <month>12</month>
                    <year>2025</year>
                </date>
            </history>
            <permissions>
                <copyright-statement>Copyright: &#x00a9; 2026 Naji Ali H and SALIM MAHMOOD AL-Dabbagh S</copyright-statement>
                <copyright-year>2026</copyright-year>
                <license xlink:href="https://creativecommons.org/licenses/by/4.0/">
                    <license-p>This is an open access article distributed under the terms of the Creative Commons Attribution Licence, which permits unrestricted use, distribution, and reproduction in any medium, provided the original work is properly cited.</license-p>
                </license>
            </permissions>
            <self-uri content-type="pdf" xlink:href="https://f1000research.com/articles/15-5/pdf"/>
            <abstract>
                <p>As mobile banking continues to grow at an exponential rate, the financial industry is faced with a critical challenge: How to keep user credentials secure without compromising on efficiency. Password-based authentication is still dominant but has major limitations which compromise both security and user experience. These systems are susceptible to the most common attack vectors such as phishing, malware and man-in-the-middle attacks, especially if users are using weak passwords or sharing passwords. Additionally, mobile devices have limited input interfaces that are frequently sources of frustration and error. As a result, there is increasing interest in other more secure and convenient alternatives such as biometric and multi-factor authentication (MFA) to mitigate the inherent weaknesses of password-based systems. This systematic literature review, which covers studies from 2020 to 2025, provides a critical review of biometric authentication methods used in mobile banking. It analyses existing approaches, security risks and implementation practices adopted by major banks across the world. While biometric systems are more secure and user friendly than traditional systems, they also introduce new challenges in terms of privacy, spoofing and regulatory compliance. The review gives a detailed overview of the current advances, key issues, and emerging research directions, which will give valuable insight to the development of secure and easy-to-use authentication systems in mobile banking.</p>
            </abstract>
            <kwd-group kwd-group-type="author">
                <kwd>mobile banking</kwd>
                <kwd>biometric authentication</kwd>
                <kwd>user authentication</kwd>
                <kwd>usability and privacy</kwd>
                <kwd>multi-factor authentication</kwd>
                <kwd>cybersecurity threats</kwd>
            </kwd-group>
            <funding-group>
                <funding-statement>The author(s) declared that no grants were involved in supporting this work.</funding-statement>
            </funding-group>
        </article-meta>
    </front>
    <body>
        <sec id="sec1" sec-type="intro">
            <title>1. Introduction</title>
            <p>Modern financial systems rely heavily on mobile banking because smartphones have become the standard, and digital dependence has grown worldwide. Mobile banking has other names, such as e-banking, online payments, online banking and internet banking. The electronic payments system provides bank clients and financial institution users with the ability to conduct transactions through the internet. Digital transformation through mobile technology simultaneously produces substantial security threats because cyber attackers now focus on stealing sensitive financial data and monitoring financial activities. A combination of passwords with personal identification numbers (PINs) and security questions proves inadequate as authentication methods because they remain susceptible to various attacks, such as brute force attacks alongside phishing and social engineering attacks and credential stuffing.
                <sup>
                    <xref ref-type="bibr" rid="ref1">1</xref>,
                    <xref ref-type="bibr" rid="ref2">2</xref>
                </sup> The growing need for safer and easier-to-use authentication systems results directly from these system vulnerabilities. Biometric authentication has arisen as a disruptive solution that uses individual physical or behavioral characteristics such as fingerprints, facial recognition, voice, irises, signatures, etc. to authenticate users with enhanced safety and precision. Online banking entry methods through which users prove their identity for platform access are known as user authentication. The authentication approaches of mobile banking systems protect both financial service access and users from fraudulent activities. where user authentication verifies the actual identity of a declared person or application or procedure handling user requests. System access control relies on authentication technology, which verifies that user credentials exist in authorized user databases or data authentication servers. Organizations protect their networks through authentication because this procedure allows only verified users (or automated processes) to reach secure assets, including systems, networks, databases, websites and remote applications. There are three principal authentication system types
                <sup>
                    <xref ref-type="bibr" rid="ref3">3</xref>
                </sup> as illustrated in 
                <xref ref-type="fig" rid="f1">
Figure 1</xref>.
                <list list-type="order">
                    <list-item>
                        <label>1.</label>
                        <p>

                            <bold>Something you know:</bold> Refer to knowledge-based authentication (KBA) User authentication methods depend exclusively on information that only users possess. At present, passwords together with PINs function as standard authentication methods, although they face dangers from phishing schemes, brute-force attacks and password exposure incidents.
                            <sup>
                                <xref ref-type="bibr" rid="ref4">4</xref>
                            </sup> User security questions function as a backup authentication process yet become vulnerable when attackers acquire access.
                            <sup>
                                <xref ref-type="bibr" rid="ref5">5</xref>
                            </sup>
                        </p>
                    </list-item>
                    <list-item>
                        <label>2.</label>
                        <p>

                            <bold>Something you have</bold>: Also refer to possession-based authentication (PBA), users must possess hardware or equipment to use these authentication methods. One time password (OTP)
                            <sup>
                                <xref ref-type="bibr" rid="ref6">6</xref>,
                                <xref ref-type="bibr" rid="ref7">7</xref>
                            </sup>: Sent via short message send (SMS) messages, emails, or authenticator apps. Devices used for extra security face potential vulnerabilities when attackers conduct SIM swap attacks against them.
                            <sup>
                                <xref ref-type="bibr" rid="ref8">8</xref>
                            </sup> Users can use hardware tokens together with smart cards to achieve maximum security; however, they require the physical possession of additional hardware devices.</p>
                    </list-item>
                    <list-item>
                        <label>3.</label>
                        <p>

                            <bold>Something you are</bold>: Also referring to biometric-based authentication (BBA), is a security method based on an individual&#x2019;s unique biometric and/or biometric trait that can be used to verify the identity of the individual. For example, fingerprints, facials, iris patterns, and hand and voice recognition are common biometric identifiers. These traits are distinctive and extremely difficult to reproduce; thus, the BBA is much more secure than typical authentication methods such as passwords or PINs.
                            <sup>
                                <xref ref-type="bibr" rid="ref9">9</xref>
                            </sup> The convenience of BBA is that the users do not need to remember a password much less often to bring physical tokens.
                            <sup>
                                <xref ref-type="bibr" rid="ref10">10</xref>&#x2013;
                                <xref ref-type="bibr" rid="ref12">12</xref>
                            </sup> The AI-driven verification system identifies people by their faces, although it delivers insufficient results under poor lighting conditions and when users wear masks.
                            <sup>
                                <xref ref-type="bibr" rid="ref13">13</xref>
                            </sup> Another challenge, however, regarding the implementation of the BBA is that of privacy as well as protection of biometric data. Since biometric traits that are compromised cannot be switched for new passwords, long-term security becomes an issue. However, despite these concerns, such as the ability of adversaries to learn the distribution of nonbits, BBA technology has been widely adopted in many fields, including mobile devices, financial services and national security, because of its strong ability to enhance the process of authentication.
                            <sup>
                                <xref ref-type="bibr" rid="ref14">14</xref>
                            </sup>
                        </p>
                    </list-item>
                    <list-item>
                        <label>4.</label>
                        <p>

                            <bold>Multi-factor authentication (MFA):</bold> This method combines two or more authentication methods for enhanced security. Users must authenticate through KBA password entry on a mobile banking application and receive receipt of an OTP.
                            <sup>
                                <xref ref-type="bibr" rid="ref15">15</xref>,
                                <xref ref-type="bibr" rid="ref16">16</xref>
                            </sup> Security increases when the system maintains multiple authentication methods because compromised individual factors do not authorize unauthorized access. Additional extra security layers are appended when using biometric authentication, such as fingerprints, facial recognition, irises, voice, hands/palms,
                            <sup>
                                <xref ref-type="bibr" rid="ref17">17</xref>
                            </sup> etc. Continuous authentication delivers two forms of protection by evaluating keyboard typing patterns and device motion along with swipe gestures. AI-based risk assessment conducts continuous assessments of user engagements to discover doubtful activities in real time.
                            <sup>
                                <xref ref-type="bibr" rid="ref18">18</xref>,
                                <xref ref-type="bibr" rid="ref19">19</xref>
                            </sup> 
                            <xref ref-type="table" rid="T1">
Table 1</xref> present analysis of user authentication approaches includes descriptions, strengths, weaknesses, and typical use cases.</p>
                    </list-item>
                </list>

                <fig fig-type="figure" id="f1" orientation="portrait" position="float">
                    <label>
Figure 1. </label>
                    <caption>
                        <title>Classification of general user authentication methods categorized as knowledge-based, possession-based, and biometric-based factors.</title>
                    </caption>
                    <graphic id="gr1" orientation="portrait" position="float" xlink:href="https://f1000research-files.f1000.com/manuscripts/191708/bb5c003e-4bf0-4abd-b3a4-a0493b4a6da1_figure1.gif"/>
                </fig>

                <table-wrap id="T1" orientation="portrait" position="float">
                    <label>
Table 1. </label>
                    <caption>
                        <title>Comparative analysis of major types of authentications based on their description, advantages, disadvantages and major applications.</title>
                    </caption>
                    <table content-type="article-table" frame="hsides">
                        <thead>
                            <tr>
                                <th align="left" colspan="1" rowspan="1" valign="top">Authentication method</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Description</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Strengths</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Weaknesses</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Common use cases</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Ref.</th>
                            </tr>
                        </thead>
                        <tbody>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>KBA</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Users establish personal secret characters.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Simple, cost-effective, widely supported.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Vulnerable to brute force, phishing, and weak passwords.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Logins for websites, apps, and systems.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref20">20</xref>,
                                        <xref ref-type="bibr" rid="ref21">21</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>PBA</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Uses physical or digital tokens (e.g., OTPs, smart cards).</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Adds an extra layer of security, time-sensitive codes.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Tokens can be lost or stolen, requires users to carry a device.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Online banking, corporate networks, VPNs.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref22">22</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>BBA</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Uses unique physical traits (e.g., fingerprints, facial recognition).</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Difficult to replicate, convenient, and secure.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Privacy concerns, potential for false positives/negatives, high implementation cost.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Smartphones, high-security facilities, banking.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref23">23</xref>,
                                        <xref ref-type="bibr" rid="ref24">24</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>MFA</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Combines two or more authentication factors (e.g., PIN + OTP or biometric).</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Highly secure, reduces risk of unauthorized access.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">It can be inconvenient if factors are not readily available.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Banking, email, and enterprise systems.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref25">25</xref>
                                    </sup>
                                </td>
                            </tr>
                        </tbody>
                    </table>
                </table-wrap>
</p>
            <sec id="sec2">
                <title>1.1 Motivation</title>
                <p>The rapid increase in mobile banking has exposed financial facilities to well advanced cyber risks, and at the same time, it made the processes rather convenient. Password-based techniques of authentication are exposed to several attacks such as phishing attacks, brute-force attacks, and face issues in areas of memorability and limits of mobile operating environment. Therefore, an incentive to approach biometric solutions that will provide higher security levels and user experience is present in the sphere of mobile banking.</p>
                <p>By searching previous studies for the period (2020-2025), we did not find a systematic literature review that focused specifically on the uses of BBA in mobile banking. There are some studies that focused on multi-factor authentication, while others focus on the use of all authentication methods in general and their uses in online banking. Therefore, in this research, we focused on studies that examined the use of biometric authentication in mobile banking.</p>
                <p>So, the main contributions of this study are summarized as follows:
                    <list list-type="bullet">
                        <list-item>
                            <label>&#x2022;</label>
                            <p>Comprehensive systematic literature review (SLR): This study provides a detailed of systematic literature review based-on the PRISMA methodology and summarizes recent studies (2020&#x2013;2025) on biometric authentication, especially focusing on mobile banking systems.</p>
                        </list-item>
                        <list-item>
                            <label>&#x2022;</label>
                            <p>Design a taxonomy that includes all the biometric authentication methods used in previous studies, making it easier for the researcher to gain knowledge about these methods that are used in mobile banking.</p>
                        </list-item>
                        <list-item>
                            <label>&#x2022;</label>
                            <p>Analysis of Security Threats: Among the security threats that are identified and discussed in the context of both biometric authentication methods, the study lists such critical ones as biometric spoofing, malware, phishing, social engineering, a man-in-the-middle attack, etc. Besides, feasible measures against mitigation are also offered to make the institutions have an insight into how to persevere with the given threats.</p>
                        </list-item>
                        <list-item>
                            <label>&#x2022;</label>
                            <p>Survey of biometric authentication methods that are used in global banking practices: This study evaluates the authentication systems used by the major banks across the world, which refers to state-of-the-art biometric solutions in the real-life financial situation, filling the gap between academic evidence and industrial practice.</p>
                        </list-item>
                        <list-item>
                            <label>&#x2022;</label>
                            <p>Insight into usability and user perception: This paper discusses some of the usability and user perception issues in the application of biometrics to mobile banking, such as sensor reliability, privacy of stored biometric data, device and hardware constraints, and the security vs. convenience trade-off. It provides guidance for financial institutions and policy makers in creating authentication systems that are secure as well as convenient to use.</p>
                        </list-item>
                        <list-item>
                            <label>&#x2022;</label>
                            <p>Future Research Directions: Lastly, this study identifies key gaps in current practices and recommends future work on adaptive and context-aware authentication, privacy-preserving biometric security, emerging threat models, and AI-driven protection. It serves as a valuable guide for advancing secure and user-friendly mobile banking authentication in both academia and industry.</p>
                        </list-item>
                    </list>
                </p>
            </sec>
            <sec id="sec3">
                <title>1.2 Intended audience</title>
                <p>The present manuscript is aimed at a wide audience of both academic researchers and industry practitioners. To the academic community, the research can help in offering a synthesis of the state of the art biometric authentication methods in mobile banking to serve as a reference point when carrying out further studies in the research subject. The review highlights to financial institutions, banking professionals, and policymakers some practical challenges, new security threats, and usability challenges that must be addressed to ensure that mobile banking can become more secure. The paper can also be of practical use to developers and system designers interested in deploying serviceable and easy-to-use authentication systems in financial applications.</p>
                <p>The rest of this paper proceeds as follows: 
                    <bold>
Section 2</bold> presents an overview of mobile banking, biometric authentication, role of biometrics in mobile banking and overall rating, 
                    <bold>
Section 3</bold> presents the research methodology, detailing criteria and process we applied in choosing and assessing the academic papers that are collected. 
                    <bold>
Section 4</bold> provides a comprehensive analysis of the academic papers that are gathered, discussing methods used in mobile banking, threat facing mobile banking and biometric authentication methods in leading banks and challenges. 
                    <bold>
Section 5</bold> present the limitation of our study, finally 
                    <bold>
Section 6</bold> present conclusion and future directions.</p>
            </sec>
        </sec>
        <sec id="sec4">
            <title>2. Overview</title>
            <sec id="sec5">
                <title>2.1 Mobile banking</title>
                <p>Mobile banking applications changed financial management by providing users with speed and security together with convenience. Users employ these applications to view their account balances and fund transfers and bill payments while also requesting loans through their mobile devices.
                    <sup>
                        <xref ref-type="bibr" rid="ref26">26</xref>
                    </sup> Owing to technological progress, banking services have become more accessible for individuals located in distant areas, thus eliminating their need to visit bank branches. The security features of banks are enhanced through developments such as biometric authentication and encryption to protect against user risk exposure.
                    <sup>
                        <xref ref-type="bibr" rid="ref2">2</xref>
                    </sup>
                </p>
            </sec>
            <sec id="sec6">
                <title>2.2 Biometric authentication</title>
                <p>Biometric authentication has also augmented digital security in that it is stronger and more convenient compared to the use of passwords or PIN-code-based access control systems. As compared to traditional systems, biometric authentication systems also validate identity using individual physiological and behavioral attributes i.e. fingerprints, facial characteristics, the pattern of the iris, voice recognitions, and the dynamics of keystroke
                    <sup>
                        <xref ref-type="bibr" rid="ref27">27</xref>
                    </sup> which are naturally very hard to imitate or steal.
                    <sup>
                        <xref ref-type="bibr" rid="ref28">28</xref>,
                        <xref ref-type="bibr" rid="ref29">29</xref>
                    </sup> Biometric authentication continues to gain momentum because mobile banking needs cryptographic protection, as do healthcare services,
                    <sup>
                        <xref ref-type="bibr" rid="ref30">30</xref>
                    </sup> border security systems and enterprise network access systems. Biometric solutions have gained prominence among organizations and financial institutions to build improved security systems because these institutions face escalating cyber risks and data breaches.
                    <sup>
                        <xref ref-type="bibr" rid="ref31">31</xref>
                    </sup> The benefits of the enhanced security and convenience that biometrics provide systems include serious privacy and ethical risks, data safety and security challenges, and system weakness problems. 
                    <xref ref-type="fig" rid="f2">
Figure 2</xref> shows the two types of biometric authentication and presents the common methods used.</p>
                <fig fig-type="figure" id="f2" orientation="portrait" position="float">
                    <label>
Figure 2. </label>
                    <caption>
                        <title>Classification of common biometric authentication.</title>
                    </caption>
                    <graphic id="gr2" orientation="portrait" position="float" xlink:href="https://f1000research-files.f1000.com/manuscripts/191708/bb5c003e-4bf0-4abd-b3a4-a0493b4a6da1_figure2.gif"/>
                </fig>
                <p>The security model of user authentication via biometrics has several powerful attributes that establish it as a modern choice to protect digital systems. The main advantage of biometric user authentication lies in its security because individual traits such as fingerprints, facial features and iris patterns are unique and difficult to steal or duplicate from traditional passwords.
                    <sup>
                        <xref ref-type="bibr" rid="ref32">32</xref>,
                        <xref ref-type="bibr" rid="ref33">33</xref>
                    </sup> Biometric systems increase user convenience because users do not need to memorize complicated passwords or transport physical security measures.
                    <sup>
                        <xref ref-type="bibr" rid="ref34">34</xref>
                    </sup> The system of biometric authentication contains important weaknesses that need to be addressed. System inaccuracies can produce either unauthorized access or user dissatisfaction due to false positive or false negative results.
                    <sup>
                        <xref ref-type="bibr" rid="ref35">35</xref>
                    </sup> Biometric data cannot be altered after a breach occurs in the way that passwords can be changed, thus resulting in severe privacy and security issues when databases are compromised.
                    <sup>
                        <xref ref-type="bibr" rid="ref36">36</xref>
                    </sup> User consent and data protection statutes generate serious ethical and legal issues that emerge when managing biometric data collection and storage processes. User access, which relies on biometric authentication, should be deployed with appropriate precautions while receiving supplemental security safeguards for data protection.
                    <sup>
                        <xref ref-type="bibr" rid="ref37">37</xref>
                    </sup>
                </p>
                <p>Biometrics have their strengths and weaknesses,
                    <sup>
                        <xref ref-type="bibr" rid="ref38">38</xref>
                    </sup> as well as the areas in which they are commonly used. For example, fingerprint and facial recognition work well with mobile phones because the phone already has scanning devices.
                    <sup>
                        <xref ref-type="bibr" rid="ref39">39</xref>
                    </sup> Therefore, they are widely used in various digital systems, such as banking systems, healthcare systems, and other mobile applications. 
                    <xref ref-type="table" rid="T2">
Table 2</xref> provides a brief overview of their primary characteristics such as strong and weak points as well as the common uses in digital environments.</p>
                <table-wrap id="T2" orientation="portrait" position="float">
                    <label>
Table 2. </label>
                    <caption>
                        <title>Analysis of some biometric authentication approaches including descriptions, strengths, weaknesses, and typical use cases.</title>
                    </caption>
                    <table content-type="article-table" frame="hsides">
                        <thead>
                            <tr>
                                <th align="left" colspan="1" rowspan="1" valign="top">Biometric method</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Description</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Strengths</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Weaknesses</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Common use cases</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Ref.</th>
                            </tr>
                        </thead>
                        <tbody>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Fingerprint Recognition</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Scans and matches unique patterns in a user's fingerprint.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Highly accurate, fast, and widely adopted.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">It can be affected by dirt or injuries; it requires physical contact.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Smartphones, laptops, access control systems.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref40">40</xref>,
                                        <xref ref-type="bibr" rid="ref41">41</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Facial Recognition</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Analyzes facial features to verify identity.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Contactless, convenient, and fast.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Can be fooled by photos or videos; lighting and angle variations may affect accuracy.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Smartphones, airports, security checkpoints.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref42">42</xref>&#x2013;
                                        <xref ref-type="bibr" rid="ref44">44</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Iris Recognition</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Scans the unique patterns in the colored ring of the eye.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Extremely accurate and difficult to forge.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Requires specialized hardware; can be intrusive.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High-security facilities, government systems.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref45">45</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Voice Recognition</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Analyzes vocal characteristics to verify identity.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Convenient and noninvasive.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">It can be affected by background noise or voice changes due to illness.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Call centers, banking, smart home devices.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref46">46</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Retina Scanning</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Scans the unique blood vessel patterns in the retina.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Extremely secure and accurate.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Invasive, requires proximity, and expensive hardware.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Military, high-security environments.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref47">47</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Hand Geometry</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Measures the shape and size of the hand.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Reliable and easy to use.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Less unique compared to other biometrics, requires physical contact.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Time and attendance systems, access control.</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref34">34</xref>
                                    </sup>
                                </td>
                            </tr>
                        </tbody>
                    </table>
                </table-wrap>
            </sec>
            <sec id="sec7">
                <title>2.3 Role of biometrics in mobile banking</title>
                <p>The adoption of mobile banking biometric authentication for purely secure account access has become widespread because of the widespread implementation of modern financial services digital transformation, with improved efficiency and user experience of verification processes. User account passwords combined with PIN-based authentication face growing risks from cyber intruders, who exploit phishing attacks, steal credentials and gain unauthorized system access.
                    <sup>
                        <xref ref-type="bibr" rid="ref31">31</xref>,
                        <xref ref-type="bibr" rid="ref48">48</xref>
                    </sup> Online banking security evolves through biometric authentication, which is used physical and behavioral features to provide safe access and protection from fraud.
                    <sup>
                        <xref ref-type="bibr" rid="ref28">28</xref>
                    </sup>
                </p>
                <p>Mobile banking security, along with fraud prevention, is one of the fundamental purposes of biometric authentication systems. The security of mobile banking in physical biometrics, such as fingerprint scans, facial verification, hand, iris and vein methods, is important for authenticating authorized users.
                    <sup>
                        <xref ref-type="bibr" rid="ref32">32</xref>,
                        <xref ref-type="bibr" rid="ref49">49</xref>
                    </sup>
                </p>
                <p>Biometrics offer very high resistance against replication and remain difficult to counterfeit, which protects users from unauthorized transactions as well as identity theft.
                    <sup>
                        <xref ref-type="bibr" rid="ref50">50</xref>
                    </sup> Continuous authentication from behavioral biometrics becomes essential since it analyzes touch interaction patterns and keystroke dynamics along with voice patterns and typing speed, making network breaches more difficult for cybercriminals.
                    <sup>
                        <xref ref-type="bibr" rid="ref51">51</xref>
                    </sup> Biometrics serves as a key instrument for delivering improved accessibility while providing excellent user experience. The user experience becomes more convenient through biometric authentication since users obtain immediate and effortless access to mobile banking applications without needing passwords to remember. Security levels are enhanced through this system because users do not need to manage passwords. Financial inclusion grows stronger through biometric authentication because it enables users who lack literacy skills or disabilities to protect banking services by using their fingerprint or other traits instead of standard user authentication, such as passwords/PINs.
                    <sup>
                        <xref ref-type="bibr" rid="ref46">46</xref>
                    </sup>
                </p>
                <p>Biometric authentication users of mobile banking benefit from its advantages while dealing with privacy risks and security vulnerabilities, which include data protection and system protection issues.
                    <sup>
                        <xref ref-type="bibr" rid="ref52">52</xref>
                    </sup> Any unauthorized access to stored biometric information poses substantial risks to users because each person has permanent and distinctive data. To protect biometric data security banks, encryption advances in combination with blockchain-based storage systems and multiple authentication factors have been employed.
                    <sup>
                        <xref ref-type="bibr" rid="ref53">53</xref>
                    </sup>
                </p>
                <p>By integrating AI and ML, mobile banking authentication systems can gain the ability to detect more fraudulent transactions alongside the delivery of personalized banking service options to customers.
                    <sup>
                        <xref ref-type="bibr" rid="ref54">54</xref>
                    </sup> The future of mobile banking security is moving toward a safer and more efficient digital financial environment because biometric authentication maintains a balance between security and convenience and privacy.
                    <sup>
                        <xref ref-type="bibr" rid="ref55">55</xref>
                    </sup>
                </p>
            </sec>
            <sec id="sec8">
                <title>2.4 Overall rating</title>
                <p>The concept of mutual compensation enables authentication security by properly utilizing each authentication variable to eliminate their individual weaknesses (
                    <xref ref-type="table" rid="T1">
Table 1</xref>). A secure authentication system emerges when users provide PBA, KBA and BBA that protects against multiple types of security attacks. People trust the knowledge authentication type for its familiar design, yet this element remains exposed to password intrusion attacks.
                    <sup>
                        <xref ref-type="bibr" rid="ref56">56</xref>
                    </sup> When ownership requirements for physical tokens or devices are applied together with passwords, the system provides enhanced security even when a password becomes exposed.
                    <sup>
                        <xref ref-type="bibr" rid="ref57">57</xref>
                    </sup> The cost and risk exposure for the ownership element arises from losses connected to token or device disappearance or theft. Security measures benefit from the biometric element because it brings both security through uniqueness and convenience while belonging to the user. Strong protection of biometric data is essential to minimize password-related attacks while physical tokens remain necessary, yet the implementation leads to either positive or negative false negative outcomes.
                    <sup>
                        <xref ref-type="bibr" rid="ref58">58</xref>
                    </sup>
                </p>
                <p>Although the three authentication categories (KBA, PBA, and BBA)
                    <sup>
                        <xref ref-type="bibr" rid="ref16">16</xref>
                    </sup> each offer specific advantages, they leave gaps when used alone that can be exploited. KBA is simple but has the lowest security level in terms of phishing and brute-force attacks; PBA is a strong security mechanism based on use of one-time codes or tokens, but it is prone to device-loss attacks; BBA is a strong identity binding mechanism but raises privacy and hardware-cost issues. Thus, our analysis supports a hybrid multi-factor approach whereby complementary factors compensate for the weakness of each other. In environments that require high security, like mobile banking, a three-factor setup (password + token + biometric) offers the best balance of protecting against the theft and spoofing of credentials.
                    <sup>
                        <xref ref-type="bibr" rid="ref13">13</xref>
                    </sup> However, in lower risk or resource constrained environments a two-factor scheme (i.e. PIN + OTP) may provide sufficient security with better usability. This aligns with recent banking practices summarized in 
                    <xref ref-type="table" rid="T7">
Table 7</xref>, where most institutions adopt mixed MFA frameworks combining knowledge, possession, and inherence factors.</p>
            </sec>
        </sec>
        <sec id="sec9">
            <title>3. Methodology</title>
            <p>The Preferred Items for Reporting Systematic Reviews and Meta-Analyses (PRISMA) guidelines were first released more than a decade ago.
                <sup>
                    <xref ref-type="bibr" rid="ref59">59</xref>
                </sup> The PRISMA method assists researchers by providing standards for accurate reporting of systematic reviews and meta-analyses. Systematic reviews are considered by decision-makers in areas such as the IoT, computer security, smart homes, supply chains, industries, and other domains as important sources of information that are collected in a systematic and transparent manner.
                <sup>
                    <xref ref-type="bibr" rid="ref60">60</xref>
                </sup> Some of the PRISMA items have provided a comprehensive and systematic study of the applications of biometric authentication in the mobile banking sector.
                <sup>
                    <xref ref-type="bibr" rid="ref3">3</xref>
                </sup> The literature review in 
                <xref ref-type="fig" rid="f3">
Figure 3</xref> includes the most recent studies related to biometric authentication technology, which are used in mobile banking to increase security. The activities listed below have had a significant effect on the results of systematic surveys. Out of the total 180 references, 97 papers met the inclusion criteria and are analyzed as part of the evidence set. The remaining references are cited to provide general background, definitions, or contextual support but were not included in the systematic synthesis.</p>
            <fig fig-type="figure" id="f3" orientation="portrait" position="float">
                <label>
Figure 3. </label>
                <caption>
                    <title>Distribution of the 97 reviewed research papers by publication year (2020-2025), illustrating the growth trend in biometric research for mobile banking.</title>
                </caption>
                <graphic id="gr3" orientation="portrait" position="float" xlink:href="https://f1000research-files.f1000.com/manuscripts/191708/bb5c003e-4bf0-4abd-b3a4-a0493b4a6da1_figure3.gif"/>
            </fig>
            <sec id="sec10">
                <title>3.1 Research questions</title>
                <p>This research aims to evaluate the biometric authentication methods currently adopted for online mobile banking user access. Also, this research examines the effects of cyber threats on online banking user authentication and presents examples of biometric authentication systems used by major banks worldwide, also examines the advantages, disadvantages, aims and challenges through the following research questions:

                    <list list-type="order">
                        <list-item>
                            <label>1.</label>
                            <p>Which 
                                <bold>biometric authentication</bold> methods are currently used in mobile banking systems?</p>
                        </list-item>
                        <list-item>
                            <label>2.</label>
                            <p>What are the main 
                                <bold>security threats and vulnerabilities</bold> affecting biometric authentication in mobile banking?</p>
                        </list-item>
                        <list-item>
                            <label>3.</label>
                            <p>How do major banks worldwide 
                                <bold>implement and integrate biometric authentication</bold> into their mobile banking applications?</p>
                        </list-item>
                        <list-item>
                            <label>4.</label>
                            <p>What is the key 
                                <bold>usability, privacy, and user acceptance challenges</bold> related to biometric authentication in mobile banking?</p>
                        </list-item>
                        <list-item>
                            <label>5.</label>
                            <p>What are the 
                                <bold>limitations and future research directions</bold> in improving biometric-based authentication for secure and convenient mobile banking?</p>
                        </list-item>
                    </list>
                </p>
            </sec>
            <sec id="sec11">
                <title>3.2 Search strategy</title>
                <p>A collection of academic papers focused on biometric authentication served as the basis for our review. The selected time span begins on January 1, 2020, and ends on July 1, 2025. This stage involved focused examination of scientific digital libraries and databases alongside searches of keywords and reference management tools and search processes. The next sections delineate the processes described.</p>
            </sec>
            <sec id="sec12">
                <title>3.3 Scientific digital libraries</title>
                <p>The analysis took place through major English-language scientific digital libraries and databases. Science Direct, Scopus, IEEE and Google Scholar formed the database scope for this SLR.</p>
            </sec>
            <sec id="sec13">
                <title>3.4 Search for keywords</title>
                <p>The research questions of the SLR served as the foundation for creating the search keywords. The included figure presents alternative search terms. We have also added synonyms and alternatives. The synonym keywords are extracted from the corpus of online banking security related subjects in literature. The search query keywords appear in (
                    <xref ref-type="fig" rid="f4">
Figure 4</xref>) as they were applied to the digital libraries mentioned. To provide comprehensive coverage, the literature search was performed in four major databases: ScienceDirect, Scopus, IEEE, and Google Scholar.</p>
                <fig fig-type="figure" id="f4" orientation="portrait" position="float">
                    <label>
Figure 4. </label>
                    <caption>
                        <title>PRISMA flow diagram of the process of selecting and screening studies that were included in this systematic literature review.</title>
                    </caption>
                    <graphic id="gr4" orientation="portrait" position="float" xlink:href="https://f1000research-files.f1000.com/manuscripts/191708/bb5c003e-4bf0-4abd-b3a4-a0493b4a6da1_figure4.gif"/>
                </fig>
            </sec>
            <sec id="sec14">
                <title>3.5 Reference management</title>
                <p>The research utilized &#x201c;Mendeley Reference Manager&#x201d; v2.132.0
                    <sup>
                        <xref ref-type="bibr" rid="ref61">61</xref>
                    </sup> to serve as the reference management system for collecting and handling retrieved scientific papers. Using Mendeley Reference Manager v2.132.0 allowed researchers to perform quick document management features on their internal database.</p>
            </sec>
            <sec id="sec15">
                <title>3.6 Selection of the study</title>
                <p>We examined the research papers that led to the selection of suitable content for our final evaluation using specified inclusion and exclusion criteria. We examined each paper to check its application toward the study&#x2019;s goals. The review used predefined inclusion criteria to identify and analyze suitable study materials, which led to reliable and valid research outcomes. All the results of this research stem from the number of papers that fulfilled the established criteria permitting their entry into our research.</p>
                <p>

                    <bold>3.6.1 Exclusion criteria</bold>
                </p>
                <p>All studies that were not published in the English language were excluded. Additionally, book chapters, reviews, periodical articles, theses and duplicate papers are excluded.</p>
                <p>

                    <bold>3.6.2 Inclusion criteria</bold>
                </p>
                <p>The inclusion criterion was that the studies were published in English. Only journal publications and conferences that publish studies were included. The biometric authentication in mobile banking research studies covers the methods used in mobile banking, threats, strengths and weaknesses, as well as the methods used in major international banks and user usability challenges and limitations.</p>
                <p>

                    <bold>3.6.3 Results</bold>
                </p>
                <p>The research process resulted in 97 articles through the elimination of duplicate and unrelated studies. The preferred items for reporting systematic reviews and meta-analyses. Two complementary search queries were applied to ensure coverage of biometric authentication keywords (
                    <xref ref-type="fig" rid="f4">
Figure 4</xref>).</p>
                <p>The screening process based on PRISMA is illustrated in 
                    <xref ref-type="fig" rid="f4">
Figure 4</xref>. A total of 913 records were identified in the four databases (Science Direct = 394, Scopus = 152, IEEE = 174, Google Scholar = 193). After elimination of 187 duplicates, 726 unique papers were screened. Following title and abstract screening, 523 papers were excluded, and 203 full-text articles were eligible for further screening. Based on the inclusion and exclusion criteria, 106 papers were deemed ineligible, and 97 studies were finally included in this systematic review.</p>
            </sec>
        </sec>
        <sec id="sec16">
            <title>4. Analysis and Discussion</title>
            <p>This section presents various data samples drawn from relevant studies and provides an evaluation and interpretation of the SLR findings.</p>
            <sec id="sec17">
                <title>4.1 Biometric authentication methods used in mobile banking</title>
                <p>This section provides an answer to research 
                    <bold>RQ1</bold>: &#x201c;Which 
                    <bold>biometric authentication</bold> methods are currently used in mobile banking systems?&#x201d;. The gathered literature appears in 
                    <xref ref-type="table" rid="T3">
Table 3</xref> for 41 studies that are analyzed in three parts: description, year and reference. The taxonomy in 
                    <xref ref-type="fig" rid="f5">
Figure 5</xref> illustrates different online payment biometric approaches, which are classified as BBA and MFA. The taxonomy structure enables a complete comprehension of the different authentication approaches, which demonstrate that all current methods operating in online banking use biometrics.</p>
                <table-wrap id="T3" orientation="portrait" position="float">
                    <label>
Table 3. </label>
                    <caption>
                        <title>Summary of sample data of the chosen studies (2020-2025) to 41 study, outlining each of the biometric authentication methods, its aims, and originated sources.</title>
                    </caption>
                    <table content-type="article-table" frame="hsides">
                        <thead>
                            <tr>
                                <th align="left" colspan="1" rowspan="1" valign="top">Year</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Ref.</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Description</th>
                            </tr>
                        </thead>
                        <tbody>
                            <tr>
                                <td align="left" colspan="1" rowspan="8" valign="top">2020</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref52">52</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">A MFA for the Smart Online Banking System (SOBS) uses face recognition authentication (FRA) or biometric fingerprint authentication (BFA) with digital signatures are proposed to enable bank customers to complete transactions.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref62">62</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper proposed a novel approach based on deep neural network to extract facial features.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref46">46</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This research aims to enhance security authentication based on voice recognition, can be utilized for speaker identification, regardless of the language being spoken.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref50">50</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This research introduces a secure biometric online banking system which uses three-factor authentication to evaluate service requests through banking portals. These factors are (Password, random the system shows images to users who need to select three familiar images within the interface images and fingerprints).</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref17">17</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The authors propose an authentication model for securing mobile banking applications based on hand-based biometric authentication.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref64">64</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Online banking authentication gets a supervised Machine Learning-based framework from the authors who developed it for continuous behavioral biometric user identification. This framework represents an improved variation of the &#x201c;Biotouch&#x201d; technology for touch dynamics identification.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref68">68</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The paper introduces a biometric authentication system that uses two methods combining Biometric technology with proximity sensors to provide secure robust and flexible authentication. Biometric fingerprint identification security techniques unite with shuffling keypad methods to boost the security strength in Automated Teller Machines (ATM) operations.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref63">63</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">A new authentication system uses contactless vascular biometrics to recognize wrist veins as part of the modality system.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="8" valign="top">2021</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref69">69</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper proposed an application for online banking for overcoming the vulnerabilities present in current online banking applications. This application based on facial recognition and proxy detection including &#x201c;tripleDES&#x201d; encryption to enhance the security of the work.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref28">28</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper presents framework based on mobile screen swipes and touch data as a possible verification method for user authentication in mobile banking.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref70">70</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The authors presented an authentication model using Fingerprint scanning biometric to provide access to ATM machine.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref71">71</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper introduces a novel approach to anti-spoofing third-factor authentication method for (ATMs) which uses behavioral-based biometrics Keypad Typing Rhythm Identifier (KTRID).</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref72">72</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">In this paper, the authors present two-level combined authentication method (2 L-IAM). At the first level, the end user login to their online Banking port using either PIN or Fingerprint Matching (FPM). At the second level, end users are authenticated by face recognition (FR) should they initiate a transaction classified as sensitive.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref73">73</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This study incorporates user biometrics based on either fingerprint or facial recognition obtain and verify data from the Internet of Things (IoT) device through bank-registered authentication methods which include IP address tracking and digital certificates.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref25">25</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This research develops a framework using Elliptical Curve Cryptography (ECC) within Virtual Private Network (VPN) security for performing safe financial operations through MFA using password and voice recognition based on both authentication codes and biometric identification systems.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref74">74</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The DAKOTA framework proposes mobile banking security improvement through behavioral biometrics authentication methods based on sensor and touch screen-based continuous authentication. Touch screen data and motion sensor data serve distinct roles to increase application security.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="12" valign="top">2022</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref11">11</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper proposes a new authentication framework for detecting FingerVein (FV) is formed by the work for safe authorization utilizing Enhanced Sigmoid Reweighted based Convolutional Neural Network (ES- &#x201c;RwCNN&#x201d;).</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref51">51</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper proposed continuous authentication on mobile devices incorporate touchscreen&#x2013;swipe interactions without limit as well as keyboard input timing patterns.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref75">75</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">A novel approach to face anti-spoofing introduces a modified combination of differences of Gaussian (DOG) and angle-difference-ternary correlation-pattern (ADTCP) descriptors.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref32">32</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper demonstrates an authentication framework which employs novel pupil segmentation through a combination of multiscale gray-level co-occurrence matrix (MSGLCM) with multirange circle Hough transform (MRRCHT). The pupil texture extraction proceeds accurately when using this segmentation method followed by Hough transform application to the outer Iris region.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref76">76</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The authors proposed a multimodal Self-ONN based on Raw Electroencephalogram (EEG) and keystroke data.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref77">77</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The research proposed an unavoidable authentication approach through mobile device fingerprinting-based identifier and authenticator for mobile banking applications (MDFIA). MDFIA functions as the name for this authentication system.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref78">78</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper proposed a complete solution to enhancement atm security and privacy by using facial authentication technique.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref79">79</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">In this paper, the authors developed an application for online system authentication like mobile banking based on face recognition and text extraction.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref80">80</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The paper proposes a concept of using a person's vein pattern and OTP/PIN as a method of contactless authentication. It is an extremely safe verification procedure because no two people in the world, not even identical twins, can have the same palm vein structure or pattern. Additionally, it is more secure because it is nearly impossible to replicate the palm vein pattern.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref49">49</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The authors proposed a web-based application authentication system for bank employees using passwords, fingerprints and OTP.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref81">81</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The article presented a new real-time contactless palm vein recognition system MPSNet specifically developed for smartphones with red, green and blue image functionality. A standard back camera with an LED flashlight installed in smartphones enables the system to both detect and identify palm images.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref82">82</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper introduces an authentication method with passwordless which includes smartphone-based face recognition and Bluetooth-Near Field Communication technology. The system functions through real-time face biometric authentication and secure NFC token transfer as well as Bluetooth detection of device connection for robust anti-phishing and anti-spoofing security that does not need passwords.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="5" valign="top">2023</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref83">83</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The article establishes a user authentication methodology which utilizes sensor measurements from smartphone devices along with multiple behavioral patterns along with machine learning strategies to address the identified issues. The proposed approach uses device touchscreen combined with motion sensors to obtain behavioral biometric data.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref84">84</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper proposes a new framework for continuous authentication for smartphones based on behavioral-based biometric by utilizing for user interaction on touchscreen.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref30">30</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The proposed method in this paper develops a secure virtual smart card through digital encryption techniques with biometric verification (using Fingerprint) and a QR code and passwordless capabilities enabling safe access to healthcare systems and e-banking.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref85">85</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The study established a multilayer 5FA system that selected Password/PIN together with OTP and Fingerprint along with Media Access Control (MAC) Address and Time-Based location to create a stable security solution for online banking.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref86">86</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Authors propose a framework based on dynamic signatures for authentication which called: a &#x201c;Cloud-based mobile biometric authentication framework (BAMCloud)&#x201d;.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="3" valign="top">2024</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref13">13</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper proposed a MFA for securing mobile banking system that combines passwords, Face recognition and OTP to verify users.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref87">87</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper proposed a new framework of mobile payment for user verification depending on face ID recognition based on deep learning.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref88">88</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper presents an android mobile banking application development. The application implements facial recognition technology together with PIN based templates through the Grassmann algorithm approach. The system becomes accessible for users to perform banking operations only after completing two authentication steps.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="5" valign="top">2025</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref89">89</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">The authors developed an authentication system based on processing ECG (electrocardiogram) signals on mobile devices to achieve high levels of accuracy. The process uses distinct qualities of ECG signals to deliver safe mobile device authentication which demonstrates that biometric authentication can boost security protocols.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref90">90</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">A new deep learning framework described in this paper connects three different biometric modes through electrocardiogram (ECG) with fingerprint features and finger knuckle print (FKP). The combined application of these methods enables an authentication system that reaches high levels of security and efficiency for banking and healthcare applications and higher-security applications.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref91">91</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">In this project a machine learning authentication system will be developed to protect online voting using facial and fingerprint recognition as security measures for better system protection. The system consists of two fundamental elements which include both the machine learning authentication mechanism and web-based voting platform.</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref92">92</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This study proposes a new framework based on MFA which combines three types of fusion technique (feature-level, score-level, and decision level) integrated into three types of biometrics modalities (fingerprint, facial recognition, and iris).</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref93">93</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">This paper presents a hybrid face biometric authentication that integrates the strength of deep learning specifically CNN and (ResNet) with Local Binary Pattern (LBP) method.</td>
                            </tr>
                        </tbody>
                    </table>
                </table-wrap>
                <fig fig-type="figure" id="f5" orientation="portrait" position="float">
                    <label>
Figure 5. </label>
                    <caption>
                        <title>Biometric authentication taxonomy in internet banking, methods based on knowledge, possession and biometrics factors.</title>
                    </caption>
                    <graphic id="gr5" orientation="portrait" position="float" xlink:href="https://f1000research-files.f1000.com/manuscripts/191708/bb5c003e-4bf0-4abd-b3a4-a0493b4a6da1_figure5.gif"/>
                </fig>
                <p>

                    <bold>4.1.1 Biometric authentication methods</bold>
                </p>
                <p>The BBA category uses two types of biometrics, including physical traits, which consist of fingerprints, facial IDs, irises, hands and veins,
                    <sup>
                        <xref ref-type="bibr" rid="ref11">11</xref>,
                        <xref ref-type="bibr" rid="ref17">17</xref>,
                        <xref ref-type="bibr" rid="ref32">32</xref>,
                        <xref ref-type="bibr" rid="ref62">62</xref>,
                        <xref ref-type="bibr" rid="ref63">63</xref>
                    </sup> alongside behavioral traits, which include voice patterns,
                    <sup>
                        <xref ref-type="bibr" rid="ref46">46</xref>
                    </sup> &#x201c;biotuch&#x201d; (dynamic/continuous touch authentication),
                    <sup>
                        <xref ref-type="bibr" rid="ref28">28</xref>,
                        <xref ref-type="bibr" rid="ref64">64</xref>
                    </sup> and tapping behavior. The other behavioral biometric trait was implemented by,
                    <sup>
                        <xref ref-type="bibr" rid="ref65">65</xref>
                    </sup> who proposed a new activity recognition model for smartphone applications based on physical activities that are detected by collecting data from different sources, such as biometric sensors or body-worn sensors. The authentication system uses unique biological traits from users to create a high level of security protection. The authentication approach of behavioral biometrics shows great reliability in authorization but creates problems involving data protection and storage security requirements. Organizations use biometric information in addition to developing preventative solutions to combat unapproved system access and illegal information handling.
                    <sup>
                        <xref ref-type="bibr" rid="ref66">66</xref>
                    </sup> Various users sometimes encounter difficulties when organizations attempt to establish biometric authentication systems. Online banking system implementations of biometric technology require thorough consideration of hardware needs together with quality standards and acceptance levels from users.
                    <sup>
                        <xref ref-type="bibr" rid="ref67">67</xref>
                    </sup> 
                    <xref ref-type="table" rid="T3">
Table 3</xref> provides a description and year for each study.</p>
                <p>

                    <bold>4.1.2 Integration of biometrics within MFA</bold>
                </p>
                <p>Any authentication system built with a single authentication factor remains vulnerable to security threats regardless of the use of fingerprint scans, facial recognition, palm recognition, passwords or PIN. Authentication system developers develop their systems via integrated MFA.
                    <sup>
                        <xref ref-type="bibr" rid="ref94">94</xref>
                    </sup> The integration of BBA methods, including fingerprints, faces, irises, hands, veins and behavioral biometrics, serves as the main authentication component for the MFA and 2FA systems.
                    <sup>
                        <xref ref-type="bibr" rid="ref95">95</xref>
                    </sup> PBA authentication methods consist of OTPs combined with tokens and NFC
                    <sup>
                        <xref ref-type="bibr" rid="ref96">96</xref>
                    </sup> and operate when enhanced with other supporting factors. Various security elements, such as proxies, QR codes, geolocation, IP address MAC addresses and &#x201c;CAPTCHA,&#x201d; have joined the MFA and 2FA approaches to increase security measures. Multiple authentication methods used together by banks create enhanced system security, which implements multiple defense barriers for attackers to break. The security system becomes protected by multiple layers if attackers gain access to one part because the remaining layers shield the system from further attacks.
                    <sup>
                        <xref ref-type="bibr" rid="ref97">97</xref>,
                        <xref ref-type="bibr" rid="ref98">98</xref>
                    </sup> Users must first type their password before submitting their fingerprint for authorization purposes during system access. This authentication logic increases the security level by making it difficult for attackers to compromise the system despite knowing the user password.
                    <sup>
                        <xref ref-type="bibr" rid="ref99">99</xref>
                    </sup> Online banking can establish a secure and all-encompassing authentication system through 2FA and MFA, which reduces the threats caused by depending on a single authentication mechanism. The analysis of previously discussed online banking authentication approaches that can be combined with biometric factors yields the results in 
                    <xref ref-type="table" rid="T5">
Table 5</xref>, which presents their strengths together with weaknesses. Based on 41 studies, this research examines the use of biometric authentication methods in online mobile banking, including their role within MFA. These methods are presented in 
                    <xref ref-type="table" rid="T4">
Table 4</xref> and 
                    <xref ref-type="fig" rid="f5">
Figure 5</xref>. 
                    <xref ref-type="table" rid="T4">
Table 4</xref> provides a comprehensive list of these authentication strategies, complete with their corresponding references.</p>
                <table-wrap id="T4" orientation="portrait" position="float">
                    <label>
Table 4. </label>
                    <caption>
                        <title>Overview of biometric integrated within the MFA techniques used in the studies reviewed with modalities used and references provided.</title>
                    </caption>
                    <table content-type="article-table" frame="hsides">
                        <thead>
                            <tr>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Authentication Method</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Password</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
PIN</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
OTP</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Fingerprint</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Face</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Iris</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Palm/Hand</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Vein</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Voice</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Continuous Authentication</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Signature</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
MAC</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Location</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Captcha</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Proxy</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
QR</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
EEG</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
ECG</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Keystroke</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Keypad</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
IP Address</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
FKP</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
NFC</th>
                            </tr>
                        </thead>
                        <tbody>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Ref.</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref52">52</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref62">62</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref46">46</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref64">64</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref11">11</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref13">13</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref86">86</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref28">28</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref70">70</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref72">72</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref25">25</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref73">73</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref51">51</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref74">74</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref17">17</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref87">87</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref85">85</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref50">50</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref69">69</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref30">30</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref71">71</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref84">84</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref75">75</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref32">32</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref76">76</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref83">83</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref77">77</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref78">78</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref79">79</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref80">80</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref49">49</xref>
                                    </sup>
                                </td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref88">88</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref89">89</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref90">90</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref91">91</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref92">92</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref93">93</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref81">81</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref68">68</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref63">63</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref82">82</xref>
                                    </sup>
                                </td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td colspan="1" rowspan="1"/>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>O</bold>
</td>
                            </tr>
                        </tbody>
                    </table>
                </table-wrap>
                <p>
                    <xref ref-type="fig" rid="f5">
Figure 5</xref> presents a detailed taxonomy scheme of authentication methods that were specifically developed to protect online banking systems. The taxonomy system groups authentication methods into four basic categories, including the PBA, BBA and KBA approaches and MFA methods. The BBA is divided into two parts: physical biometrics, including fingerprints, faces, irises, hands/pales and veins, and behavioral traits, including voices, touch screens, EEGs, keypads, signatures and ECGs. The KBA consists of a password PIN. The PBA includes OTP and NFC. Other types of authentications include MAC address, IP address, CAPTCHA, QR, proxy and location. The MFA introduced a good security solution by combining the 2FA or MFA from the previously mentioned methods, which illustrates the wide range of security methods used for user verification. This research focuses heavily on biometric authentication by providing detailed information about fingerprints, facial recognition, irises, palm, voice recognition methods, touchscreens, and keystroke dynamics as behavioral verification indicators. This taxonomy explains MFA, which requires users to combine different authentication components such as passwords together with OTP or fingerprints in combination with the MAC address to increase security. The taxonomy establishes itself as a beneficial reference for recognizing the complex authentication methods that modern digital finance systems implement.</p>
                <p>Among all the biometric authentication methods face, fingerprint, password, PIN and continuous touch screen authentication methods are the most used since they appear 15, 13, 7, 6 and 6 times, respectively, in total. OTPs and veins appeared 4 times each, and voice was used only 2 times throughout the given data and iris. The authentication system uses several types of verification, including CAPATCHA and keypads, which appear in 3 cases each. One mention exists for each of these authentication methods: palm, keystroke, time-based location, MAC address, IP address, proxy, QR, signature, EEG, ECG, FKP and NFC. MFA security becomes more effective because face and fingerprint detection are used multiple times with additional KBA, such as password/PIN and OTP. Multiple security layers protect sensitive online banking data since MFA operates together with 2FA by employing several authentication techniques. 
                    <xref ref-type="fig" rid="f6">
Figure 6</xref> presents the frequency of authentication methods in biometric authentication methods contexts that are implemented in the banking sector.</p>
                <fig fig-type="figure" id="f6" orientation="portrait" position="float">
                    <label>
Figure 6. </label>
                    <caption>
                        <title>Frequency distribution of authentication techniques used in biometric systems among studied mobile banking studies.</title>
                    </caption>
                    <graphic id="gr6" orientation="portrait" position="float" xlink:href="https://f1000research-files.f1000.com/manuscripts/191708/bb5c003e-4bf0-4abd-b3a4-a0493b4a6da1_figure6.gif"/>
                </fig>
                <p>This study presents a comprehensive and well-structured systematic literature review on biometric in online mobile banking systems, which offers valuable taxonomy, security threat analysis, and insights into global banking practices. Its key achievement is to synthesize the recent research (2020-2025) and provide a clear classification of authentication methods and challenges. So, the absence of quantitative performance and empirical validation comparisons limits its practical depth. Overall, the study provides a strong theoretical foundation and serves as a reliable reference for both academia and industry.</p>
                <p>

                    <bold>4.1.3 Evaluation of the methods of mobile banking</bold>
                </p>
                <p>
                    <xref ref-type="table" rid="T5">
Table 5</xref> analyzes different authentication methods from our study based on their strengths and weaknesses and corresponding research sources. Simple security systems based on passwords and PINs continue to be popular because they are quick to set up while attackers take advantage of vulnerabilities that result in brute-force attacks and phishing schemes as well as shoulder surfing. User authentication through PIN combined with facial recognition delivers better usability while providing touchless access at the cost of reduced security effectiveness. The implementation of passwords, fingerprints, faces, OTP and locations coupled with MAC address recognition increases security, whereas the use of external communications remains a weak point, and spoofing presents a persistent threat. Biometric authentication through fingerprint scans mixed with facial identification combined with iris analysis creates secure user authentication solutions despite their limitations in terms of external conditions and the need for specific hardware systems. Emerging techniques such as EEG and touchscreen behavior offer unique behavioral or physiological markers but face limitations in practicality and consistency. MFA represents a powerful security method that achieves adequate protection from MFA, while users experience decreased convenience and dependence on devices during authentication processes. Different digital systems require customized authentication strategies that depend on their unique operational needs according to this analysis.</p>
                <table-wrap id="T5" orientation="portrait" position="float">
                    <label>
Table 5. </label>
                    <caption>
                        <title>Comparison of the authentication strategies employed in mobile banking (2020-2025), with their key strengths and weaknesses.</title>
                    </caption>
                    <table content-type="article-table" frame="hsides">
                        <thead>
                            <tr>
                                <th align="left" colspan="1" rowspan="1" valign="top">Method</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Strengths</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Weaknesses</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Reference</th>
                            </tr>
                        </thead>
                        <tbody>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Password</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Simple to implement and widely used</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Susceptible to brute-force, phishing, reuse attacks</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref60">60</xref>,
                                        <xref ref-type="bibr" rid="ref100">100</xref>,
                                        <xref ref-type="bibr" rid="ref101">101</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>PIN</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Quick, minimal memory load</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Easy to observe (shoulder surfing); often reused</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref101">101</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Graphical Password</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">More memorable; harder to guess</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Usability issues; vulnerable to observation</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref102">102</xref>,
                                        <xref ref-type="bibr" rid="ref103">103</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>QR Code</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fast, contactless authentication</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Can be used for phishing; requires camera</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref104">104</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>OTP</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Temporary and time-bound; improves security</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Phish able; reliant on delivery medium (SMS/email)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref101">101</xref>,
                                        <xref ref-type="bibr" rid="ref105">105</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>MAC Address</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Device specific; useful in background authentication</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Spoof able; not user-unique
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref3">3</xref>,
                                        <xref ref-type="bibr" rid="ref106">106</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>CAPTCHA</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Prevents bots; low cost</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Poor usability; accessibility issues</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref107">107</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Proxy Detection</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Identifies IP masking attempts</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Can yield false positives; circumventable</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref108">108</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Geolocation</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Provides context-aware authentication</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Spoof able; raises privacy concerns</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref109">109</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Signature Verification</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Familiar; good for legal systems</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Inconsistent; easy to forge</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref110">110</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>NFC</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fast, contactless, widely used in mobile payments</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Limited range; vulnerable to relay attacks</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref111">111</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>2FA/MFA</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High security combines multiple factors</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Less convenient; requires multiple devices or tokens</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref3">3</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Fingerprint</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Convenient; widely supported in devices</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Not reliable when wet/damaged; spoof able</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref49">49</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Face ID</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Touchless; user-friendly
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Can be spoofed by photos or masks; lighting affects accuracy</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref12">12</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Iris Scan</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Highly accurate and unique</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Expensive hardware; less user-friendly
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref112">112</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Palm Recognition</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High accuracy; touchless</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Requires specialized scanners</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref17">17</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Voice Recognition</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">No touch input; good for phone auth</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Affected by background noise and illness</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref46">46</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Vein Pattern</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Internal biometric; hard to replicate</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Requires IR scanners; costly</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref80">80</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>EEG (Brainwave)</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Highly secure and unique</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Impractical; requires specialized equipment</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref76">76</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Keystroke</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">No additional hardware needed</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Inconsistent due to emotional state or fatigue</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref2">2</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Touchscreen (swipe, tap, scroll)</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Continuous passive auth; behavioral uniqueness</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Variability in usage, mood, and devices</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref64">64</xref>
                                    </sup>
                                </td>
                            </tr>
                        </tbody>
                    </table>
                </table-wrap>
                <p>The results summarized in 
                    <xref ref-type="table" rid="T5">
Table 5</xref> emphasize that each category of authentication provides different benefits and weaknesses and confirms the fact that there is no one method which provides total protection against the wide range of cyber threats in the mobile banking environment. Instead, a combined optimization of security strength, usability and implementation cost is required to achieve practical and scalable protection. KBA methods, including passwords and PINs, are the most common because they are so simple and easy to implement. However, they are also the weakest layer of defense, because they are highly vulnerable against brute-force, phishing, and credentials-reuse attacks.
                    <sup>
                        <xref ref-type="bibr" rid="ref3">3</xref>,
                        <xref ref-type="bibr" rid="ref100">100</xref>,
                        <xref ref-type="bibr" rid="ref101">101</xref>
                    </sup> Moreover, users often use predictable passwords or reuse the same passwords for different platforms, which makes compromise much easier. PINs are faster to enter, and they have very little cognitive load, but they are short and vulnerable to observation (shoulder surfing) which limits their effectiveness on their own.</p>
                <p>PBA methods such as OTP, NFC-based tokens provide stronger protection with an introduction of time factor or hardware-binding factor. OTPs greatly decrease the chances of the credential replay but rely on the reliability of the communication and can be decrypted on their way or stolen via a SIM-swap attack. NFC cards and hardware tokens provide a physical guarantee although they involve the user carrying or maintaining an external tool, increasing usability and logistical costs.
                    <sup>
                        <xref ref-type="bibr" rid="ref111">111</xref>
                    </sup>
                </p>
                <p>BBA methods with reference to the fingerprint and facial recognition processes provide an ideal compromise between security and convenience, that is why they quickly become standard in any large mobile banking application.
                    <sup>
                        <xref ref-type="bibr" rid="ref12">12</xref>,
                        <xref ref-type="bibr" rid="ref49">49</xref>
                    </sup> Fingerprint recognition is more accurate and faster to verify, and facial recognition can be used contactless and more conveniently. However, they are vulnerable to the quality of sensors, lighting, and spoofing as well as cause serious privacy issues because biometric identifiers are not reversible once compromised.</p>
                <p>More expensive modalities, like iris, vein or palm recognition, are very resistant to anti-spoofing and very accurate, but expensive specialized sensors preclude their mass-market use. For example, routine account access may rely upon simple 2FA such as PIN + OTP and high value or cross-border transactions may require full MFA including a biometric check. This strategy offers both convenience and high level of security.</p>
                <p>Moreover, incorporating AI-based behavioral monitoring into the MFA pipelines will enable a continuous risk evaluation process and allow making real-time adjustments without undermining the usability. Generally, the comparative synthesis implies that the most resilient way of authentication of mobile banking is hybrid, context-aware and adaptive MFA architectures. By combining the desirable attributes of the various factors such as password familiarity, token possession and biometric factors, but at the same time balancing the weaknesses of these factors, it will be possible to ensure high assurance and acceptance by the user for banks. The findings of this comparative evaluation reflect contemporary trends in international banking practice, in which the most important institutions are increasingly using biometric and MFA in tandem to enhance resilience against changing cyber threats.
                    <sup>
                        <xref ref-type="bibr" rid="ref114">113</xref>,
                        <xref ref-type="bibr" rid="ref115">114</xref>
                    </sup>
                </p>
                <p>Although the heterogeneity of the reviewed studies made it impossible to conduct a complete quantitative meta-analysis, a systematic summary of the reported performance ranges was built to support the quantitative patterns and trends of biometric modalities deployed on mobile devices. The summarized values of false acceptance rate (FAR), false rejection rate (FRR), and equal error rate (EER) - and indication whether liveness detection and spoofing resistance mechanisms were used - are shown in 
                    <xref ref-type="table" rid="T6">
Table 6</xref>, which is for studies published between 2020 and 2025.</p>
                <table-wrap id="T6" orientation="portrait" position="float">
                    <label>
Table 6. </label>
                    <caption>
                        <title>Summary of reported biometric and multimodal authentication systems in recent literature, highlighting their typical datasets or devices, reported EER/FAR/FRR rates, accuracy, presence of liveness detection, and spoofing resistance levels.</title>
                    </caption>
                    <table content-type="article-table" frame="hsides">
                        <thead>
                            <tr>
                                <th align="left" colspan="1" rowspan="1" valign="top">Typical dataset/Device</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
EER / FAR/FRR (%)</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Accuracy %</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Liveness detection</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Spoofing resistance</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Ref.</th>
                            </tr>
                        </thead>
                        <tbody>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Prototype survey (170 users, Brunei)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Medium</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref52">52</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">CAS-PEAL DB (99k images, 1040 users)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">98.52</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref62">62</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom dataset (23 users), SecuGen scanner</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref50">50</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">HKPU 3D/2D Hand DB (570 samples)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">94.7&#x2013;100</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Moderate</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref17">17</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom app (51 users, Android sensors)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">1.88&#x2013;9.85/ &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">82.5&#x2013;98.2</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Moderate&#x2013;High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref64">64</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">MFS100 Sensor, Simulated ATM</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">100</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Basic)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref68">68</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">UC3M-CV2 (Smartphone NIR camera)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">6.82&#x2013;18.7/ &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Partial (No PAD)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref63">63</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom Dataset (20 img/user, smartphone)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">97</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Proxy detection)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref69">69</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Prototype Web Portal + Survey (n = 170)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Moderate</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref72">72</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">IoT Prototype (Design Science)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref73">73</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Simulated Cloud Banking Prototype (VPN)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Partial (Inherent)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Strong</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref25">25</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom dataset (45 users, Samsung/Xiaomi)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">3.5/ &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">~99</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref74">74</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014;/2.35</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">97.05</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Inherent)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref11">11</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">13 user datasets (Nexus 7 tablets)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">~0.1/ &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Up to 100</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Implicit)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref51">51</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">NUAA, MSU-MFSD, Replay-Attack DBs</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">1.57/ &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">99.03</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Texture-based)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref75">75</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">CASIA v4, MMU V2</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">0.44/ &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">87.7&#x2013;94.5</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Implicit)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref32">32</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom ATM dataset (Raspberry Pi)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2248;82&#x2013;85</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Real-time)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Low&#x2013;Moderate</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref78">78</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Real user documents (Web portal)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Partial (Live capture)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Moderate&#x2013;High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref79">79</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">NIR Scanner Prototype (Raspberry Pi)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High (&#x2265;98)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Contactless)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref80">80</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom Android app (15 users)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2248;90</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Moderate</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref49">49</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Smartphone RGB cameras (NTUST, XJTU DBs)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">0.49/ &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2248;99</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Live capture)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Very High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref81">81</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Android (BLE/NFC); MobileFaceNet (MS-Celeb DB)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Real-time)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref82">82</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">HMOG dataset (100 users, Galaxy S4)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">3.35/&#x2014;/ &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">98.75% (F1)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Implicit)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref83">83</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Serwadda et al. dataset (Smartphones)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">0.179/ &#x2014; /&#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">89</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Moderate&#x2013;High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref84">84</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom mobile app (IoT/Healthcare)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; /&#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Mutual auth.)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref30">30</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom mobile/web prototype (Firebase)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Context-aware)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref85">85</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom dataset (Smartphones/Tablets)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">0.24/ &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">96.23%</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Dynamic)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref86">86</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Prototype app (Android + Firebase)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Context-aware)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref13">13</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">AR, MUCT DBs + mobile frames</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">99.85</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Real-time)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref87">87</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom Android app (Razorpay API)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; /0.28</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2248;97&#x2013;98</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Real-time)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Moderate&#x2013;High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref88">88</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">ECG-ID, Heartprint, Custom BMD101 DBs</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">5.61/ &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">94.39</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (Inherent)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Very High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref89">89</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Synthetic DBs (PhysioNet, SOCOFing, IIT)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">0.20 / 0.20/0.21</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">99.80</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (ECG validation)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Very High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref90">90</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom Kaggle dataset (Web platform)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">98.0</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Moderate</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref91">91</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">LFW, FVC2004, CASIA, UBIRIS DBs</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">0.085/ 0.02/0.15</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">99.47</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Yes (DL-based PAD)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Very High</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref92">92</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Custom dataset (not stated)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&#x2014; / &#x2014; / &#x2014;</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">&gt;98</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">N/A</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Moderate</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref93">93</xref>
                                    </sup>
                                </td>
                            </tr>
                        </tbody>
                    </table>
                </table-wrap>
                <p>As shown in 
                    <xref ref-type="table" rid="T6">
Table 6</xref>, most of the reported biometric authentication systems after 2020 have an accuracy rate of greater than 95% and a number of multimodal and deep learning-based approaches have achieved EER values below 1%. However, almost half of the discussed studies failed to report FAR/FRR metrics and only a limited set of studies explicitly used liveness detection or anti-spoofing mechanisms. This suggests that while accuracy has improved significantly from mobile-based biometric systems, issues of presentation attack resistance and real-world scenarios of spoofing remain a major research gap.</p>
            </sec>
            <sec id="sec18">
                <title>4.2 Threat-facing mobile banking</title>
                <p>Internet banking provides users with efficient convenience but remains at risk from multiple cybersecurity threats, which endanger both financial service integrity and confidentiality as well as system availability.
                    <sup>
                        <xref ref-type="bibr" rid="ref116">115</xref>,
                        <xref ref-type="bibr" rid="ref117">116</xref>
                    </sup> The financial sector poses three prominent security threats against banking consumers, which include phishing scams that trick customers to disclose sensitive data as well as malware intrusions stealing control of devices for login interception
                    <sup>
                        <xref ref-type="bibr" rid="ref118">117</xref>
                    </sup> and man-in-the-middle (MiTM) attacks that break communication between customers and banking institutions. Ransomware attacks,
                    <sup>
                        <xref ref-type="bibr" rid="ref119">118</xref>
                    </sup> along with brute force methods and credential stuffing, exploit password weaknesses by targeting ordinary users who repeat their passwords across different accounts. Moreover, social engineering methods
                    <sup>
                        <xref ref-type="bibr" rid="ref120">119</xref>
                    </sup> allow users to surrender their confidential information. Security threats affect both personal users and cause substantial damage to financial institution reputation and operational stability. We provide answers to 
                    <bold>RQ2</bold> in this section: &#x201c;What are the main 
                    <bold>security threats and vulnerabilities</bold> affecting biometric authentication in mobile banking?&#x201d;. These studies include:</p>
                <p>

                    <bold>4.2.1 Malware attacks</bold>
                </p>
                <p>Mobile banking malware attacks have become increasingly dangerous because smartphone users continually increase their banking activities on mobile devices. The mobile-specific malware category includes banking Trojans and fake banking applications, which lead to theft of login data while also intercepting SMS authentication codes through screen overlay tactics.
                    <sup>
                        <xref ref-type="bibr" rid="ref121">120</xref>
                    </sup> The threats take advantage of users downloading harmful applications together with deceitful links that imitate genuine banking platforms. The protection of mobile banking needs strong security measures and app store monitoring while offering user education programs since mobile users demonstrate limited security awareness and malware persists in adapting.
                    <sup>
                        <xref ref-type="bibr" rid="ref100">100</xref>,
                        <xref ref-type="bibr" rid="ref122">121</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.2.2 Man-in-the-Middle (MiTM) attacks</bold>
                </p>
                <p>The (MiTM) attack allows cybercriminals to intercept communications between two parties while they cannot detect the security threat. Internet senders become vulnerable to cybercriminals through MiTM attacks, as attackers intercept their sent sensitive information, including login credentials and transaction details, during transmission. Online attackers take advantage of unsecured networks particularly well to launch attacks against public Wi-Fi networks because these networks present communication opportunities. The combination of SSL/TLS encryption protocols with safe programming practices and user training about risk networks makes sensitive banking information secure during online financial activities.
                    <sup>
                        <xref ref-type="bibr" rid="ref56">56</xref>,
                        <xref ref-type="bibr" rid="ref123">122</xref>,
                        <xref ref-type="bibr" rid="ref124">123</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.2.3 Replay attack</bold>
                </p>
                <p>An attacker generates fraud by intercepting authentic transmission data to fool an intended recipient into taking actions that might include transaction authorization. The fraudulent method of playing replays allows attackers to pose as victims and redirect transaction details to a bank for resulting payments or account transfers.
                    <sup>
                        <xref ref-type="bibr" rid="ref125">124</xref>
                    </sup> Attackers exploit old communication protocols without session state validation and timestamping, which they leverage for their attacks. All submitted transactions must pass through time-based authentication protocols, whereas financial institutions need to use nonce-secured requests with session tokens for attack prevention.
                    <sup>
                        <xref ref-type="bibr" rid="ref56">56</xref>,
                        <xref ref-type="bibr" rid="ref126">125</xref>,
                        <xref ref-type="bibr" rid="ref127">126</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.2.4 Phishing attacks</bold>
                </p>
                <p>Criminal online attackers conduct phishing operations for social engineering by pretending to be trusted parties to steal sensitive data that includes usernames with passwords and credit card details. Criminals execute phishing attacks in online banking through fake websites or emails, which are intended to be actual banking sites because they trick users to provide login details and sensitive financial information. Phishing attacks succeed by targeting human mistakes combined with trust to obtain sensitive information, which requires users to develop heightened awareness to stop them.
                    <sup>
                        <xref ref-type="bibr" rid="ref122">121</xref>,
                        <xref ref-type="bibr" rid="ref128">127</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.2.5 Social engineering</bold>
                </p>
                <p>Attackers use social engineering as a method to force users to reveal sensitive data or perform actions that endanger their banking account security through online interfaces. Attackers use deception techniques such as urgency fabrication along with impersonation and trust-building tactics to trick users.
                    <sup>
                        <xref ref-type="bibr" rid="ref57">57</xref>,
                        <xref ref-type="bibr" rid="ref129">128</xref>,
                        <xref ref-type="bibr" rid="ref130">129</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.2.6 SQL injection</bold>
                </p>
                <p>The attackers conduct SQL injection attacks by adding harmful code to the data strings before they reach the SQL database for processing. SQL injection allows hackers to obtain user credentials, including usernames and passwords. The stolen credentials serve as keys to unauthorized access of user accounts.
                    <sup>
                        <xref ref-type="bibr" rid="ref14">14</xref>,
                        <xref ref-type="bibr" rid="ref131">130</xref>,
                        <xref ref-type="bibr" rid="ref132">131</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.2.7 Keylogger</bold>
                </p>
                <p>A keylogger functions as malicious software that tracks computer keystrokes. A keylogger logs every keystroke typed on a system that has been compromised and captures sensitive data, including passwords, usernames, etc. Your computer can acquire keyloggers through a few methods, including opening tainted attachments and clicking on harmful links together with downloading files from unverified sources. A keylogger that uses the system to record keystrokes becomes operational after installation on a computer.
                    <sup>
                        <xref ref-type="bibr" rid="ref29">29</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.2.8 Weak password</bold>
                </p>
                <p>Weak passwords pose security threats to online banking since they provide easy opportunities for attackers to guess them. The entry of unauthorized actors becomes easier when passwords are weak because they gain instant access to sensitive data and user accounts and execute fraudulent schemes.
                    <sup>
                        <xref ref-type="bibr" rid="ref124">123</xref>,
                        <xref ref-type="bibr" rid="ref133">132</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.2.9 Denial-of-Service (DoS) attacks</bold>
                </p>
                <p>DoS attacks block access for genuine users in online banking operations through a combination of abusive network traffic that saturates system resources. Service interruptions alongside customer dissatisfaction result from this situation, which leads to financial losses for the bank. Some attacks that initiate denial-of-service conditions serve as shields for other more dangerous threats, including data theft.
                    <sup>
                        <xref ref-type="bibr" rid="ref98">98</xref>,
                        <xref ref-type="bibr" rid="ref101">101</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.2.10 Session hijacking</bold>
                </p>
                <p>Unauthorized session access, which enables an attacker to exploit user identity for online bank account access, is known as &#x201c;session hijacking.&#x201d; Network connection interceptions, along with exploiting system vulnerabilities, enable attackers to conduct unlawful activities while acquiring private information.
                    <sup>
                        <xref ref-type="bibr" rid="ref134">133</xref>
                    </sup>
                </p>
                <p>The attacks mentioned earlier show vulnerability to the supply chain and third-party or endpoint access of online banking systems, which results in supply chain attacks that involve attackers using external third-party software or vendors to access systems. The security vulnerabilities in banking systems enable hackers to break online banking security, which might result in unauthorized access and data breaches. Attackers execute endpoint attacks by focusing on both the user&#x2019;s devices and end points. The attackers want to infiltrate the user&#x2019;s device to access confidential banking data, which results in both financial fraud and unauthorized transactions.
                    <sup>
                        <xref ref-type="bibr" rid="ref127">126</xref>
                    </sup>
                </p>
                <p>Financial institutions need to use the security measures presented in 
                    <xref ref-type="table" rid="T7">
Table 7</xref> to build protective online banking systems that secure user financial details. Financial institutions establish better online banking security through a complete strategy that integrates technical solutions such as firewalls and antiviruses, educates users about risks and develops essential policies plus continuous observations of systems. 
                    <xref ref-type="table" rid="T7">
Table 7</xref> summarizes these threats while presenting countermeasures that could serve to prevent them.</p>
                <table-wrap id="T7" orientation="portrait" position="float">
                    <label>
Table 7. </label>
                    <caption>
                        <title>Online banking user authentication threats with potential controls.</title>
                    </caption>
                    <table content-type="article-table" frame="hsides">
                        <thead>
                            <tr>
                                <th align="left" colspan="1" rowspan="1" valign="top">Attacks</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Potential controls</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Reference</th>
                            </tr>
                        </thead>
                        <tbody>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Malware Attacks</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <p>

                                        <list list-type="bullet">
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Antivirus &amp; anti-malware software.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Regular system updates.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Application whitelisting.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>User education &amp; sandboxing.</p>
                                            </list-item>
                                        </list>
                                    </p>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref31">31</xref>,
                                        <xref ref-type="bibr" rid="ref125">124</xref>,
                                        <xref ref-type="bibr" rid="ref135">134</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Man-in-the-Middle (MitM) Attacks</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <p>

                                        <list list-type="bullet">
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>End-to-end encryption (e.g., TLS/SSL).</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Certificate pinning.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Secure key exchange (e.g., Diffie-Hellman).</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Avoid public Wi-Fi or use VPN.</p>
                                            </list-item>
                                        </list>
                                    </p>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref136">135</xref>,
                                        <xref ref-type="bibr" rid="ref137">136</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Replay Attacks</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <p>

                                        <list list-type="bullet">
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Timestamps &amp; nonce-based protocols.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Secure tokens with expiration.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Mutual authentication.</p>
                                            </list-item>
                                        </list>
                                    </p>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref126">125</xref>,
                                        <xref ref-type="bibr" rid="ref133">132</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Phishing Attacks</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <p>

                                        <list list-type="bullet">
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Email filtering (spam/phishing detection).</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>User awareness training.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Domain monitoring.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>MFA to mitigate stolen credentials.</p>
                                            </list-item>
                                        </list>
                                    </p>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref57">57</xref>,
                                        <xref ref-type="bibr" rid="ref138">137</xref>,
                                        <xref ref-type="bibr" rid="ref139">138</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Social Engineering</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <p>

                                        <list list-type="bullet">
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Security awareness programs.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Simulated phishing tests.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Clear verification policies.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Insider threat monitoring.</p>
                                            </list-item>
                                        </list>
                                    </p>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref138">137</xref>,
                                        <xref ref-type="bibr" rid="ref140">139</xref>,
                                        <xref ref-type="bibr" rid="ref141">140</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>SQL Injection</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <p>

                                        <list list-type="bullet">
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Input validation &amp; sanitization.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Use of prepared statements (parameterized. queries).</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Web application firewalls (WAF).</p>
                                            </list-item>
                                        </list>
                                    </p>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref131">130</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Keylogger</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <p>

                                        <list list-type="bullet">
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Anti-spyware detection tools.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Behavioral monitoring.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>OS hardening &amp; restricted privileges.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>On-screen keyboards for sensitive input.</p>
                                            </list-item>
                                        </list>
                                    </p>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref142">141</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Weak Passwords</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <p>

                                        <list list-type="bullet">
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Enforce strong password policies.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Password managers.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>MFA/2FA.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Rate limiting and lockout mechanisms.</p>
                                            </list-item>
                                        </list>
                                    </p>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref143">142</xref>,
                                        <xref ref-type="bibr" rid="ref144">143</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>DoS</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <p>

                                        <list list-type="bullet">
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Traffic filtering and rate limiting.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Use of CDNs.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Redundant systems and load balancing.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Anomaly detection (IDS/IPS).</p>
                                            </list-item>
                                        </list>
                                    </p>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref145">144</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Session Hijacking</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <p>

                                        <list list-type="bullet">
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Secure cookie attributes (e.g., Http Only, Secure, Same Site).</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Session timeout policies.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>Token-based session management.</p>
                                            </list-item>
                                            <list-item>
                                                <label>&#x2022;</label>
                                                <p>HTTPS for all traffic.</p>
                                            </list-item>
                                        </list>
                                    </p>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref134">133</xref>
                                    </sup>
                                </td>
                            </tr>
                        </tbody>
                    </table>
                </table-wrap>
            </sec>
            <sec id="sec19">
                <title>4.3 Biometric used in international banks</title>
                <p>The investigation of 
                    <bold>RQ3</bold>: &#x201c;How do major banks worldwide 
                    <bold>implement and integrate biometric authentication</bold> into their mobile banking applications?&#x201d; takes place in this section. The analysis of authentication practices utilized by international banks provides fundamental knowledge about contemporary changes in online banking safety measures. The selected banks outline their user authentication techniques in 
                    <xref ref-type="table" rid="T8">
Table 8</xref> demonstrates how various popular financial institutions authenticate their users.</p>
                <table-wrap id="T8" orientation="portrait" position="float">
                    <label>
Table 8. </label>
                    <caption>
                        <title>Summary of biometric authentication methods implemented by major global banks, with emphasis put on their security settings and location of operations.</title>
                    </caption>
                    <table content-type="article-table" frame="hsides">
                        <thead>
                            <tr>
                                <th align="left" colspan="1" rowspan="1" valign="top">Bank</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Country</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Authentication methods</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Ref.</th>
                            </tr>
                        </thead>
                        <tbody>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">JPMorgan Chase</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">USA</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Username/password, OTP via SMS/email, biometric (Face ID, Touch ID), device recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref25">25</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Bank of America</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">USA</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Username/password, OTP via SMS/email, biometric login via app (Face/Touch ID), app-based MFA</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref3">3</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">HSBC</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">UK/Global</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Secure Key (hardware/token), Mobile Security Key (in-app), biometric login, OTP</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref106">106</xref>,
                                        <xref ref-type="bibr" rid="ref149">148</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Barclays</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">UK</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">PIN sentry device, biometric login, app-based MFA, SMS/email OTP</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref150">149</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Deutsche Bank</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Germany</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Username/password, mobile TAN (mTAN), photo TAN, biometric login, push notification approval</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref151">150</xref>,
                                        <xref ref-type="bibr" rid="ref152">151</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">BNP Paribas</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">France</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Password + OTP (SMS/email), biometric login, mobile token, app-based confirmation</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref153">152</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Santander</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Spain/Global</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Password, OTP via SMS/email, Mobile Sign (in-app approval), biometric authentication</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref154">153</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">ING</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Netherlands</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">PIN/password, fingerprint/Face ID via app, in-app transaction approval</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref115">114</xref>,
                                        <xref ref-type="bibr" rid="ref155">154</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">Standard Chartered</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">UK/Asia/Africa</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Username/password, OTP via SMS/email, app-based security token, biometric login</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref156">155</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">DBS Bank</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Singapore</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Biometric login, digibank Secure Device, app-based push approval, OTP</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref105">105</xref>,
                                        <xref ref-type="bibr" rid="ref115">114</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">HSBC Hong Kong</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Hong Kong</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Mobile Security Key, Face ID/Touch ID, OTP via SMS, transaction signing</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref155">154</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">RBC (Royal Bank of Canada)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Canada</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Username/password, OTP, biometric login, 2FA through Secure Cloud</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref156">155</xref>
                                    </sup>
                                </td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">NAB (National Australia Bank)</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Australia</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Password, SMS OTP, biometric login via mobile app, device recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <sup>
                                        <xref ref-type="bibr" rid="ref25">25</xref>
                                    </sup>
                                </td>
                            </tr>
                        </tbody>
                    </table>
                </table-wrap>
                <p>The information in 
                    <xref ref-type="table" rid="T8">
Table 8</xref> reveals the user authentication strategies used by several well-known financial institutions, including JPMorgan Chase, Bank of America, HSBC, Barclays, Deutsche Bank, BNP Paribas, Santander, ING, Standard Chartered, DBS Bank, HSBC Hong Kong, RBC (Royal Bank of Canada), and NAB (National Australia Bank).</p>
                <p>Financial institutions utilize MFA systems because they prioritize the defense of customer online account security. Financial institutions mainly employ password authentication as their principal security procedure. Account holders need to build passwords for their financial institutions, which adhere to prescribed guidelines (such as the NIST password policy) that require eight characters or more in length with a mixture of upper and lowercase letters and numbers and symbols. The initial security measure that defends against unapproved system access is the use of passwords. OTP authentication serves as a security approach that numerous financial institutions within the banking sector currently use. New device users must provide a unique OTP password that arrives through SMS or email to finish their login process. Users must provide the received code before their login process can become fully secure. OTP serves only single login sessions and operates with limited validity, making it highly unlikely for attackers to obtain the password. The rising trend in banking shows that physiological biometric identification serves banks as a safer authentication option than passcodes do. Special physical attributes such as fingerprints and facial recognition serve as verification tools to identify customers during their process.
                    <sup>
                        <xref ref-type="bibr" rid="ref114">113</xref>
                    </sup> The authentication method poses challenges to falsify essential data, thus making it an optimal barrier against unauthorized access. Security functions at these banks are implemented via 2FA technology. Users need to enter two security factors along with their password during first-time logins from new devices by providing an OTP or biometric verification. Security protection from 2FA
                    <sup>
                        <xref ref-type="bibr" rid="ref146">145</xref>
                    </sup> creates a double authentication requirement that makes unauthorized access attempts practically impossible. Banks offer alternative authentication solutions for customers, which include USB security keys as well as security questions and challenge/response authentication and voiceprint authentication and device fingerprints.
                    <sup>
                        <xref ref-type="bibr" rid="ref147">146</xref>
                    </sup> Device fingerprints determine the devices used by users, whereas voiceprint authentication depends on a person&#x2019;s voice specifics.
                    <sup>
                        <xref ref-type="bibr" rid="ref148">147</xref>
                    </sup> A challenge/response system requires the customer to enter authorization codes that originate from bank transmissions to their mobile device. Security keys connected to a USB port work as extended measures for online banking safety by enabling users to enhance transfer constraints through their computer&#x2019;s USB connector. As customers complete the login process, the system asks them to answer security questions that have already been chosen by the platform, thus activating security authentication. Bank security measures receive ongoing assessment and updates from these banks to maintain timely protection of customer account safety against new security challenges.</p>
                <p>We highlighted the use of biometrics in leading banks, extracted from 
                    <xref ref-type="table" rid="T8">
Table 8</xref>, to determine the most used authentication methods. 
                    <xref ref-type="table" rid="T9">
Table 9</xref> illustrates the role of the biometric methods used by leading banks.</p>
                <table-wrap id="T9" orientation="portrait" position="float">
                    <label>
Table 9. </label>
                    <caption>
                        <title>Biometric authentication methods implemented in leading banks.</title>
                    </caption>
                    <table content-type="article-table" frame="hsides">
                        <thead>
                            <tr>
                                <th align="left" colspan="1" rowspan="1" valign="top">Bank</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">Biometric technology used</th>
                                <th align="left" colspan="1" rowspan="1" valign="top">
Application area</th>
                            </tr>
                        </thead>
                        <tbody>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>JPMorgan Chase</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Facial recognition, palm vein scanning</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">In-store payment authentication</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Bank of America</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fingerprint, facial recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Mobile banking app</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>HSBC</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fingerprint, facial recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Mobile banking app</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Barclays</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Voice recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Phone banking services</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Deutsche Bank</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fingerprint, facial recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">DB Secure Authenticator app</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>BNP Paribas</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fingerprint</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Biometric payment cards</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Santander</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fingerprint, facial recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Mobile banking app</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>ING</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fingerprint</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Mobile banking app</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>Standard Chartered</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fingerprint, facial recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Mobile banking app</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>DBS Bank</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fingerprint, facial recognition, voice recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Mobile banking app; ATM transactions</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>HSBC Hong Kong</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fingerprint, facial recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Mobile banking app</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>RBC (Royal Bank of Canada)</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fingerprint, facial recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Mobile banking app</td>
                            </tr>
                            <tr>
                                <td align="left" colspan="1" rowspan="1" valign="top">
                                    <bold>NAB (National Australia Bank)</bold>
</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Fingerprint, facial recognition</td>
                                <td align="left" colspan="1" rowspan="1" valign="top">Mobile banking app</td>
                            </tr>
                        </tbody>
                    </table>
                </table-wrap>
                <p>From 
                    <xref ref-type="table" rid="T9">
Table 9</xref> we note that: Fingerprint and Facial recognition are the two most used biometric mechanisms probably because most of the smartphones now support them and they are highly accepted by users. Voice recognition is rarer, and more often in mobile-based banking. Palm veins are quite unusual, but there is higher security and usage in physical (store for payments) authentication scenarios. Mobile banking for convenient and secure login is the most common area of biometric applications. Some banks (for example, DBS Bank) merge several biometric devices, for example: fingerprint, face and voice &#x2013; suggestive of a multi-modal approach in security improvement.</p>
                <p>
                    <xref ref-type="fig" rid="f7">
Figure 7</xref> depicts visual representation of how often each of the biometric authentication methods are used by the banks. As you can observe, fingerprints and facial recognition outrun the competitors, while voice and palm vein scanning are far rarer.</p>
                <fig fig-type="figure" id="f7" orientation="portrait" position="float">
                    <label>
Figure 7. </label>
                    <caption>
                        <title>Distribution of biometric authentication technologies (e.g., fingerprint, facial, voice, palm) adopted by major banks in the world, reflecting adoption trends and popularity in mobile banking services.</title>
                    </caption>
                    <graphic id="gr7" orientation="portrait" position="float" xlink:href="https://f1000research-files.f1000.com/manuscripts/191708/bb5c003e-4bf0-4abd-b3a4-a0493b4a6da1_figure7.gif"/>
                </fig>
            </sec>
            <sec id="sec20">
                <title>4.4 Usability and user perception challenges and limitations</title>
                <p>The literature shows that there is a stark tradeoff between strength of security and usability. As biometrics increase protection, the ineffective user experience will decrease adoption and efficacy. The banks must focus on usability testing, offer alternative, safe options (i.e., token generated by the device), and increase transparency regarding the use of biometric data.</p>
                <p>The usability and how often it is perceived by the user are important issues that determine the significance and adoption of biometric authentication mobile banking techniques. As indicated in various other studies
                    <sup>
                        <xref ref-type="bibr" rid="ref157">156</xref>,
                        <xref ref-type="bibr" rid="ref158">157</xref>
                    </sup> one of the issues many users face when using biometric systems is irritation related to the unreliability of these systems, such as inability to recognize their fingerprint when their fingers are wet, in situations of skin damage, or due to technical purposes of sensors. In the same light, facial recognition has been observed to perform poorly in low-light situations or when the user is wearing glasses or face mask. Such technical shortcomings may undermine the trust in the system and make people turn off the security features or switch to the less safe options (e.g., back to the passwords or PINs).</p>
                <p>On top of technical problems, user perception plays an important part in the adoption of biometrics. A study conducted by
                    <sup>
                        <xref ref-type="bibr" rid="ref159">158</xref>
                    </sup> has revealed that a high percentage of users were worried about the personal safety and confidentiality of biometric data particularly when this data was stored on cloud-based platform instead of being secured on the gadget. The level of confidence in banks and their confidentiality of information was a deciding factor as to whether the user activated biometric authentication. Moreover, some studies like,
                    <sup>
                        <xref ref-type="bibr" rid="ref38">38</xref>
                    </sup> have pointed out the issue of the inaccessibility of MFA especially to ageing people and individuals with disabilities who might have a hard time using or comprehending some MFA techniques. Overall, literature points at the necessity to design authentication systems in a way that composes security and simplicity to use, availability, and visibility, so that security apparatus will not be an obstacle to user interaction. Online banking user authentication techniques and cyber threats maintain an uncertain outlook, but the resulting risks remain massive.
                    <sup>
                        <xref ref-type="bibr" rid="ref58">58</xref>
                    </sup>
                </p>
                <p>In this section we answered 
                    <bold>RQ4</bold> which stated: &#x201c;What is the key 
                    <bold>usability, privacy, and user acceptance challenges</bold> related to biometric authentication in mobile banking?&#x201d;.</p>
                <p>These challenges represent the main difficulties that must be addressed when enhancing the security of online banking systems, in addition to user authentication procedures. We have classified the most important challenges as follows:</p>
                <p>

                    <bold>4.4.1 Artificial intelligence challenge</bold>
                </p>
                <p>The adoption of artificial intelligence through machine learning by cyberattacks presents a threat to online banking infrastructure, which includes network breaches and defeats detection systems. The implementation of ML involves several methods for breaching online banking authentication systems.
                    <sup>
                        <xref ref-type="bibr" rid="ref160">159</xref>&#x2013;
                        <xref ref-type="bibr" rid="ref162">161</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.1.1 Bias in biometric systems</bold>
                </p>
                <p>Biometric systems powered by artificial intelligence produce irregular results when processing users from diverse population demographics, including ethnicities, as well as gender and age groups. A lack of diversity in training data can result in unfair FAR or FRR errors that produce trust and legal challenges among specific users.
                    <sup>
                        <xref ref-type="bibr" rid="ref163">162</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.1.2 Adversarial attacks</bold>
                </p>
                <p>Information security risks exist because AI authentication systems can be deceived through adversarial examples that adversaries specifically generate to trick them (such as manipulated fingerprints, deepfakes or altered patterns). Researchers aim to build authentication models with resistance to manipulation because this remains a critical research topic.
                    <sup>
                        <xref ref-type="bibr" rid="ref126">125</xref>,
                        <xref ref-type="bibr" rid="ref164">163</xref>,
                        <xref ref-type="bibr" rid="ref165">164</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.1.3 Deep fakes can be produced</bold>
                </p>
                <p>Artificial deep fakes demand ML techniques for their production. Artificial works labeled deep fakes combine someone else&#x2019;s likeness by replacing it with extant images and footage. Any recorded online banking registration activity can be faked through deep fakes to steal user login credentials used in the fake video.
                    <sup>
                        <xref ref-type="bibr" rid="ref164">163</xref>,
                        <xref ref-type="bibr" rid="ref166">165</xref>&#x2013;
                        <xref ref-type="bibr" rid="ref168">167</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.1.4 ML technology</bold>
                </p>
                <p>ML enables the automation of assaults against banking systems that operate through the internet. The automation of attacks targeting online banking systems becomes possible through the application of ML techniques for addressing guessing attacks as well as brute-force attacks and DoS attacks.
                    <sup>
                        <xref ref-type="bibr" rid="ref145">144</xref>
                    </sup> The attackers benefit from simpler ways to run successful assaults against online banking infrastructure. Phishing attacks can be launched with the assistance of ML.
                    <sup>
                        <xref ref-type="bibr" rid="ref169">168</xref>
                    </sup> Phishing attacks use deceptive methods to force users to reveal their critical account information, including bank card numbers and network access secrets. AI facilitates the development of convincing phishing emails along with corresponding websites that target users.
                    <sup>
                        <xref ref-type="bibr" rid="ref160">159</xref>
                    </sup> These attacks become more deceptive because they offer a higher probability of deceiving users.</p>
                <p>ML provides banks with tools to protect their systems from cyberattacks, enabling them to enhance the security and resilience of their systems. By utilizing ML, banks enhance both their risk management and compliance practices to detect and prevent fraud together with malware and phishing attacks.
                    <sup>
                        <xref ref-type="bibr" rid="ref170">169</xref>
                    </sup> The application approach of ML determines whether it offers either risk or an opportunity to use online banking systems.
                    <sup>
                        <xref ref-type="bibr" rid="ref171">170</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.1.5 High computational and energy demands</bold>
                </p>
                <p>The functionality of real-time authentication based on AI processing through onboard device resources is restricted to older and less expensive mobile devices. Cloud storage introduces new security risks during processing combined with greater processing delays.
                    <sup>
                        <xref ref-type="bibr" rid="ref172">171</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.1.6 Explainability and transparency</bold>
                </p>
                <p>The issue of explainability and transparency in mobile banking deserves attention because biometric authentication systems are often complicated. Since these systems heavily depend on complicated algorithms, the AI-based and machine learning algorithms to make authentication decisions, unsuspecting individuals and even the systems operators are often locked out of the process of how such decisions are made. Failure to find an obvious justification in denying access or scoring suspicious users may cause frustration, mistrust, and losses to user abandonment. In addition, regulatory and ethical aspects, audit, accountability, and determination of fairness are also critical regarding transparent systems, especially when it is biometric data of a sensitive nature. Improving explainability will enable developers to pinpoint and redress errors or bias and give users a more effective understanding of how their data are utilized, enhancing trust and confidence in the mobile banking authentication in general.
                    <sup>
                        <xref ref-type="bibr" rid="ref172">171</xref>,
                        <xref ref-type="bibr" rid="ref173">172</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.1.7 Spoofing and presentation attacks</bold>
                </p>
                <p>The presented attack and spoofing vulnerability are one of the greatest disadvantages of biometric authentication in mobile banking systems. These attacks consist of hoodwinking the system by fueling fake or imaginary biometrics, including silicon fingerprints,
                    <sup>
                        <xref ref-type="bibr" rid="ref133">132</xref>
                    </sup> photographs with a high resolution of the face, or even complex masks made of 3D printers.
                    <sup>
                        <xref ref-type="bibr" rid="ref174">173</xref>
                    </sup> As an example, can an attacker lift a fingerprint off a surface and re-mold it in gelatin or latex material or defeat facial recognition by having a video replay or a 3D mask.
                    <sup>
                        <xref ref-type="bibr" rid="ref175">174</xref>
                    </sup> Most bio-metric systems have attempted to counteract these threats by utilizing liveness except tools, which might include blinking or feel of the skin texture, although not universally and reliably as in the case with all devices. Spoofing attacks can succeed better in low end smartphones or applications with weak security. Also, the use of liveness detection may affect user experience in some cases, which makes developers turn it off or modify it in some way.
                    <sup>
                        <xref ref-type="bibr" rid="ref43">43</xref>
                    </sup> With ever evolving spoofing techniques such as usage of deep fakes and masks embedded with motion, the present-day biometric systems are struggling to provide secure authentication. This does not only endanger user accounts to unauthorized access but also jeopardizes the user faith; it raises legal and regulatory issues to financial institutions. Implementing multimodal biometric authentication, constant surveillance and AI-based spoof protection is essential in building solid mobile banking security.
                    <sup>
                        <xref ref-type="bibr" rid="ref176">175</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.1.8 Dependency and hardware limitations</bold>
                </p>
                <p>In mobile banking, the performance of biometrics depends highly on the hardware capacity of their devices. Premium smartphones are additionally obvious to have improved sensors, such as depth cameras or ultrasonic fingerprint readers,
                    <sup>
                        <xref ref-type="bibr" rid="ref177">176</xref>
                    </sup> which enable more authentication with high degrees of accuracy and safety. On the other hand, the cameras that come with the low-end or older devices are of basic 2D type or capacitive sensors, and these are more error prone and could be more easily spoofed. Such hardware mismatches may cause uneven authentication experiences, false acceptance rate/false rejection rate and exclusion of users with an outdated device.
                    <sup>
                        <xref ref-type="bibr" rid="ref178">177</xref>
                    </sup> Also, the scarcity of hardware support makes the process of developing apps harder and does not allow implementing higher levels of security, which, in turn, makes mobile banking platforms less secure and readily accessible.</p>
                <p>

                    <bold>4.4.2 False Acceptance/False Rejection Rates (FAR/FRR)</bold>
                </p>
                <p>FAR and FRR are some of the errors (
                    <xref ref-type="fig" rid="f8">
Figure 8</xref>), which make biometric authentication systems vulnerable. FAR is defined as access given to unauthorized users when it is not supposed to be which is wrong and FRR is defined as being denied by the unauthorized user when it is not supposed to be the case. Such errors may be caused, among others, with improper lighting, inclusions or damage of sensors, alterations of physical appearance of the user (age, injury, facial hair), or inconsistent behavior of the sensors among different devices. When FAR is high this compromises security whereas when FRR is high this affects usability and user satisfaction, two important functions in mobile bank applications. Designing a workable balance between these rates is a major difficulty in the design of biometric systems.
                    <sup>
                        <xref ref-type="bibr" rid="ref178">177</xref>
                    </sup>
                </p>
                <fig fig-type="figure" id="f8" orientation="portrait" position="float">
                    <label>
Figure 8. </label>
                    <caption>
                        <title>Illustration of the trade-off between FAR and FRR in biometric authentication.</title>
                    </caption>
                    <graphic id="gr8" orientation="portrait" position="float" xlink:href="https://f1000research-files.f1000.com/manuscripts/191708/bb5c003e-4bf0-4abd-b3a4-a0493b4a6da1_figure8.gif"/>
                </fig>
                <p>

                    <bold>4.4.3 Balancing security and usability</bold>
                </p>
                <p>This right balance between security and usability is one of the major issues of implementing biometric authentication methods giving in mobile banking. Although greater security can be brought about by higher quality security procedures, e.g., through multiple authentication factors or high-quality liveness detection, this can also serve to deliver friction, delay or confusion to users. Conversely, simplified forms of authentication can provide a better experience but can leave systems at a higher risk of attack. To give an example, high tires of login using multiple steps can be strenuous to users and decrease the usage of the application and by contrast, using biometrics as the only mode of verification can isolate users with certain accessibility challenges. To achieve effective authentication, one therefore must balance a range between sound protection over threats and not jeopardizing ease of use and accessibility by the users. To do that, it will be necessary to have adaptive authentication mechanisms, user-centered design, and continuous assessment of security point risks as well as user behavior.
                    <sup>
                        <xref ref-type="bibr" rid="ref179">178</xref>,
                        <xref ref-type="bibr" rid="ref180">179</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.4 Regulatory and ethical compliance</bold>
                </p>
                <p>Regulatory and ethical compliance plays an important role when implementing biometrics authentications in mobile banking. The legal environment is very complicated, and financial institutions have to comply with international data protection regulations including the 
                    <bold>General Data Protection Regulation (GDPR),
</bold> Regulation (EU) 2016/679 of the European Parliament and of the council on data protection and privacy and the California Consumer Privacy Act of 2018 (CCPA), enacted by the California Legislature to enhance consumer data privacy protections in the United States.
                    <sup>
                        <xref ref-type="bibr" rid="ref162">161</xref>
                    </sup> These laws obligate organizations to obtain informed consent from users, reduce the amount of data collected, store information in a safe manner and make the processing of the biometrics open. Banks also have an ethical obligation to stop misuses or discrimination through systems that provide poor results according to a demographic group. A failure to fulfill these responsibilities may lead to legal action and damage to reputation, an economic impact and loss of the trust of the users. To adhere to it, organizations are required to incorporate privacy-by-design, conduct regular system audit to determine its fairness and non-discriminatory nature, and ensure that it grants users full control over their personal biometric information.
                    <sup>
                        <xref ref-type="bibr" rid="ref148">147</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.5 User privacy challenge</bold>
                </p>
                <p>Online banking authentication through the BBA, including fingerprint authentication, presents the highest security level because attempts to forge or steal biometric data prove very difficult. The application of BBA includes privacy-related problems. A biometric database breach of a bank will give hackers the ability to obtain all the authenticity data of its banking clients. Customers have reservations about banking establishments and other organizations storing their biometric information. Banks that utilize BBA require proper protection of biometric data that belongs to their clients. Banks must secure data against unlawful handling through preventative measures. A privacy policy needs to exist that explains to clients how their biometric information will be handled.
                    <sup>
                        <xref ref-type="bibr" rid="ref127">126</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.6 System compatibility challenge</bold>
                </p>
                <p>Financial institutions must transform their current technology platforms and authorize procedures to welcome different authentication approaches, such as biometrics along with tokens and MFA, for online banking access. Additionally, merchants should approve of their payment vendors, who assist in online authentication.
                    <sup>
                        <xref ref-type="bibr" rid="ref180">179</xref>
                    </sup>
                </p>
                <p>

                    <bold>4.4.7 System usability challenge</bold>
                </p>
                <p>The user authentication sector faces a conventional challenge because securing systems becomes riskier when making authentication methods easier to use. The implementation of layering represents a security improvement approach for user authentication systems.
                    <sup>
                        <xref ref-type="bibr" rid="ref98">98</xref>
                    </sup> MFA requires multiple security checks that combine multiple factors such as biometric authentication, passwords/PIN, OTP and/or other factors.
                    <sup>
                        <xref ref-type="bibr" rid="ref73">73</xref>
                    </sup> Layering is founded on the fact that if one safeguard is breached, other levels of security will still protect the system from the undesired users. The number of layers determines better system protection but creates a declining usability experience. The authentication procedure becomes more challenging with each additional layer, which ultimately leads to user frustration.
                    <sup>
                        <xref ref-type="bibr" rid="ref179">178</xref>
                    </sup> Our system enhances security when we use multiple authentication layers, although usability decreases at the same time. Security and usability must be balanced when choosing authentication methods according to the required security measures.</p>
            </sec>
        </sec>
        <sec id="sec21">
            <title>5. Limitation</title>
            <p>This systematic review has several limitations. First, a formal risk-of-bias or certainty assessment was not conducted because the included studies are highly heterogeneous in terms of datasets, evaluation protocols, biometric devices and performance metrics. Such variations make the use of standardized tools (e.g., RoB, GRADE) unsuitable for technical and engineering research. Second, a meta-analysis was not possible because of the lack of comparable quantitative data across studies, because the reporting formats and evaluation measures (e.g., EER, FAR, FRR) differ significantly. Third, only studies published in English and available through selected digital libraries were included, which may introduce publication or language bias. Despite these limitations, the current biometric-based authentication research is comprehensively synthesized in this review, and a structured analysis is presented to guide future directions in mobile banking security.</p>
        </sec>
        <sec id="sec22">
            <title>6. Conclusion and future directions</title>
            <p>This study analyzes biometric authentication methods implemented in mobile banking from 2020&#x2013;2025 via an SLR. The review examined five essential topics, including mobile banking authentication methods and security risks, the biometric authentication methods deployed by major banks worldwide, usability challenges and limitations, and future directions.</p>
            <p>The authentication methods for online mobile banking users can be categorized into four categories: BBA, KBA, PBA and MFA methods. Each part contains a variety of authentication methods with varying weaknesses, strengths, and implementation. KBA methods depend on user knowledge, such as PIN, passwords and security questions, to verify their identity. The verification process under KBA authentication methods depends on the information that the user has, which includes passwords, PINs and security questions. BBA methods identify users through specific measurements of biological markers known as physiological traits, which include fingerprints, facial identification, iris scanning, hand geometry, vein and behavioral biometrics, including voice recognition, keystroke, EEG, signatures, hand movement patterns and continuous authentication, such as touch screens. Users access their accounts through PBA methods by relying on authentication tokens that include OTP authentication, which sends exclusive temporary codes to users through SMS, e-mail or other applications and covers security keys/USB and wearable devices. The authentication methods employ different procedures that do not belong to either the KBA or the BBA or PBA categories. Among these authentication examples are MAC addresses, IP addresses, proxies, QR codes, geolocation data and CAPTCHAs. MFA frameworks enhance security by implementing multiple authentication approaches that belong to different categories. When banks implement multiple authentication methods, they build up their system security while developing a multilayered protective system, which makes it difficult for attackers to break in. The multiple layers ensure system protection because each layer provides additional security if an attacker manages to breach one defense mechanism.</p>
            <p>This research analysis examined multiple types of cyber threats that target online banking systems while discussing methods to bypass authentication protection measures. Multiple online banking threats include malware attacks, social engineering techniques and phishing attacks, MitM attacks, DoS attacks, session hijacking, weak passwords, keyloggers, SQL injections and replay attacks. The research examined different authentication methods used by well-known banks to determine secure practices for protecting online banking accounts.</p>
            <p>By discussing the advantages and disadvantages of the user verification methods used in online payments, this research analyzes the biometrics authentication methods that are implemented in mobile banking; thus, the security of mobile banking has increased because biometrics verify users by checking their unique characteristics, including fingerprints and facial recognition. The use of biometric enhances mobile banking security with superior identity verification, which results in higher access speed in addition to better fraud protection. The security and user authentication process of online banking systems need improvement through the consideration of four key challenges: artificial intelligence, FAR/FRR, balancing security and usability, regulatory and ethical compliance, user privacy challenge, system compatibility challenge and system usability challenge. This research has several major limitations because it relies on literature reviews about online mobile bank account authentication.</p>
            <p>The following section answered 
                <bold>RQ5</bold> which stated: &#x201c;What are the 
                <bold>limitations and future research directions</bold> in improving biometric-based authentication for secure and convenient mobile banking?&#x201d;. These limitations are doesn&#x2019;t use fusion of biometrics in mobile banking, digital wallets, blockchain and wearable devices such as rings. Future research should include blockchain authentication, fusion techniques, e-wallets authentication and wearable devices, and other future directions related to security and privacy, such as the following:
                <list list-type="order">
                    <list-item>
                        <label>1-</label>
                        <p>Adaptive and Context-Aware Authentication: Research should evaluate methods for authentication systems to change security levels through real-time threat analysis and behavioral information and environmental signals (such as location status and device health status).</p>
                    </list-item>
                    <list-item>
                        <label>2-</label>
                        <p>Privacy-Preserving Biometric Systems: Biometric data protection research must focus on security strategies that start from data collection through storage and transmission phases since privacy-protecting techniques such as homomorphic encryption and secure multiparty computation enter the market.</p>
                    </list-item>
                    <list-item>
                        <label>3-</label>
                        <p>Threat Modeling in Evolving Environments: The ongoing analysis of threats should predict potential weaknesses that arise from new technology implementations such as embedded banking combined with AI fraud detection systems and wearable biometric scanning.</p>
                    </list-item>
                    <list-item>
                        <label>4-</label>
                        <p>Future Use of Multimodal Fusion: Further studies of highly integrated fusion techniques capable of integrating various biometric identifiers (e.g., fingerprint and face) with the context in a way that maximizes security and usability must be investigated. An AI-driven decision model is likely to enable more reliable and user-friendly authentication in high-risk contexts such as mobile banking and e-government services in the future through the fusion of AI with various modalities whose weights are adaptively changed by their reliability in real-time.</p>
                    </list-item>
                </list>
            </p>
            <p>The research results will appeal to multiple groups, such as financial organizations and official government agencies, together with academic researchers. The resulting insights will enable researchers to create security systems as well as educational content that safeguards users from performing online banking activities.</p>
        </sec>
    </body>
    <back>
        <sec id="sec27" sec-type="data-availability">
            <title>Data availability</title>
            <p>All data supporting the findings of this systematic review have been deposited in the Zenodo public repository and are openly accessible under the 
                <ext-link ext-link-type="uri" xlink:href="https://creativecommons.org/publicdomain/zero/1.0/legalcode">CC0 1.0 Universal license</ext-link>.</p>
            <p>The dataset includes:
                <list list-type="bullet">
                    <list-item>
                        <label>&#x2022;</label>
                        <p>The completed 
                            <bold>PRISMA 2020 checklist</bold>
                        </p>
                    </list-item>
                    <list-item>
                        <label>&#x2022;</label>
                        <p>The 
                            <bold>PRISMA flow diagram</bold>
                        </p>
                    </list-item>
                    <list-item>
                        <label>&#x2022;</label>
                        <p>The 
                            <bold>SLR dataset</bold> containing all 97 included studies with extracted variables</p>
                    </list-item>
                </list>
            </p>
            <p>

                <bold>Repository:</bold> Zenodo</p>
            <p>

                <bold>Title</bold>: 
                <italic toggle="yes">PRISMA Checklist, Flow Diagram, and SLR Dataset for &#x201c;A Systematic Literature Review on Biometric Authentication in Mobile Banking&#x201d;</italic>
            </p>
            <p>

                <bold>DOI</bold>: 
                <ext-link ext-link-type="uri" xlink:href="https://doi.org/10.5281/zenodo.17744117">https://doi.org/10.5281/zenodo.17744117</ext-link>
                <sup>
                    <xref ref-type="bibr" rid="ref181">180</xref>
                </sup>
            </p>
            <p>

                <bold>License:</bold> 
                <ext-link ext-link-type="uri" xlink:href="https://creativecommons.org/publicdomain/zero/1.0/legalcode">CC0 1.0 Universal</ext-link>
            </p>
            <p>These materials provide full transparency and allow complete reproducibility of the review process.</p>
        </sec>
        <ref-list>
            <title>References</title>
            <ref id="ref1">
                <label>1</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Fedorenko</surname>
                            <given-names>OH</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Velychko</surname>
                            <given-names>SV</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kaidan</surname>
                            <given-names>YV</given-names>
                        </name>
</person-group>:
                    <article-title>Investigating vulnerabilities of personal data on financial websites.</article-title>
                    <source>

                        <italic toggle="yes">CEUR Workshop Proc.</italic>
</source>
                    <year>2025</year>;<volume>3917</volume>:<fpage>451</fpage>&#x2013;<lpage>458</lpage>.</mixed-citation>
            </ref>
            <ref id="ref2">
                <label>2</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Wang</surname>
                            <given-names>C</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Wang</surname>
                            <given-names>Y</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Chen</surname>
                            <given-names>Y</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>User authentication on mobile devices: Approaches, threats and trends.</article-title>
                    <source>

                        <italic toggle="yes">Comput. Netw.</italic>
</source>
                    <year>2020</year>;<volume>170</volume>:<fpage>107118</fpage>.
                    <pub-id pub-id-type="doi">10.1016/j.comnet.2020.107118</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref3">
                <label>3</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Karim</surname>
                            <given-names>NA</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Khashan</surname>
                            <given-names>OA</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kanaker</surname>
                            <given-names>H</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Online Banking User Authentication Methods: A Systematic Literature Review.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Access.</italic>
</source>
                    <year>2024</year>;<volume>12</volume>:<fpage>741</fpage>&#x2013;<lpage>757</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ACCESS.2023.3346045</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref4">
                <label>4</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Adeniran</surname>
                            <given-names>T</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Vulnerability assessment studies of existing knowledge-based authentication systems: a systematic review.</article-title>
                    <source>

                        <italic toggle="yes">Sule Lamido Univ. J. Sci. Technol.</italic>
</source>
                    <year>2024</year>;<volume>8</volume>(<issue>1</issue>):<fpage>34</fpage>&#x2013;<lpage>61</lpage>.
                    <pub-id pub-id-type="doi">10.56471/slujst.v7i.485</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref5">
                <label>5</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Hajjisaaid</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ahmed</surname>
                            <given-names>YA</given-names>
                        </name>
</person-group>:
                    <chapter-title>Secure Electronic Banking Authentication - Survey.</chapter-title>
                    <source>

                        <italic toggle="yes">2020 International Conference on Computing and Information Technology (ICCIT-1441).</italic>
</source>
                    <year>2020</year>; pp.<fpage>1</fpage>&#x2013;<lpage>4</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICCIT-144147971.2020.9213767</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref6">
                <label>6</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Chong</surname>
                            <given-names>CL</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Harun</surname>
                            <given-names>NZ</given-names>
                        </name>
</person-group>:
                    <article-title>Secure File Sharing System with Strong Password and One Time Password Authentication.</article-title>
                    <year>2025</year>;<volume>10</volume>(<issue>1</issue>).
                    <pub-id pub-id-type="doi">10.24191/jcrinn.v10i1.500</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref7">
                <label>7</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Karim</surname>
                            <given-names>NA</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kanaker</surname>
                            <given-names>H</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Almasadeh</surname>
                            <given-names>S</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>A Robust User Authentication Technique in Online Examination.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Comput. Dent.</italic>
</source>
                    <year>2021</year>;<volume>20</volume>(<issue>4</issue>):<fpage>535</fpage>&#x2013;<lpage>542</lpage>.
                    <pub-id pub-id-type="doi">10.47839/ijc.20.4.2441</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref8">
                <label>8</label>
                <mixed-citation publication-type="book">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Author</surname>
                            <given-names>A</given-names>
                        </name>
</person-group>:
                    <source>

                        <italic toggle="yes">Broken Access: On the Challenges of Screen Reader Assisted Two-Factor and Passwordless Authentication.</italic>
</source>
                    <publisher-name>Association for Computing Machinery</publisher-name>; 
vol.<volume>1</volume>(<issue>1</issue>).</mixed-citation>
            </ref>
            <ref id="ref9">
                <label>9</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Aruna</surname>
                            <given-names>R</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Narendran</surname>
                            <given-names>K</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Nithya Shree</surname>
                            <given-names>V</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>IoT - Based ATM Pin Entry by Random Word Generator Using Design Thinking Framework.</chapter-title>
                    <source>

                        <italic toggle="yes">2023 9th International Conference on Advanced Computing and Communication Systems (ICACCS).</italic>
</source>
                    <year>2023</year>; pp.<fpage>949</fpage>&#x2013;<lpage>952</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICACCS57279.2023.10112662</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref10">
                <label>10</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>De Luca</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Lindqvist</surname>
                            <given-names>J</given-names>
                        </name>
</person-group>:
                    <article-title>Is secure and usable smartphone authentication asking too much?</article-title>
                    <source>

                        <italic toggle="yes">Computer (Long. Beach. Calif).</italic>
</source>
                    <year>2015</year>;<volume>48</volume>(<issue>5</issue>):<fpage>64</fpage>&#x2013;<lpage>68</lpage>.
                    <pub-id pub-id-type="doi">10.1109/MC.2015.134</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref11">
                <label>11</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Gautam</surname>
                            <given-names>AK</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kapoor</surname>
                            <given-names>R</given-names>
                        </name>
</person-group>:
                    <article-title>A Novel ES-RwCNN Based Finger Vein Recognition System with Effective L12 DTP Descriptor and AWM-WOA Selection.</article-title>
                    <source>

                        <italic toggle="yes">Eng. Lett.</italic>
</source>
                    <year>2022</year>;<volume>30</volume>(<issue>2</issue>):<fpage>882</fpage>&#x2013;<lpage>891</lpage>.
                    <ext-link ext-link-type="uri" xlink:href="https://www.scopus.com/inward/record.uri?eid=2-s2.0-85130699607&amp;partnerID=40&amp;md5=2b0756629055487e220a8091410118d1">Reference Source</ext-link>
                </mixed-citation>
            </ref>
            <ref id="ref12">
                <label>12</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Zhang</surname>
                            <given-names>WK</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kang</surname>
                            <given-names>MJ</given-names>
                        </name>
</person-group>:
                    <article-title>Factors Affecting the Use of Facial-Recognition Payment: An Example of Chinese Consumers.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Access.</italic>
</source>
                    <year>2019</year>;<volume>7</volume>:<fpage>154360</fpage>&#x2013;<lpage>154374</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ACCESS.2019.2927705</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref13">
                <label>13</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Salman</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Mishra</surname>
                            <given-names>RK</given-names>
                        </name>
</person-group>:
                    <article-title>AI-Enhanced Secure Mobile Banking System Utilizing Multi-Factor Authentication.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Exp. Res. Rev.</italic>
</source>
                    <year>2024</year>;<volume>45</volume>:<fpage>153</fpage>&#x2013;<lpage>172</lpage>.
                    <pub-id pub-id-type="doi">10.52756/ijerr.2024.v45spl.012</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref14">
                <label>14</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Arora</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Bhatia</surname>
                            <given-names>MPS</given-names>
                        </name>
</person-group>:
                    <article-title>Challenges and opportunities in biometric security: A survey.</article-title>
                    <source>

                        <italic toggle="yes">Inf. Secur. J. A Glob. Perspect.</italic>
</source>
                    <year>2022</year>;<volume>31</volume>(<issue>1</issue>):<fpage>28</fpage>&#x2013;<lpage>48</lpage>.
                    <pub-id pub-id-type="doi">10.1080/19393555.2021.1873464</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref15">
                <label>15</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Bart&#x0142;omiejczyk</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Imed</surname>
                            <given-names>EF</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kurkowski</surname>
                            <given-names>M</given-names>
                        </name>
</person-group>:
                    <article-title>Multifactor Authentication Protocol in a Mobile Environment.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Access.</italic>
</source>
                    <year>2019</year>;<volume>7</volume>:<fpage>157185</fpage>&#x2013;<lpage>157199</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ACCESS.2019.2948922</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref16">
                <label>16</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Tran-truong</surname>
                            <given-names>PT</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Pham</surname>
                            <given-names>MQ</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Son</surname>
                            <given-names>HX</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>A systematic review of multi-factor authentication in digital payment systems: NIST standards alignment and industry implementation analysis.</article-title>
                    <source>

                        <italic toggle="yes">J. Syst. Archit.</italic>
</source>
                    <year>2025</year>;<volume>162</volume>(<issue>March</issue>):<fpage>103402</fpage>.
                    <pub-id pub-id-type="doi">10.1016/j.sysarc.2025.103402</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref17">
                <label>17</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Prihodova</surname>
                            <given-names>K</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Hub</surname>
                            <given-names>M</given-names>
                        </name>
</person-group>:
                    <article-title>Hand-Based Biometric System Using Convolutional Neural Networks.</article-title>
                    <source>

                        <italic toggle="yes">Acta Inform. Pragensia.</italic>
</source>
                    <year>2020</year>;<volume>9</volume>(<issue>1</issue>):<fpage>48</fpage>&#x2013;<lpage>57</lpage>.
                    <pub-id pub-id-type="doi">10.18267/j.aip.131</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref18">
                <label>18</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Alruban</surname>
                            <given-names>A</given-names>
                        </name>
</person-group>:
                    <article-title>Prediction of Application Usage on Smartphones via Deep Learning.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Access.</italic>
</source>
                    <year>2022</year>;<volume>10</volume>:<fpage>49198</fpage>&#x2013;<lpage>49206</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ACCESS.2022.3171579</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref19">
                <label>19</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Alawami</surname>
                            <given-names>MA</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Abuhmed</surname>
                            <given-names>T</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Abuhamad</surname>
                            <given-names>M</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>MotionID: Towards practical behavioral biometrics-based implicit user authentication on smartphones.</article-title>
                    <source>

                        <italic toggle="yes">Pervasive Mob. Comput.</italic>
</source>
                    <year>2024</year>;<volume>101</volume>:<fpage>101922</fpage>.
                    <pub-id pub-id-type="doi">10.1016/j.pmcj.2024.101922</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref20">
                <label>20</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Katsini</surname>
                            <given-names>C</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Belk</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Fidas</surname>
                            <given-names>C</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Security and usability in knowledge-based user authentication: A review.</chapter-title>
                    <source>

                        <italic toggle="yes">Proceedings of the 20th Pan-Hellenic conference on informatics.</italic>
</source>
                    <year>2016</year>; pp.<fpage>1</fpage>&#x2013;<lpage>6</lpage>.</mixed-citation>
            </ref>
            <ref id="ref21">
                <label>21</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Varshney</surname>
                            <given-names>I</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sagar</surname>
                            <given-names>S</given-names>
                        </name>
</person-group>:
                    <chapter-title>Three Level Password Authentication System using Cryptography Approaches.</chapter-title>
                    <source>

                        <italic toggle="yes">2023 2nd International Conference for Innovation in Technology (INOCON).</italic>
</source>
                    <year>2023</year>; pp.<fpage>1</fpage>&#x2013;<lpage>7</lpage>.
                    <pub-id pub-id-type="doi">10.1109/INOCON57975.2023.10101077</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref22">
                <label>22</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Zhao</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Hu</surname>
                            <given-names>W</given-names>
                        </name>
</person-group>:
                    <article-title>Improvement on OTP authentication and a possession-based authentication framework.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Multimed. Intell. Secur.</italic>
</source>
                    <year>2018</year>;<volume>3</volume>(<issue>2</issue>):<fpage>187</fpage>.
                    <pub-id pub-id-type="doi">10.1504/ijmis.2018.10017674</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref23">
                <label>23</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Vivekanandan</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sastry</surname>
                            <given-names>VN</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Reddy</surname>
                            <given-names>US</given-names>
                        </name>
</person-group>:
                    <chapter-title>Biometric based User Authentication Protocol for Mobile Cloud Environment.</chapter-title>
                    <source>

                        <italic toggle="yes">2019 IEEE 5th International Conference on Identity, Security, and Behavior Analysis (ISBA).</italic>
</source>
                    <year>2019</year>; pp.<fpage>1</fpage>&#x2013;<lpage>6</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ISBA.2019.8778529</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref24">
                <label>24</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Rabie</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Handmann</surname>
                            <given-names>U</given-names>
                        </name>
</person-group>:
                    <chapter-title>Biometrie for home environment challenges, modalities and applications.</chapter-title>
                    <source>

                        <italic toggle="yes">2015 World Congress on Information Technology and Computer Applications (WCITCA).</italic>
</source>
                    <year>2015</year>; pp.<fpage>1</fpage>&#x2013;<lpage>4</lpage>.
                    <pub-id pub-id-type="doi">10.1109/WCITCA.2015.7367021</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref25">
                <label>25</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Prabakaran</surname>
                            <given-names>D</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ramachandran</surname>
                            <given-names>S</given-names>
                        </name>
</person-group>:
                    <article-title>Multi-factor authentication for secured financial transactions in cloud environment.</article-title>
                    <source>

                        <italic toggle="yes">Comput. Mater. Contin.</italic>
</source>
                    <year>2021</year>;<volume>70</volume>(<issue>1</issue>):<fpage>1781</fpage>&#x2013;<lpage>1798</lpage>.
                    <pub-id pub-id-type="doi">10.32604/cmc.2022.019591</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref26">
                <label>26</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Quality</surname>
                            <given-names>S</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>The Critical Review of Social Sciences Studies Unlocking Mobile Banking Adoption: The Interplay of Interface Design.</article-title>
                    <year>2025</year>;<volume>3</volume>:<fpage>251</fpage>&#x2013;<lpage>274</lpage>.</mixed-citation>
            </ref>
            <ref id="ref27">
                <label>27</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Benjapatanamongkol</surname>
                            <given-names>N</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Bhattarakosol</surname>
                            <given-names>P</given-names>
                        </name>
</person-group>:
                    <chapter-title>A Preliminary Study of Finger Area and Keystroke Dynamics Using Numeric Keypad With Random Numbers on Android Phones.</chapter-title>
                    <source>

                        <italic toggle="yes">2019 23rd International Computer Science and Engineering Conference (ICSEC).</italic>
</source>
                    <year>2019</year>; pp.<fpage>30</fpage>&#x2013;<lpage>34</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICSEC47112.2019.8974686</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref28">
                <label>28</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Sahdev</surname>
                            <given-names>SL</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Singh</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kaur</surname>
                            <given-names>N</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Behavioral biometrics for adaptive authentication in digital banking - Guard against flawless privacy.</article-title>
                    <source>

                        <italic toggle="yes">Proceedings of International Conference on Innovative Practices in Technology and Management, ICIPTM 2021.</italic>
</source>
                    <year>2021</year>;<fpage>261</fpage>&#x2013;<lpage>265</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICIPTM52218.2021.9388364</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref29">
                <label>29</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Verma</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sawhney</surname>
                            <given-names>R</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Chalia</surname>
                            <given-names>R</given-names>
                        </name>
</person-group>:
                    <chapter-title>Biometric based user authentication in smart phones.</chapter-title>
                    <source>

                        <italic toggle="yes">2017 International Conference on Next Generation Computing and Information Systems (ICNGCIS).</italic>
</source>
                    <year>2017</year>; pp.<fpage>183</fpage>&#x2013;<lpage>188</lpage>.</mixed-citation>
            </ref>
            <ref id="ref30">
                <label>30</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Aldarwish</surname>
                            <given-names>AJY</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Patel</surname>
                            <given-names>K</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Yassin</surname>
                            <given-names>AA</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Virtual SmartCards-based Authentication in Healthcare Systems and Applications.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Comput. Inf. Syst. Ind. Manag. Appl.</italic>
</source>
                    <year>2023</year>;<volume>15</volume>(<issue>2023</issue>):<fpage>522</fpage>&#x2013;<lpage>530</lpage>.
                    <ext-link ext-link-type="uri" xlink:href="https://www.scopus.com/inward/record.uri?eid=2-s2.0-85167887166&amp;partnerID=40&amp;md5=f7b5c0d5ca601c805cbd68b27e2c2ddc">Reference Source</ext-link>
                </mixed-citation>
            </ref>
            <ref id="ref31">
                <label>31</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Wazid</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Zeadally</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Das</surname>
                            <given-names>AK</given-names>
                        </name>
</person-group>:
                    <article-title>Mobile Banking: Evolution and Threats: Malware Threats and Security Solutions.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Consum. Electron. Mag.</italic>
</source>
                    <year>2019</year>;<volume>8</volume>(<issue>2</issue>):<fpage>56</fpage>&#x2013;<lpage>60</lpage>.
                    <pub-id pub-id-type="doi">10.1109/MCE.2018.2881291</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref32">
                <label>32</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Nsaif</surname>
                            <given-names>AK</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ali</surname>
                            <given-names>SHM</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Nseaf</surname>
                            <given-names>AK</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Robust and Swift Iris Recognition at distance based on novel pupil segmentation.</article-title>
                    <source>

                        <italic toggle="yes">J. King Saud Univ. - Comput. Inf. Sci.</italic>
</source>
                    <year>2022</year>;<volume>34</volume>(<issue>10, Part B</issue>):<fpage>9184</fpage>&#x2013;<lpage>9206</lpage>.
                    <pub-id pub-id-type="doi">10.1016/j.jksuci.2022.09.002</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref33">
                <label>33</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Venkatesh</surname>
                            <given-names>G</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Gopal</surname>
                            <given-names>SV</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Meduri</surname>
                            <given-names>M</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Application of session login and one time password in fund transfer system using RSA algorithm.</chapter-title>
                    <source>

                        <italic toggle="yes">2017 International conference of Electronics, Communication and Aerospace Technology (ICECA).</italic>
</source>
                    <year>2017</year>; pp.<fpage>732</fpage>&#x2013;<lpage>738</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICECA.2017.8212763</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref34">
                <label>34</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Mohammed</surname>
                            <given-names>HH</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Baker</surname>
                            <given-names>SA</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Nori</surname>
                            <given-names>AS</given-names>
                        </name>
</person-group>:
                    <article-title>Biometric identity Authentication System Using Hand Geometry Measurements.</article-title>
                    <source>

                        <italic toggle="yes">J. Phys. Conf. Ser.</italic>
</source>
                    <year>1804</year>;<volume>1804</volume>:<fpage>012144</fpage>.
                    <pub-id pub-id-type="doi">10.1088/1742-6596/1804/1/012144</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref35">
                <label>35</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Mouliou</surname>
                            <given-names>DS</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Gourgoulianis</surname>
                            <given-names>KI</given-names>
                        </name>
</person-group>:
                    <article-title>False-positive and false-negative COVID-19 cases: respiratory prevention and management strategies, vaccination, and further perspectives.</article-title>
                    <source>

                        <italic toggle="yes">Expert Rev. Respir. Med.</italic>
</source>
                    <year>2021</year>;<volume>15</volume>(<issue>8</issue>):<fpage>993</fpage>&#x2013;<lpage>1002</lpage>.
                    <pub-id pub-id-type="pmid">33896332</pub-id>
                    <pub-id pub-id-type="doi">10.1080/17476348.2021.1917389</pub-id>
                    <pub-id pub-id-type="pmcid">PMC8074645</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref36">
                <label>36</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Asghar</surname>
                            <given-names>MR</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Backes</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Simeonovski</surname>
                            <given-names>M</given-names>
                        </name>
</person-group>:
                    <chapter-title>PRIMA: Privacy-Preserving Identity and Access Management at Internet-Scale.</chapter-title>
                    <source>

                        <italic toggle="yes">2018 IEEE International Conference on Communications (ICC).</italic>
</source>
                    <year>2018</year>; pp.<fpage>1</fpage>&#x2013;<lpage>6</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICC.2018.8422732</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref37">
                <label>37</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Yang</surname>
                            <given-names>C</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Chen</surname>
                            <given-names>J</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Zeng</surname>
                            <given-names>B</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Overview of Blockchain Privacy Protection.</chapter-title>
                    <source>

                        <italic toggle="yes">2022 IEEE 8th Intl Conference on Big Data Security on Cloud (BigDataSecurity), IEEE Intl Conference on High Performance and Smart Computing, (HPSC) and IEEE Intl Conference on Intelligent Data and Security (IDS).</italic>
</source>
                    <year>2022</year>; pp.<fpage>212</fpage>&#x2013;<lpage>217</lpage>.
                    <pub-id pub-id-type="doi">10.1109/BigDataSecurityHPSCIDS54978.2022.00048</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref38">
                <label>38</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Jain</surname>
                            <given-names>AK</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Deb</surname>
                            <given-names>D</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Engelsma</surname>
                            <given-names>JJ</given-names>
                        </name>
</person-group>:
                    <article-title>Biometrics: Trust, But Verify.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Trans. Biometrics, Behav. Identity Sci.</italic>
</source>
                    <year>2022</year>;<volume>4</volume>(<issue>3</issue>):<fpage>303</fpage>&#x2013;<lpage>323</lpage>.
                    <pub-id pub-id-type="doi">10.1109/TBIOM.2021.3115465</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref39">
                <label>39</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Kouser</surname>
                            <given-names>F</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Nagaratna</surname>
                            <given-names>PVR</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sree</surname>
                            <given-names>B</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ravikiran</surname>
                        </name>
</person-group>:
                    <chapter-title>Highly Secure Multiple Account Bank Affinity Card-A Successor for ATM Card.</chapter-title>
                    <source>

                        <italic toggle="yes">2018 International Conference on Design Innovations for 3Cs Compute Communicate Control (ICDI3C).</italic>
</source>
                    <year>2018</year>; pp.<fpage>115</fpage>&#x2013;<lpage>119</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICDI3C.2018.00033</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref40">
                <label>40</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Lupu</surname>
                            <given-names>C</given-names>
                        </name>

                        <name name-style="western">
                            <surname>G&#x0103;itan</surname>
                            <given-names>V-G</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Lupu</surname>
                            <given-names>V</given-names>
                        </name>
</person-group>:
                    <chapter-title>Fingerprints used for security enhancement of online banking authentication process.</chapter-title>
                    <source>

                        <italic toggle="yes">2015 7th International Conference on Electronics, Computers and Artificial Intelligence (ECAI).</italic>
</source>
                    <year>2015</year>; pp.<fpage>217</fpage>&#x2013;<lpage>220</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ECAI.2015.7301177</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref41">
                <label>41</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Muley</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kute</surname>
                            <given-names>V</given-names>
                        </name>
</person-group>:
                    <chapter-title>Prospective solution to bank card system using fingerprint.</chapter-title>
                    <source>

                        <italic toggle="yes">2018 2nd International Conference on Inventive Systems and Control (ICISC).</italic>
</source>
                    <year>2018</year>; pp.<fpage>898</fpage>&#x2013;<lpage>902</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICISC.2018.8398930</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref42">
                <label>42</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Aziz</surname>
                            <given-names>MF</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Taraka</surname>
                            <given-names>GS</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sidharta</surname>
                            <given-names>S</given-names>
                        </name>
</person-group>:
                    <article-title>Face Recognition as Base Protocol in Online Transactions.</article-title>
                    <source>

                        <italic toggle="yes">Procedia Comput. Sci.</italic>
</source>
                    <year>2024</year>;<volume>245</volume>:<fpage>166</fpage>&#x2013;<lpage>175</lpage>.
                    <pub-id pub-id-type="doi">10.1016/j.procs.2024.10.240</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref43">
                <label>43</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Khairnar</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Gite</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kotecha</surname>
                            <given-names>K</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Face Liveness Detection Using Artificial Intelligence Techniques: A Systematic Literature Review and Future Directions.</article-title>
                    <source>

                        <italic toggle="yes">Big Data Cogn. Comput.</italic>
</source>
                    <year>2023</year>;<volume>7</volume>(<issue>1</issue>).
                    <pub-id pub-id-type="doi">10.3390/bdcc7010037</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref44">
                <label>44</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Aydin</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Taskiran</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kahraman</surname>
                            <given-names>N</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>A Fusion-Based Deep Neural Networks Approach for Face Liveness Detection.</chapter-title>
                    <source>

                        <italic toggle="yes">2023 International Conference on Innovations in Intelligent Systems and Applications (INISTA).</italic>
</source>
                    <year>2023</year>; pp.<fpage>1</fpage>&#x2013;<lpage>6</lpage>.
                    <pub-id pub-id-type="doi">10.1109/INISTA59065.2023.10310519</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref45">
                <label>45</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Soares</surname>
                            <given-names>J</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Gaikwad</surname>
                            <given-names>AN</given-names>
                        </name>
</person-group>:
                    <chapter-title>Fingerprint and iris biometric controlled smart banking machine embedded with GSM technology for OTP.</chapter-title>
                    <source>

                        <italic toggle="yes">2016 International Conference on Automatic Control and Dynamic Optimization Techniques (ICACDOT).</italic>
</source>
                    <year>2016</year>; pp.<fpage>409</fpage>&#x2013;<lpage>414</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICACDOT.2016.7877618</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref46">
                <label>46</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Kinkiri</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Keates</surname>
                            <given-names>S</given-names>
                        </name>
</person-group>:
                    <chapter-title>Speaker Identification: Variations of a Human voice.</chapter-title>
                    <source>

                        <italic toggle="yes">Proceedings of the 2020 International Conference on Advances in Computing and Communication Engineering, ICACCE 2020.</italic>
</source>
                    <year>2020</year>.
                    <pub-id pub-id-type="doi">10.1109/ICACCE49060.2020.9154998</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref47">
                <label>47</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Li</surname>
                            <given-names>X</given-names>
                        </name>
</person-group>:
                    <chapter-title>Application of biometric identification technology for network security in the network and information era, which will greatly change the life-style of people.</chapter-title>
                    <source>

                        <italic toggle="yes">2015 IEEE 12th International Conference on Networking, Sensing and Control.</italic>
</source>
                    <year>2015</year>; pp.<fpage>566</fpage>&#x2013;<lpage>569</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICNSC.2015.7116099</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref48">
                <label>48</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Mallika</surname>
                        </name>

                        <name name-style="western">
                            <surname>Deep</surname>
                            <given-names>V</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sharma</surname>
                            <given-names>P</given-names>
                        </name>
</person-group>:
                    <chapter-title>Analysis and Impact of Cyber Security Threats in India using Mazarbot Case Study.</chapter-title>
                    <source>

                        <italic toggle="yes">2018 International Conference on Computational Techniques, Electronics and Mechanical Systems (CTEMS).</italic>
</source>
                    <year>2018</year>; pp.<fpage>499</fpage>&#x2013;<lpage>503</lpage>.
                    <pub-id pub-id-type="doi">10.1109/CTEMS.2018.8769140</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref49">
                <label>49</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Golatkar</surname>
                            <given-names>AN</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Vinod Thawari</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Yadav</surname>
                            <given-names>AM</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Design of Secured Multifactor Fingerprint Authentication System for Bank Employee.</chapter-title>
                    <source>

                        <italic toggle="yes">2022 3rd International Conference on Electronics and Sustainable Communication Systems (ICESC).</italic>
</source>
                    <year>2022</year>; pp.<fpage>662</fpage>&#x2013;<lpage>667</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICESC54411.2022.9885549</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref50">
                <label>50</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Kiyani</surname>
                            <given-names>AT</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Lasebae</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ali</surname>
                            <given-names>K</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Secure online banking with biometrics.</chapter-title>
                    <source>

                        <italic toggle="yes">2019 International Conference on Advances in the Emerging Computing Technologies, AECT 2019.</italic>
</source>
                    <year>2020</year>.
                    <pub-id pub-id-type="doi">10.1109/AECT47998.2020.9194214</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref51">
                <label>51</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Dee</surname>
                            <given-names>T</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Richardson</surname>
                            <given-names>I</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Tyagi</surname>
                            <given-names>A</given-names>
                        </name>
</person-group>:
                    <article-title>Continuous Nonintrusive Mobile Device Soft Keyboard Biometric Authentication.</article-title>
                    <source>

                        <italic toggle="yes">Cryptography.</italic>
</source>
                    <year>2022</year>;<volume>6</volume>(<issue>2</issue>).
                    <pub-id pub-id-type="doi">10.3390/cryptography6020014</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref52">
                <label>52</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Dhoot</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Nazarov</surname>
                            <given-names>AN</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Koupaei</surname>
                            <given-names>ANA</given-names>
                        </name>
</person-group>:
                    <chapter-title>A Security Risk Model for Online Banking System.</chapter-title>
                    <source>

                        <italic toggle="yes">2020 Systems of Signals Generating and Processing in the Field of on Board Communications.</italic>
</source>
                    <year>2020</year>.
                    <pub-id pub-id-type="doi">10.1109/IEEECONF48371.2020.9078655</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref53">
                <label>53</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Almadani</surname>
                            <given-names>MS</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Alotaibi</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Alsobhi</surname>
                            <given-names>H</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Blockchain-based multi-factor authentication: A systematic literature review.</article-title>
                    <source>

                        <italic toggle="yes">Internet of Things.</italic>
</source>
                    <year>2023</year>;<volume>23</volume>:<fpage>100844</fpage>.
                    <pub-id pub-id-type="doi">10.1016/j.iot.2023.100844</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref54">
                <label>54</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Nagabushanam</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Jeevanandham</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ramalingam</surname>
                            <given-names>S</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>AI based E-ATM Security and Surveillance System using BLYNK-loT Server.</chapter-title>
                    <source>

                        <italic toggle="yes">2022 3rd International Conference on Communication, Computing and Industry 4.0 (C2I4).</italic>
</source>
                    <year>2022</year>; pp.<fpage>1</fpage>&#x2013;<lpage>5</lpage>.
                    <pub-id pub-id-type="doi">10.1109/C2I456876.2022.10051613</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref55">
                <label>55</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Lamoyero</surname>
                            <given-names>Z</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Fajana</surname>
                            <given-names>O</given-names>
                        </name>
</person-group>:
                    <chapter-title>Exposed: Critical Vulnerabilities in USSD Banking Authentication Protocols.</chapter-title>
                    <source>

                        <italic toggle="yes">2023 IEEE International Conference on Cyber Security and Resilience (CSR).</italic>
</source>
                    <year>2023</year>; pp.<fpage>275</fpage>&#x2013;<lpage>280</lpage>.
                    <pub-id pub-id-type="doi">10.1109/CSR57506.2023.10224933</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref56">
                <label>56</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Wang</surname>
                            <given-names>X</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Yan</surname>
                            <given-names>Z</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Zhang</surname>
                            <given-names>R</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Attacks and defenses in user authentication systems: A survey.</article-title>
                    <source>

                        <italic toggle="yes">J. Netw. Comput. Appl.</italic>
</source>
                    <year>2021</year>;<volume>188</volume>:<fpage>103080</fpage>.
                    <pub-id pub-id-type="doi">10.1016/j.jnca.2021.103080</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref57">
                <label>57</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Subairu</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Alhassan</surname>
                            <given-names>J</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Abdulhamid</surname>
                            <given-names>S</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>A Review of Detection Methodologies for Quick Response code Phishing Attacks.</chapter-title>
                    <source>

                        <italic toggle="yes">2020 2nd International Conference on Computer and Information Sciences (ICCIS).</italic>
</source>
                    <year>2020</year>; pp.<fpage>1</fpage>&#x2013;<lpage>5</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICCIS49240.2020.9257687</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref58">
                <label>58</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Mihali</surname>
                            <given-names>S-I</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ni&#x021b;&#x0103;</surname>
                            <given-names>&#x0218;-L</given-names>
                        </name>
</person-group>:
                    <chapter-title>Cybersecurity of Online Financial Systems using Machine Learning Techniques.</chapter-title>
                    <source>

                        <italic toggle="yes">2024 16th International Conference on Electronics, Computers and Artificial Intelligence (ECAI).</italic>
</source>
                    <year>2024</year>; pp.<fpage>1</fpage>&#x2013;<lpage>6</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ECAI61503.2024.10607479</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref59">
                <label>59</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Sarkis-Onofre</surname>
                            <given-names>R</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Catal&#x00e1;-L&#x00f3;pez</surname>
                            <given-names>F</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Aromataris</surname>
                            <given-names>E</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>How to properly use the PRISMA Statement.</article-title>
                    <source>

                        <italic toggle="yes">Syst. Rev.</italic>
</source>
                    <year>2021</year>;<volume>10</volume>(<issue>1</issue>):<fpage>115</fpage>&#x2013;<lpage>117</lpage>.
                    <pub-id pub-id-type="pmid">33875004</pub-id>
                    <pub-id pub-id-type="doi">10.1186/s13643-021-01671-z</pub-id>
                    <pub-id pub-id-type="pmcid">PMC8056687</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref60">
                <label>60</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Yusop</surname>
                            <given-names>MIM</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kamarudin</surname>
                            <given-names>NH</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Suhaimi</surname>
                            <given-names>NHS</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Advancing Passwordless Authentication: A Systematic Review of Methods, Challenges, and Future Directions for Secure User Identity.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Access.</italic>
</source>
                    <year>2025</year>;<volume>13</volume>(<issue>December 2024</issue>):<fpage>13919</fpage>&#x2013;<lpage>13943</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ACCESS.2025.3528960</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref61">
                <label>61</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Kusumaningsih</surname>
                            <given-names>D</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Darmayanti</surname>
                            <given-names>R</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Latipun</surname>
                            <given-names>L</given-names>
                        </name>
</person-group>:
                    <article-title>How Mendeley Software Enhances Students.</article-title>
                    <source>

                        <italic toggle="yes">Scientific Writing through Mentorship and Training Opportunities.</italic>
</source>
                    <year>2024</year>;<volume>2</volume>(<issue>June</issue>):<fpage>45</fpage>&#x2013;<lpage>56</lpage>.
                    <pub-id pub-id-type="doi">10.61650/jip-dimas.v2i1.297</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref62">
                <label>62</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Zhao</surname>
                            <given-names>F</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Li</surname>
                            <given-names>J</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Zhang</surname>
                            <given-names>L</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Multi-view face recognition using deep neural networks.</article-title>
                    <source>

                        <italic toggle="yes">Futur. Gener. Comput. Syst.</italic>
</source>
                    <year>2020</year>;<volume>111</volume>:<fpage>375</fpage>&#x2013;<lpage>380</lpage>.
                    <pub-id pub-id-type="doi">10.1016/j.future.2020.05.002</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref63">
                <label>63</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Garcia-Martin</surname>
                            <given-names>R</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sanchez-Reillo</surname>
                            <given-names>R</given-names>
                        </name>
</person-group>:
                    <article-title>Vein Biometric Recognition on a Smartphone.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Access.</italic>
</source>
                    <year>2020</year>;<volume>8</volume>:<fpage>104801</fpage>&#x2013;<lpage>104813</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ACCESS.2020.3000044</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref64">
                <label>64</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Estrela</surname>
                            <given-names>PMAB</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Albuquerque</surname>
                            <given-names>RO</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Amaral</surname>
                            <given-names>DM</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>A framework for continuous authentication based on touch dynamics biometrics for mobile banking applications.</article-title>
                    <source>

                        <italic toggle="yes">Sensors.</italic>
</source>
                    <year>2021</year>;<volume>21</volume>(<issue>12</issue>).
                    <pub-id pub-id-type="pmid">34205344</pub-id>
                    <pub-id pub-id-type="doi">10.3390/s21124212</pub-id>
                    <pub-id pub-id-type="pmcid">PMC8234896</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref65">
                <label>65</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Vinod</surname>
                            <given-names>PR</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Anitha</surname>
                            <given-names>A</given-names>
                        </name>
</person-group>:
                    <article-title>A Novel Human Activity Recognition Model for Smartphone Authentication.</article-title>
                    <source>

                        <italic toggle="yes">Wirel. Pers. Commun.</italic>
</source>
                    <year>2023</year>;<volume>129</volume>(<issue>4</issue>):<fpage>2791</fpage>&#x2013;<lpage>2812</lpage>.
                    <pub-id pub-id-type="doi">10.1007/s11277-023-10258-x</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref66">
                <label>66</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Hublikar</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Pattanashetty</surname>
                            <given-names>VB</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Mane</surname>
                            <given-names>V</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Biometric-based authentication in online banking.</chapter-title>
                    <source>

                        <italic toggle="yes">Information and Communication Technology for Competitive Strategies (ICTCS 2021) ICT: Applications and Social Interfaces.</italic>
</source>
                    <year>Spring, 2022</year>; pp.<fpage>249</fpage>&#x2013;<lpage>259</lpage>.</mixed-citation>
            </ref>
            <ref id="ref67">
                <label>67</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Jancok</surname>
                            <given-names>V</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ries</surname>
                            <given-names>M</given-names>
                        </name>
</person-group>:
                    <article-title>Security Aspects of Behavioral Biometrics for Strong User Authentication.</article-title>
                    <source>

                        <italic toggle="yes">ACM Int. Conf. Proceeding Ser.</italic>
</source>
                    <year>2022</year>;<volume>1</volume>(<issue>1</issue>):<fpage>57</fpage>&#x2013;<lpage>63</lpage>.
                    <pub-id pub-id-type="doi">10.1145/3546118.3546152</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref68">
                <label>68</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Hassan</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>George</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Varghese</surname>
                            <given-names>L</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>The Biometric Cardless Transaction with Shuffling Keypad Using Proximity Sensor.</chapter-title>
                    <source>

                        <italic toggle="yes">2020 Second International Conference on Inventive Research in Computing Applications (ICIRCA).</italic>
</source>
                    <year>2020</year>; pp.<fpage>505</fpage>&#x2013;<lpage>508</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICIRCA48905.2020.9183314</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref69">
                <label>69</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Venkatesan</surname>
                            <given-names>R</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Secure online payment through facial recognition and proxy detection with the help of TripleDES encryption.</article-title>
                    <source>

                        <italic toggle="yes">J. Discret. Math. Sci. Cryptogr.</italic>
</source>
                    <year>2021</year>;<volume>24</volume>(<issue>8</issue>):<fpage>2195</fpage>&#x2013;<lpage>2205</lpage>.
                    <pub-id pub-id-type="doi">10.1080/09720529.2021.2011096</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref70">
                <label>70</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Navin Kumar</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Raghul</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Nirmal Prasad</surname>
                            <given-names>K</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Biometrically Secured ATM Vigilance System.</chapter-title>
                    <source>

                        <italic toggle="yes">2021 7th International Conference on Advanced Computing and Communication Systems (ICACCS).</italic>
</source>
                    <year>2021</year>; pp.<fpage>919</fpage>&#x2013;<lpage>922</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICACCS51430.2021.9441975</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref71">
                <label>71</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Hussein</surname>
                            <given-names>O</given-names>
                        </name>
</person-group>:
                    <chapter-title>A Proposed Approach to Secure Automated Teller Machine-Based Financial Transactions.</chapter-title>
                    <source>

                        <italic toggle="yes">2021 Tenth International Conference on Intelligent Computing and Information Systems (ICICIS).</italic>
</source>
                    <year>2021</year>; pp.<fpage>236</fpage>&#x2013;<lpage>242</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICICIS52592.2021.9694249</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref72">
                <label>72</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Bah</surname>
                            <given-names>CU</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Seyal</surname>
                            <given-names>AH</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Yahya</surname>
                            <given-names>U</given-names>
                        </name>
</person-group>:
                    <article-title>Combining PIN and Biometric Identifications as Enhancement to User Authentication in Internet Banking.</article-title>
                    <year>2021</year>;<fpage>1</fpage>&#x2013;<lpage>4</lpage>.
                    <ext-link ext-link-type="uri" xlink:href="http://arxiv.org/abs/2105.09496">Reference Source</ext-link>
                </mixed-citation>
            </ref>
            <ref id="ref73">
                <label>73</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Moepi</surname>
                            <given-names>GL</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Mathonsi</surname>
                            <given-names>TE</given-names>
                        </name>
</person-group>:
                    <chapter-title>Multi-Factor Authentication Method for Online Banking Services in South Africa.</chapter-title>
                    <source>

                        <italic toggle="yes">2021 International Conference on Electrical, Computer and Energy Technologies (ICECET).</italic>
</source>
                    <year>2021</year>; pp.<fpage>1</fpage>&#x2013;<lpage>5</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICECET52533.2021.9698724</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref74">
                <label>74</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Incel</surname>
                            <given-names>&#x00d6;D</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>DAKOTA: Sensor and touch screen based continuous authentication on a mobile banking application.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Access.</italic>
</source>
                    <year>2021</year>;<volume>9</volume>(<issue>99</issue>):<fpage>38943</fpage>&#x2013;<lpage>38960</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ACCESS.2021.3063424</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref75">
                <label>75</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Raghavendra Jingade</surname>
                            <given-names>R</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sanjeev Kunte</surname>
                            <given-names>R</given-names>
                        </name>
</person-group>:
                    <article-title>DOG-ADTCP: A new feature descriptor for protection of face identification system.</article-title>
                    <source>

                        <italic toggle="yes">Expert Syst. Appl.</italic>
</source>
                    <year>2022</year>;<volume>201</volume>:<fpage>117207</fpage>.
                    <pub-id pub-id-type="doi">10.1016/j.eswa.2022.117207</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref76">
                <label>76</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Rahman</surname>
                            <given-names>A</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Robust biometric system using session invariant multimodal EEG and keystroke dynamics by the ensemble of self-ONNs.</article-title>
                    <source>

                        <italic toggle="yes">Comput. Biol. Med.</italic>
</source>
                    <year>2022</year>;<volume>142</volume>:<fpage>105238</fpage>.
                    <pub-id pub-id-type="pmid">35077938</pub-id>
                    <pub-id pub-id-type="doi">10.1016/j.compbiomed.2022.105238</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref77">
                <label>77</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Hussein</surname>
                            <given-names>O</given-names>
                        </name>
</person-group>:
                    <chapter-title>A Proposed Anti-Fraud Authentication Approach for Mobile Banking Apps.</chapter-title>
                    <source>

                        <italic toggle="yes">2022 4th Novel Intelligent and Leading Emerging Sciences Conference (NILES).</italic>
</source>
                    <year>2022</year>; pp.<fpage>56</fpage>&#x2013;<lpage>61</lpage>.
                    <pub-id pub-id-type="doi">10.1109/NILES56402.2022.9942402</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref78">
                <label>78</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Kalmani</surname>
                            <given-names>S</given-names>
                        </name>

                        <collab>D. U</collab>
</person-group>:
                    <chapter-title>Application of Computer Vision for Multi-Layered Security to ATM Machine using Deep Learning Concept.</chapter-title>
                    <source>

                        <italic toggle="yes">2022 International Conference on Applied Artificial Intelligence and Computing (ICAAIC).</italic>
</source>
                    <year>2022</year>; pp.<fpage>999</fpage>&#x2013;<lpage>1004</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICAAIC53929.2022.9793149</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref79">
                <label>79</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Chaubey</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Bhalerao</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Mangaonkar</surname>
                            <given-names>N</given-names>
                        </name>
</person-group>:
                    <chapter-title>AutoKYC: Automation of Identity establishment and authentication in KYC process using Text extraction and face recognition.</chapter-title>
                    <source>

                        <italic toggle="yes">2022 2nd Asian Conference on Innovation in Technology (ASIANCON).</italic>
</source>
                    <year>2022</year>; pp.<fpage>1</fpage>&#x2013;<lpage>6</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ASIANCON55314.2022.9909442</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref80">
                <label>80</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Tilloo</surname>
                            <given-names>I</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Bhingarkar</surname>
                            <given-names>S</given-names>
                        </name>
</person-group>:
                    <chapter-title>Cardless Cash Withdrawal Using Palm Vein Technology.</chapter-title>
                    <source>

                        <italic toggle="yes">2022 International Conference on Futuristic Technologies (INCOFT).</italic>
</source>
                    <year>2022</year>; pp.<fpage>1</fpage>&#x2013;<lpage>5</lpage>.
                    <pub-id pub-id-type="doi">10.1109/INCOFT55651.2022.10094450</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref81">
                <label>81</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Horng</surname>
                            <given-names>S-J</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Vu</surname>
                            <given-names>D-T</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Nguyen</surname>
                            <given-names>T-V</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Recognizing Palm Vein in Smartphones Using RGB Images.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Trans. Ind. Informatics.</italic>
</source>
                    <year>2022</year>;<volume>18</volume>(<issue>9</issue>):<fpage>5992</fpage>&#x2013;<lpage>6002</lpage>.
                    <pub-id pub-id-type="doi">10.1109/TII.2021.3134016</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref82">
                <label>82</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Shukla</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Varshney</surname>
                            <given-names>G</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Singh</surname>
                            <given-names>S</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>A Passwordless MFA Utlizing Biometrics, Proximity and Contactless Communication.</article-title>
                </mixed-citation>
            </ref>
            <ref id="ref83">
                <label>83</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Rayani</surname>
                            <given-names>PK</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Changder</surname>
                            <given-names>S</given-names>
                        </name>
</person-group>:
                    <article-title>Sensor-based continuous user authentication on smartphone through machine learning.</article-title>
                    <source>

                        <italic toggle="yes">Microprocess. Microsyst.</italic>
</source>
                    <year>2023</year>;<volume>96</volume>:<fpage>104750</fpage>.
                    <pub-id pub-id-type="doi">10.1016/j.micpro.2022.104750</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref84">
                <label>84</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Aaby</surname>
                            <given-names>P</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Giuffrida</surname>
                            <given-names>MV</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Buchanan</surname>
                            <given-names>WJ</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>An omnidirectional approach to touch-based continuous authentication.</article-title>
                    <source>

                        <italic toggle="yes">Comput. Secur.</italic>
</source>
                    <year>2023</year>;<volume>128</volume>:<fpage>103146</fpage>.
                    <pub-id pub-id-type="doi">10.1016/j.cose.2023.103146</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref85">
                <label>85</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Moepi</surname>
                            <given-names>GL</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Mathonsi</surname>
                            <given-names>TE</given-names>
                        </name>
</person-group>:
                    <article-title>Implementation of an Adaptive Five-Factor Authentication Scheme for Online Banking Services in South Africa.</article-title>
                    <source>

                        <italic toggle="yes">IEEE AFRICON Conference.</italic>
</source>
                    <year>2023</year>.
                    <pub-id pub-id-type="doi">10.1109/AFRICON55910.2023.10293332</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref86">
                <label>86</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Shakil</surname>
                            <given-names>KA</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Zareen</surname>
                            <given-names>FJ</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Alam</surname>
                            <given-names>M</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>BAMCloud: a cloud based Mobile biometric authentication framework.</article-title>
                    <source>

                        <italic toggle="yes">Multimed. Tools Appl.</italic>
</source>
                    <year>2023</year>;<volume>82</volume>(<issue>25</issue>):<fpage>39571</fpage>&#x2013;<lpage>39600</lpage>.
                    <pub-id pub-id-type="doi">10.1007/s11042-022-13514-7</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref87">
                <label>87</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Nosrati</surname>
                            <given-names>L</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Bidgoli</surname>
                            <given-names>AM</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Javadi</surname>
                            <given-names>HHS</given-names>
                        </name>
</person-group>:
                    <article-title>Identifying People&#x2019;s Faces in Smart Banking Systems Using Artificial Neural Networks.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Comput. Intell. Syst.</italic>
</source>
                    <year>2024</year>;<volume>17</volume>(<issue>1</issue>).
                    <pub-id pub-id-type="doi">10.1007/s44196-023-00383-7</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref88">
                <label>88</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Anitha</surname>
                            <given-names>K</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Vishal</surname>
                            <given-names>JS</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Prabakar</surname>
                            <given-names>B</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Enhancing Payment Security: Face Recognition Integration With Razorpay.</chapter-title>
                    <source>

                        <italic toggle="yes">2024 2nd International Conference on Artificial Intelligence and Machine Learning Applications Theme: Healthcare and Internet of Things (AIMLA).</italic>
</source>
                    <year>2024</year>; pp.<fpage>1</fpage>&#x2013;<lpage>6</lpage>.
                    <pub-id pub-id-type="doi">10.1109/AIMLA59606.2024.10531459</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref89">
                <label>89</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Saba Kockan</surname>
                            <given-names>F</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Bolat</surname>
                            <given-names>B</given-names>
                        </name>
</person-group>:
                    <article-title>ECG Biometrics on Mobile Devices: High-Accuracy Authentication Using i-Vectors and Cepstral Coefficients.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Access.</italic>
</source>
                    <year>2025</year>;<volume>13</volume>(<issue>February</issue>):<fpage>52572</fpage>&#x2013;<lpage>52591</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ACCESS.2025.3553423</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref90">
                <label>90</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Sumalatha</surname>
                            <given-names>U</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Prakasha</surname>
                            <given-names>K</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Prabhu</surname>
                            <given-names>S</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Multimodal biometric authentication: a novel deep learning framework integrating ECG, fingerprint, and finger knuckle print for high-security applications.</article-title>
                    <source>

                        <italic toggle="yes">Eng. Res. Express.</italic>
</source>
                    <year>2025</year>;<volume>7</volume>(<issue>1</issue>).
                    <pub-id pub-id-type="doi">10.1088/2631-8695/ad9aa0</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref91">
                <label>91</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Omoze</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Omaji</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Edegbe</surname>
                            <given-names>GN</given-names>
                        </name>
</person-group>:
                    <article-title>Machine Learning-Based Multimodal Biometric Authentication System (Facial and Fingerprint Recognition) for Online Voting Systems.</article-title>
                    <year>2025</year>;<volume>8</volume>(<issue>1</issue>):<fpage>122</fpage>&#x2013;<lpage>128</lpage>.</mixed-citation>
            </ref>
            <ref id="ref92">
                <label>92</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Mohamed</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Salama</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Shebka</surname>
                            <given-names>N</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Enhancing Network Access Control using Multi-Modal Biometric Authentication Framework.</article-title>
                    <source>

                        <italic toggle="yes">Eng. Technol. Appl. Sci. Res.</italic>
</source>
                    <year>2025</year>;<volume>15</volume>(<issue>1</issue>):<fpage>20144</fpage>&#x2013;<lpage>20150</lpage>.
                    <pub-id pub-id-type="doi">10.48084/etasr.9554</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref93">
                <label>93</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Achimba</surname>
                            <given-names>T</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Okhuoya</surname>
                            <given-names>OJ</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Akinyede</surname>
                            <given-names>RO</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>University of Ibadan A Robust Biometric Authentication Framework for Access Control.</article-title>
                    <year>2025</year>;<volume>13</volume>(<issue>1</issue>):<fpage>239</fpage>&#x2013;<lpage>246</lpage>.</mixed-citation>
            </ref>
            <ref id="ref94">
                <label>94</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Ogbanufe</surname>
                            <given-names>OM</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Baham</surname>
                            <given-names>C</given-names>
                        </name>
</person-group>:
                    <article-title>Using multi-factor authentication for online account security: Examining the influence of anticipated regret.</article-title>
                    <source>

                        <italic toggle="yes">Inf. Syst. Front.</italic>
</source>
                    <year>2023</year>;<volume>25</volume>(<issue>2</issue>):<fpage>897</fpage>&#x2013;<lpage>916</lpage>.
                    <pub-id pub-id-type="doi">10.1007/s10796-022-10278-1</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref95">
                <label>95</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Krombholz</surname>
                            <given-names>K</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Busse</surname>
                            <given-names>K</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Pfeffer</surname>
                            <given-names>K</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>If HTTPS Were Secure, I Wouldn&#x2019;t Need 2FA&#x2019; - End User and Administrator Mental Models of HTTPS.</chapter-title>
                    <source>

                        <italic toggle="yes">2019 IEEE Symposium on Security and Privacy (SP).</italic>
</source>
                    <year>2019</year>; pp.<fpage>246</fpage>&#x2013;<lpage>263</lpage>.
                    <pub-id pub-id-type="doi">10.1109/SP.2019.00060</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref96">
                <label>96</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Chabbi</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Araar</surname>
                            <given-names>C</given-names>
                        </name>
</person-group>:
                    <chapter-title>RFID and NFC authentication protocol for securing a payment transaction.</chapter-title>
                    <source>

                        <italic toggle="yes">2022 4th International Conference on Pattern Analysis and Intelligent Systems (PAIS).</italic>
</source>
                    <year>2022</year>; pp.<fpage>1</fpage>&#x2013;<lpage>8</lpage>.
                    <pub-id pub-id-type="doi">10.1109/PAIS56586.2022.9946661</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref97">
                <label>97</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Otta</surname>
                            <given-names>SP</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Panda</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Gupta</surname>
                            <given-names>M</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>A Systematic Survey of Multi-Factor Authentication for Cloud Infrastructure.</article-title>
                    <source>

                        <italic toggle="yes">Futur. Internet.</italic>
</source>
                    <year>2023</year>;<volume>15</volume>(<issue>4</issue>):<fpage>1</fpage>&#x2013;<lpage>20</lpage>.
                    <pub-id pub-id-type="doi">10.3390/fi15040146</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref98">
                <label>98</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Karim</surname>
                            <given-names>NA</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Shukur</surname>
                            <given-names>Z</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Al-Banna</surname>
                            <given-names>AM</given-names>
                        </name>
</person-group>:
                    <article-title>UIPA: User authentication method based on user interface preferences for account recovery process.</article-title>
                    <source>

                        <italic toggle="yes">J. Inf. Secur. Appl.</italic>
</source>
                    <year>2020</year>;<volume>52</volume>:<fpage>102466</fpage>.
                    <pub-id pub-id-type="doi">10.1016/j.jisa.2020.102466</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref99">
                <label>99</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Venugopal</surname>
                            <given-names>H</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Viswanath</surname>
                            <given-names>N</given-names>
                        </name>
</person-group>:
                    <chapter-title>A robust and secure authentication mechanism in online banking.</chapter-title>
                    <source>

                        <italic toggle="yes">2016 Online International Conference on Green Engineering and Technologies (IC-GET).</italic>
</source>
                    <year>2016</year>; pp.<fpage>1</fpage>&#x2013;<lpage>3</lpage>.
                    <pub-id pub-id-type="doi">10.1109/GET.2016.7916850</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref100">
                <label>100</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Ferrag</surname>
                            <given-names>MA</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Maglaras</surname>
                            <given-names>L</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Derhab</surname>
                            <given-names>A</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Authentication schemes for smart mobile devices: threat models, countermeasures, and open research issues.</article-title>
                    <source>

                        <italic toggle="yes">Telecommun. Syst.</italic>
</source>
                    <year>2020</year>;<volume>73</volume>(<issue>2</issue>):<fpage>317</fpage>&#x2013;<lpage>348</lpage>.
                    <pub-id pub-id-type="doi">10.1007/s11235-019-00612-5</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref101">
                <label>101</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Stanikzai</surname>
                            <given-names>AQ</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Shah</surname>
                            <given-names>MA</given-names>
                        </name>
</person-group>:
                    <chapter-title>Evaluation of Cyber Security Threats in Banking Systems.</chapter-title>
                    <source>

                        <italic toggle="yes">2021 IEEE Symp. Ser. Comput. Intell. SSCI 2021 - Proc.</italic>
</source>
                    <year>2021</year>; (<issue>December 2021</issue>).
                    <pub-id pub-id-type="doi">10.1109/SSCI50451.2021.9659862</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref102">
                <label>102</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Shammee</surname>
                            <given-names>TI</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Akter</surname>
                            <given-names>T</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Mou</surname>
                            <given-names>M</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>A Systematic Literature Review of Graphical Password Schemes.</article-title>
                    <source>

                        <italic toggle="yes">J. Comput. Sci. Eng.</italic>
</source>
                    <year>2020</year>;<volume>14</volume>(<issue>4</issue>):<fpage>163</fpage>&#x2013;<lpage>185</lpage>.
                    <pub-id pub-id-type="doi">10.5626/JCSE.2020.14.4.163</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref103">
                <label>103</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Matta</surname>
                            <given-names>P</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Pant</surname>
                            <given-names>B</given-names>
                        </name>
</person-group>:
                    <article-title>TCpC: a graphical password scheme ensuring authentication for IoT resources.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Inf. Technol.</italic>
</source>
                    <year>2020</year>;<volume>12</volume>(<issue>3</issue>):<fpage>699</fpage>&#x2013;<lpage>709</lpage>.
                    <pub-id pub-id-type="doi">10.1007/s41870-018-0142-z</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref104">
                <label>104</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Al-Ghaili</surname>
                            <given-names>AM</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kasim</surname>
                            <given-names>H</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Othman</surname>
                            <given-names>M</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>QR code based authentication method for IoT applications using three security layers.</article-title>
                    <source>

                        <italic toggle="yes">Telkomnika Telecommunication Comput. Electron. Control.</italic>
</source>
                    <year>2020</year>;<volume>18</volume>(<issue>4</issue>):<fpage>2004</fpage>&#x2013;<lpage>2011</lpage>.
                    <pub-id pub-id-type="doi">10.12928/TELKOMNIKA.V18I4.14748</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref105">
                <label>105</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Khan</surname>
                            <given-names>RH</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Miah</surname>
                            <given-names>J</given-names>
                        </name>
</person-group>:
                    <article-title>Performance Evaluation of a new one-Time password (OTP) scheme using stochastic petri net (SPN).</article-title>
                    <source>

                        <italic toggle="yes">2022 IEEE World AI IoT Congr. AIIoT 2022.</italic>
</source>
                    <year>2022</year>; (<issue>June</issue>): pp.<fpage>407</fpage>&#x2013;<lpage>412</lpage>.
                    <pub-id pub-id-type="doi">10.1109/AIIoT54504.2022.9817203</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref106">
                <label>106</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Bairwa</surname>
                            <given-names>AK</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Joshi</surname>
                            <given-names>S</given-names>
                        </name>
</person-group>:
                    <article-title>Mutual authentication of nodes using session token with fingerprint and MAC address validation.</article-title>
                    <source>

                        <italic toggle="yes">Egypt. Informatics J.</italic>
</source>
                    <year>2021</year>;<volume>22</volume>(<issue>4</issue>):<fpage>479</fpage>&#x2013;<lpage>491</lpage>.
                    <pub-id pub-id-type="doi">10.1016/j.eij.2021.03.003</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref107">
                <label>107</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Dinh</surname>
                            <given-names>NT</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Hoang</surname>
                            <given-names>VT</given-names>
                        </name>
</person-group>:
                    <article-title>Recent advances of Captcha security analysis: A short literature review.</article-title>
                    <source>

                        <italic toggle="yes">Procedia Comput. Sci.</italic>
</source>
                    <year>2022</year>;<volume>218</volume>:<fpage>2550</fpage>&#x2013;<lpage>2562</lpage>.
                    <pub-id pub-id-type="doi">10.1016/j.procs.2023.01.229</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref108">
                <label>108</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Faruk</surname>
                            <given-names>O</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Rashid</surname>
                            <given-names>MU</given-names>
                        </name>
</person-group>:
                    <article-title>Comparative Analysis of Traditional and Modern Courtyards in Bengal.</article-title>
                    <source>

                        <italic toggle="yes">Bhumi, Plan. Res. J.</italic>
</source>
                    <year>2024</year>;<volume>11</volume>(<issue>1</issue>):<fpage>1</fpage>&#x2013;<lpage>35</lpage>.
                    <pub-id pub-id-type="doi">10.4038/bhumi.v11i1.121</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref109">
                <label>109</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Alabdulatif</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Samarasinghe</surname>
                            <given-names>R</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Thilakarathne</surname>
                            <given-names>NN</given-names>
                        </name>
</person-group>:
                    <article-title>A Novel Robust Geolocation-Based Multi-Factor Authentication Method for Securing ATM Payment Transactions.</article-title>
                    <source>

                        <italic toggle="yes">Appl. Sci.</italic>
</source>
                    <year>2023</year>;<volume>13</volume>(<issue>19</issue>).
                    <pub-id pub-id-type="doi">10.3390/app131910743</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref110">
                <label>110</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Sudharshan</surname>
                            <given-names>DP</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Vismaya</surname>
                            <given-names>RN</given-names>
                        </name>
</person-group>:
                    <article-title>Handwritten Signature Verification System using Deep Learning.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Int. Conf. Data Sci. Inf. Syst. ICDSIS 2022.</italic>
</source>
                    <year>2022</year>;<volume>3</volume>(<issue>12</issue>):<fpage>39</fpage>&#x2013;<lpage>44</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICDSIS55133.2022.9915833</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref111">
                <label>111</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>El Gaabouri</surname>
                            <given-names>I</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Senhadji</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Belkasmi</surname>
                            <given-names>M</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>A Systematic Literature Review on Authentication and Threat Challenges on RFID Based NFC Applications.</article-title>
                    <source>

                        <italic toggle="yes">Futur. Internet.</italic>
</source>
                    <year>2023</year>;<volume>15</volume>(<issue>11</issue>):<fpage>1</fpage>&#x2013;<lpage>16</lpage>.
                    <pub-id pub-id-type="doi">10.3390/fi15110354</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref112">
                <label>112</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Banerjee</surname>
                            <given-names>I</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Mookherjee</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Saha</surname>
                            <given-names>S</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Advanced ATM System Using Iris Scanner.</chapter-title>
                    <source>

                        <italic toggle="yes">2019 International Conference on Opto-Electronics and Applied Optics (Optronix).</italic>
</source>
                    <year>2019</year>; pp.<fpage>1</fpage>&#x2013;<lpage>3</lpage>.
                    <pub-id pub-id-type="doi">10.1109/OPTRONIX.2019.8862388</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref114">
                <label>113</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Wasnik</surname>
                            <given-names>P</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Raghavendra</surname>
                            <given-names>R</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Raja</surname>
                            <given-names>K</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Subjective Logic Based Score Level Fusion: Combining Faces and Fingerprints.</chapter-title>
                    <source>

                        <italic toggle="yes">2018 21st Int. Conf. Inf. Fusion, FUSION 2018.</italic>
</source>
                    <year>2018</year>; pp.<fpage>515</fpage>&#x2013;<lpage>520</lpage>.
                    <pub-id pub-id-type="doi">10.23919/ICIF.2018.8455860</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref115">
                <label>114</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Ishak</surname>
                            <given-names>M</given-names>
                        </name>
</person-group>:
                    <article-title>A Comparative Study on Authentication Strategies of Various Online Banking Platforms Bachelor Thesis Author: Mostafa Hamdy.</article-title>
                    <year>2021</year>; (<issue>June</issue>).
                    <pub-id pub-id-type="doi">10.13140/RG.2.2.30256.89607</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref116">
                <label>115</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Chai</surname>
                            <given-names>KY</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Zolkipli</surname>
                            <given-names>MF</given-names>
                        </name>
</person-group>:
                    <article-title>Review on Confidentiality, Integrity and Availability in Information Security.</article-title>
                    <source>

                        <italic toggle="yes">J. ICT Educ.</italic>
</source>
                    <year>2021</year>;<volume>8</volume>(<issue>2</issue>):<fpage>34</fpage>&#x2013;<lpage>42</lpage>.
                    <pub-id pub-id-type="doi">10.37134/jictie.vol8.2.4.2021</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref117">
                <label>116</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Mitchell</surname>
                            <given-names>O</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Osazuwa</surname>
                            <given-names>C</given-names>
                        </name>
</person-group>:
                    <article-title>Confidentiality, Integrity, and Availability in Network Systems: A Review of Related Literature.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Innov. Sci. Res. Technol.</italic>
</source>
                    <year>2023</year>;<volume>8</volume>(<issue>12</issue>).
                    <pub-id pub-id-type="doi">10.5281/zenodo.10464076</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref118">
                <label>117</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Huda</surname>
                            <given-names>S</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>A secure authentication for plant monitoring system sensor data access.</chapter-title>
                    <source>

                        <italic toggle="yes">2024 IEEE International Conference on Consumer Electronics (ICCE).</italic>
</source>
                    <year>2024</year>; pp.<fpage>1</fpage>&#x2013;<lpage>2</lpage>.</mixed-citation>
            </ref>
            <ref id="ref119">
                <label>118</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Kshetri</surname>
                            <given-names>N</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Rahman</surname>
                            <given-names>MM</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sayeed</surname>
                            <given-names>SA</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>cryptoRAN: A Review on Cryptojacking and Ransomware Attacks W.R.T. Banking Industry - Threats, Challenges, &amp; Problems</chapter-title>,
                    <source>

                        <italic toggle="yes">Proc. - 2nd Int. Conf. Adv. Comput. Comput. Technol. InCACCT 2024.</italic>
</source>
                    <year>2024</year>; pp.<fpage>523</fpage>&#x2013;<lpage>528</lpage>.
                    <pub-id pub-id-type="doi">10.1109/InCACCT61598.2024.10550970</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref120">
                <label>119</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Leonov</surname>
                            <given-names>PY</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Vorobyev</surname>
                            <given-names>AV</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ezhova</surname>
                            <given-names>AA</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>The Main Social Engineering Techniques Aimed at Hacking Information Systems.</chapter-title>
                    <source>

                        <italic toggle="yes">2021 Ural Symposium on Biomedical Engineering, Radioelectronics and Information Technology (USBEREIT).</italic>
</source>
                    <year>2021</year>; pp.<fpage>471</fpage>&#x2013;<lpage>473</lpage>.
                    <pub-id pub-id-type="doi">10.1109/USBEREIT51232.2021.9455031</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref121">
                <label>120</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Grammatikakis</surname>
                            <given-names>KP</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Koufos</surname>
                            <given-names>I</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kolokotronis</surname>
                            <given-names>N</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Understanding and mitigating banking trojans: From Zeus to emotet.</chapter-title>
                    <source>

                        <italic toggle="yes">Proc. 2021 IEEE Int. Conf. Cyber Secur. Resilience, CSR 2021.</italic>
</source>
                    <year>2021</year>; (no.<issue>July</issue>): pp.<fpage>121</fpage>&#x2013;<lpage>128</lpage>.
                    <pub-id pub-id-type="doi">10.1109/CSR51186.2021.9527960</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref122">
                <label>121</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Sharma</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Singh</surname>
                            <given-names>SK</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kumar</surname>
                            <given-names>S</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Security of android banking mobile apps: Challenges and opportunities.</chapter-title>
                    <source>

                        <italic toggle="yes">International conference on cyber security, privacy and networking.</italic>
</source>
                    <year>2021</year>; pp.<fpage>406</fpage>&#x2013;<lpage>416</lpage>.</mixed-citation>
            </ref>
            <ref id="ref123">
                <label>122</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Mohammed</surname>
                            <given-names>RM</given-names>
                        </name>
</person-group>:
                    <article-title>Payment System Transaction Using Polymorphic.</article-title>
                    <year>2023</year>;<volume>14</volume>(<issue>3</issue>):<fpage>102</fpage>&#x2013;<lpage>112</lpage>.</mixed-citation>
            </ref>
            <ref id="ref124">
                <label>123</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Kaushik</surname>
                            <given-names>K</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Singh</surname>
                            <given-names>V</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Manikandan</surname>
                            <given-names>VP</given-names>
                        </name>
</person-group>:
                    <chapter-title>A novel approach for an automated advanced MITM attack on IoT networks.</chapter-title>
                    <source>

                        <italic toggle="yes">International Conference on Advancements in Interdisciplinary Research.</italic>
</source>
                    <year>2022</year>; pp.<fpage>60</fpage>&#x2013;<lpage>71</lpage>.</mixed-citation>
            </ref>
            <ref id="ref125">
                <label>124</label>
                <mixed-citation publication-type="book">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Ohm</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Plate</surname>
                            <given-names>H</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sykosch</surname>
                            <given-names>A</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <source>

                        <italic toggle="yes">Backstabber&#x2019; s Knife Collection: A Review Chain Attacks.</italic>
</source>
                    <publisher-name>Springer International Publishing</publisher-name>;<year>2020</year>; vol.<volume>1</volume>.
                    <pub-id pub-id-type="doi">10.1007/978-3-030-52683-2</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref126">
                <label>125</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Al-Shareeda</surname>
                            <given-names>MA</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Manickam</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Laghari</surname>
                            <given-names>SA</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Replay-Attack Detection and Prevention Mechanism in Industry 4.0 Landscape for Secure SECS/GEM Communications.</article-title>
                    <source>

                        <italic toggle="yes">Sustain.</italic>
</source>
                    <year>2022</year>;<volume>14</volume>(<issue>23</issue>).
                    <pub-id pub-id-type="doi">10.3390/su142315900</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref127">
                <label>126</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Wu</surname>
                            <given-names>Y</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Attacks and countermeasures on privacy-preserving biometric authentication schemes.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Trans. Dependable Secur. Comput.</italic>
</source>
                    <year>2022</year>;<volume>20</volume>(<issue>2</issue>):<fpage>1744</fpage>&#x2013;<lpage>1755</lpage>.</mixed-citation>
            </ref>
            <ref id="ref128">
                <label>127</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Shrestha</surname>
                            <given-names>P</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Saxena</surname>
                            <given-names>N</given-names>
                        </name>
</person-group>:
                    <chapter-title>Hacksaw: Biometric-free non-stop web authentication in an emerging world of wearables.</chapter-title>
                    <source>

                        <italic toggle="yes">WiSec 2020 - Proceedings of the 13th ACM Conference on Security and Privacy in Wireless and Mobile Networks.</italic>
</source>
                    <year>2020</year>; pp.<fpage>13</fpage>&#x2013;<lpage>24</lpage>.
                    <pub-id pub-id-type="doi">10.1145/3395351.3399366</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref129">
                <label>128</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Salahdine</surname>
                            <given-names>F</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kaabouch</surname>
                            <given-names>N</given-names>
                        </name>
</person-group>:
                    <article-title>Social engineering attacks: A survey.</article-title>
                    <source>

                        <italic toggle="yes">Futur. Internet.</italic>
</source>
                    <year>2019</year>;<volume>11</volume>(<issue>4</issue>).
                    <pub-id pub-id-type="doi">10.3390/FI11040089</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref130">
                <label>129</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Jullian</surname>
                            <given-names>O</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Otero</surname>
                            <given-names>B</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Rodriguez</surname>
                            <given-names>E</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Deep-Learning Based Detection for Cyber-Attacks in IoT Networks: A Distributed Attack Detection Framework.</article-title>
                    <source>

                        <italic toggle="yes">J. Netw. Syst. Manag.</italic>
</source>
                    <year>2023</year>;<volume>31</volume>(<issue>2</issue>):<fpage>1</fpage>&#x2013;<lpage>24</lpage>.
                    <pub-id pub-id-type="doi">10.1007/s10922-023-09722-7</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref131">
                <label>130</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Alghawazi</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Alghazzawi</surname>
                            <given-names>D</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Alarifi</surname>
                            <given-names>S</given-names>
                        </name>
</person-group>:
                    <article-title>Detection of SQL Injection Attack Using Machine Learning Techniques: A Systematic Literature Review.</article-title>
                    <source>

                        <italic toggle="yes">J. Cybersecurity Priv.</italic>
</source>
                    <year>2022</year>;<volume>2</volume>(<issue>4</issue>):<fpage>764</fpage>&#x2013;<lpage>777</lpage>.
                    <pub-id pub-id-type="doi">10.3390/jcp2040039</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref132">
                <label>131</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>AI Dabagh</surname>
                            <given-names>N</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Mahmood</surname>
                            <given-names>MS</given-names>
                        </name>
</person-group>:
                    <article-title>Multilevel Database Security for Android Using Fast Encryption Methods.</article-title>
                    <source>

                        <italic toggle="yes">AL-Rafidain J. Comput. Sci. Math.</italic>
</source>
                    <year>2022</year>;<volume>16</volume>(<issue>1</issue>):<fpage>87</fpage>&#x2013;<lpage>96</lpage>.
                    <pub-id pub-id-type="doi">10.33899/csmj.2022.174412</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref133">
                <label>132</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Bodepudi</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Reddy</surname>
                            <given-names>M</given-names>
                        </name>
</person-group>:
                    <article-title>Spoofing Attacks and Mitigation Strategies in Biometrics-as-a-Service Systems.</article-title>
                    <source>

                        <italic toggle="yes">Eig. Rev. Sci. Technol.</italic>
</source>
                    <year>2020</year>;<volume>4</volume>(<issue>1</issue>):<fpage>1</fpage>&#x2013;<lpage>14</lpage>.
                    <ext-link ext-link-type="uri" xlink:href="https://studies.eigenpub.com/index.php/erst/article/view/10">Reference Source</ext-link>
                </mixed-citation>
            </ref>
            <ref id="ref134">
                <label>133</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Hwang</surname>
                            <given-names>WS</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Shon</surname>
                            <given-names>JG</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Park</surname>
                            <given-names>JS</given-names>
                        </name>
</person-group>:
                    <article-title>Web Session Hijacking Defense Technique Using User Information.</article-title>
                    <source>

                        <italic toggle="yes">Human-centric Comput. Inf. Sci.</italic>
</source>
                    <year>2022</year>;<volume>12</volume>.
                    <pub-id pub-id-type="doi">10.22967/HCIS.2022.12.016</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref135">
                <label>134</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Gazzan</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sheldon</surname>
                            <given-names>FT</given-names>
                        </name>
</person-group>:
                    <article-title>Opportunities for Early Detection and Prediction of Ransomware Attacks against Industrial Control Systems.</article-title>
                    <source>

                        <italic toggle="yes">Futur. Internet.</italic>
</source>
                    <year>2023</year>;<volume>15</volume>(<issue>4</issue>):<fpage>1</fpage>&#x2013;<lpage>18</lpage>.
                    <pub-id pub-id-type="doi">10.3390/fi15040144</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref136">
                <label>135</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Mallik</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ahsan</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Shahadat</surname>
                            <given-names>MMZ</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Man-in-the-middle-attack: Understanding in simple words.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Data Netw. Sci.</italic>
</source>
                    <year>2019</year>;<volume>3</volume>(<issue>2</issue>):<fpage>77</fpage>&#x2013;<lpage>92</lpage>.
                    <pub-id pub-id-type="doi">10.5267/j.ijdns.2019.1.001</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref137">
                <label>136</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Fereidouni</surname>
                            <given-names>H</given-names>
                        </name>
</person-group>:
                    <article-title>IoT and Man-in-the-Middle Attacks.</article-title>
                    <year>2025</year>.
                    <pub-id pub-id-type="doi">10.1002/spy2.70016</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref138">
                <label>137</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Sharma</surname>
                            <given-names>P</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Dash</surname>
                            <given-names>B</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ansari</surname>
                            <given-names>MF</given-names>
                        </name>
</person-group>:
                    <article-title>Anti-Phishing Techniques &#x2013; A Review of Cyber Defense Mechanisms.</article-title>
                    <source>

                        <italic toggle="yes">IJARCCE.</italic>
</source>
                    <year>2022</year>;<volume>11</volume>(<issue>7</issue>):<fpage>153</fpage>&#x2013;<lpage>160</lpage>.
                    <pub-id pub-id-type="doi">10.17148/ijarcce.2022.11728</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref139">
                <label>138</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Snober</surname>
                            <given-names>MA</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Droos</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Al-Haija</surname>
                            <given-names>QA</given-names>
                        </name>
</person-group>:
                    <chapter-title>Prevention of phishing website attacks in online banking systems using visual cryptography.</chapter-title>
                    <source>

                        <italic toggle="yes">6th Smart Cities Symposium (SCS 2022).</italic>
</source>
                    <year>2022</year>; pp.<fpage>168</fpage>&#x2013;<lpage>173</lpage>.
                    <pub-id pub-id-type="doi">10.1049/icp.2023.0391</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref140">
                <label>139</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Syafitri</surname>
                            <given-names>W</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Shukur</surname>
                            <given-names>Z</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Mokhtar</surname>
                            <given-names>UA</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Social Engineering Attacks Prevention: A Systematic Literature Review.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Access.</italic>
</source>
                    <year>2022</year>;<volume>10</volume>:<fpage>39325</fpage>&#x2013;<lpage>39343</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ACCESS.2022.3162594</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref141">
                <label>140</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Abu Hweidi</surname>
                            <given-names>RF</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Eleyan</surname>
                            <given-names>D</given-names>
                        </name>
</person-group>:
                    <article-title>Social Engineering Attack concepts, frameworks, and Awareness: A Systematic Literature Review.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Comput. Digit. Syst.</italic>
</source>
                    <year>2023</year>;<volume>13</volume>(<issue>1</issue>):<fpage>691</fpage>&#x2013;<lpage>700</lpage>.
                    <pub-id pub-id-type="doi">10.12785/ijcds/130155</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref142">
                <label>141</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Singh</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Choudhary</surname>
                            <given-names>P</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Singh</surname>
                            <given-names>AK</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Keylogger Detection and Prevention.</article-title>
                    <source>

                        <italic toggle="yes">J. Phys. Conf. Ser.</italic>
</source>
                    <year>2007</year>;<volume>2007</volume>:<fpage>012005</fpage>.
                    <pub-id pub-id-type="doi">10.1088/1742-6596/2007/1/012005</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref143">
                <label>142</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Choudhary</surname>
                            <given-names>P</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Das</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Potta</surname>
                            <given-names>MP</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Online Authentication Habits of Indian Users.</chapter-title>
                    <source>

                        <italic toggle="yes">2024 Conference on Building a Secure &amp; Empowered Cyberspace (BuildSEC).</italic>
</source>
                    <year>2024</year>; pp.<fpage>66</fpage>&#x2013;<lpage>73</lpage>.
                    <pub-id pub-id-type="doi">10.1109/BuildSEC64048.2024.00018</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref144">
                <label>143</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Lee</surname>
                            <given-names>K</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sj&#x00f6;berg</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Narayanan</surname>
                            <given-names>A</given-names>
                        </name>
</person-group>:
                    <chapter-title>Password policies of most top websites fail to follow best practices.</chapter-title>
                    <source>

                        <italic toggle="yes">Proc. 18th Symp. Usable Priv. Secur. SOUPS 2022.</italic>
</source>
                    <year>2022</year>; (<issue>Soups</issue>): pp.<fpage>561</fpage>&#x2013;<lpage>580</lpage>.</mixed-citation>
            </ref>
            <ref id="ref145">
                <label>144</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Revathy</surname>
                            <given-names>P</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Belshia Jebamalar</surname>
                            <given-names>G</given-names>
                        </name>
</person-group>:
                    <article-title>A review based on secure banking application against server attacks.</article-title>
                    <source>

                        <italic toggle="yes">Adv. Parallel Comput.</italic>
</source>
                    <year>2021</year>;<volume>38</volume>:<fpage>241</fpage>&#x2013;<lpage>245</lpage>.
                    <pub-id pub-id-type="doi">10.3233/APC210044</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref146">
                <label>145</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Vaka</surname>
                            <given-names>V</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Lindskog</surname>
                            <given-names>D</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Zavarsky</surname>
                            <given-names>P</given-names>
                        </name>
</person-group>:
                    <chapter-title>Enhancing of biometric authentication with pass strings and cryptographic checksums.</chapter-title>
                    <source>

                        <italic toggle="yes">2016 4th International Symposium on Digital Forensic and Security (ISDFS).</italic>
</source>
                    <year>2016</year>; p.<fpage>170</fpage>.
                    <pub-id pub-id-type="doi">10.1109/ISDFS.2016.7473538</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref147">
                <label>146</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Gilad</surname>
                            <given-names>Y</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Herzberg</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Shulman</surname>
                            <given-names>H</given-names>
                        </name>
</person-group>:
                    <article-title>Off-path hacking: The illusion of challenge-response authentication.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Secur. Priv.</italic>
</source>
                    <year>2014</year>;<volume>12</volume>(<issue>5</issue>):<fpage>68</fpage>&#x2013;<lpage>77</lpage>.
                    <pub-id pub-id-type="doi">10.1109/MSP.2013.130</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref148">
                <label>147</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Nosrati</surname>
                            <given-names>L</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Bidgoli</surname>
                            <given-names>AM</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Javadi</surname>
                            <given-names>HHS</given-names>
                        </name>
</person-group>:
                    <article-title>Machine Learning and Metaheuristic Algorithms for Voice-Based Authentication: A Mobile Banking Case Study.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Comput. Intell. Syst.</italic>
</source>
                    <year>2024</year>;<volume>17</volume>(<issue>1</issue>).
                    <pub-id pub-id-type="doi">10.1007/s44196-024-00690-7</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref149">
                <label>148</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Wodo</surname>
                            <given-names>W</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Stygar</surname>
                            <given-names>D</given-names>
                        </name>
</person-group>:
                    <chapter-title>PSD2 Compliant Hardware Token for Digital Banking.</chapter-title>
                    <source>

                        <italic toggle="yes">2021 62nd International Scientific Conference on Information Technology and Management Science of Riga Technical University (ITMS).</italic>
</source>
                    <year>2021</year>; pp.<fpage>1</fpage>&#x2013;<lpage>6</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ITMS52826.2021.9615340</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref150">
                <label>149</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Chen</surname>
                            <given-names>J</given-names>
                        </name>
</person-group>:
                    <article-title>An analysis on the comprehensive risk management of Barclays Bank.</article-title>
                    <year>2024</year>.
                    <ext-link ext-link-type="uri" xlink:href="https://ruj.uj.edu.pl/handle/item/452704">Reference Source</ext-link>
                </mixed-citation>
            </ref>
            <ref id="ref151">
                <label>150</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Nawaz</surname>
                            <given-names>T</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ohlrogge</surname>
                            <given-names>O</given-names>
                        </name>
</person-group>:
                    <article-title>Clarifying the impact of corporate governance and intellectual capital on financial performance: A longitudinal study of Deutsche Bank (1957&#x2013;2019).</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Financ. Econ.</italic>
</source>
                    <year>2023</year>;<volume>28</volume>(<issue>4</issue>):<fpage>3808</fpage>&#x2013;<lpage>3823</lpage>.
                    <pub-id pub-id-type="doi">10.1002/ijfe.2620</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref152">
                <label>151</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Sijan</surname>
                            <given-names>MAH</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Shahoriar</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Salimullah</surname>
                            <given-names>M</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>A review on e-banking security in Bangladesh: An empirical study.</chapter-title>
                    <source>

                        <italic toggle="yes">Proceedings of the 2nd international conference on computing advancements.</italic>
</source>
                    <year>2022</year>; pp.<fpage>330</fpage>&#x2013;<lpage>336</lpage>.</mixed-citation>
            </ref>
            <ref id="ref153">
                <label>152</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Fong</surname>
                            <given-names>JL</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kornitsky</surname>
                            <given-names>MB</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Song</surname>
                            <given-names>Y</given-names>
                        </name>
</person-group>:
                    <article-title>Leveraging a Three-Tier Architecture to Restrict Direct Database Access from BNP Paribas&#x2019; Internal Applications.</article-title>
                    <year>2019</year>.
                    <ext-link ext-link-type="uri" xlink:href="https://digitalcommons.wpi.edu/mqp-all/7255">Reference Source</ext-link>
                </mixed-citation>
            </ref>
            <ref id="ref154">
                <label>153</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Samonte</surname>
                            <given-names>MJC</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Callejo</surname>
                            <given-names>JK</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Lumbera</surname>
                            <given-names>DCN</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Mitigating Vishing in Digital Banking Through Caller Authentication and Verification Technologies.</chapter-title>
                    <source>

                        <italic toggle="yes">2024 14th International Conference on Software Technology and Engineering (ICSTE).</italic>
</source>
                    <year>2024</year>; pp.<fpage>102</fpage>&#x2013;<lpage>108</lpage>.</mixed-citation>
            </ref>
            <ref id="ref155">
                <label>154</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Ramya</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Sheeba</surname>
                            <given-names>R</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Aravind</surname>
                            <given-names>P</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Face Biometric Authentication System for ATM using Deep Learning.</chapter-title>
                    <source>

                        <italic toggle="yes">2022 6th International Conference on Intelligent Computing and Control Systems (ICICCS).</italic>
</source>
                    <year>2022</year>; pp.<fpage>1446</fpage>&#x2013;<lpage>1451</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICICCS53718.2022.9788310</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref156">
                <label>155</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Issue</surname>
                            <given-names>V</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Chitai</surname>
                            <given-names>W</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Wangari</surname>
                            <given-names>L</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>International Journal of Finance and Accounting ISSN 2518-4113 (online) E-Banking Strategies and Financial Performance of Commercial Banks in Kenya International Journal of Finance and Accounting ISSN 2518-4113 (online).</article-title>
                    <year>2024</year>;<volume>9</volume>(<issue>2</issue>):<fpage>62</fpage>&#x2013;<lpage>80</lpage>.</mixed-citation>
            </ref>
            <ref id="ref157">
                <label>156</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Marasco</surname>
                            <given-names>E</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Albanese</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Patibandla</surname>
                            <given-names>VVR</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Biometric multi-factor authentication: On the usability of the FingerPIN scheme.</article-title>
                    <source>

                        <italic toggle="yes">Secur. Priv.</italic>
</source>
                    <year>2023</year>;<volume>6</volume>(<issue>1</issue>):<fpage>1</fpage>&#x2013;<lpage>14</lpage>.
                    <pub-id pub-id-type="doi">10.1002/spy2.261</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref158">
                <label>157</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Ahmad</surname>
                            <given-names>M</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Security, usability, and biometric authentication scheme for electronic voting using multiple keys.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Distrib. Sens. Networks.</italic>
</source>
                    <year>2020</year>;<volume>16</volume>(<issue>7</issue>):<fpage>155014772094402</fpage>.
                    <pub-id pub-id-type="doi">10.1177/1550147720944025</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref159">
                <label>158</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Mr&#x00f3;z-Gorgo&#x0144;</surname>
                            <given-names>B</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Wodo</surname>
                            <given-names>W</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Andrych</surname>
                            <given-names>A</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Biometrics Innovation and Payment Sector Perception.</article-title>
                    <source>

                        <italic toggle="yes">Sustain.</italic>
</source>
                    <year>2022</year>;<volume>14</volume>(<issue>15</issue>):<fpage>1</fpage>&#x2013;<lpage>23</lpage>.
                    <pub-id pub-id-type="doi">10.3390/su14159424</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref160">
                <label>159</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Bastan</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Hasani</surname>
                            <given-names>N</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Salimi</surname>
                            <given-names>B</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>A Systematic Framework for Meet the Challenges of Artificial Intelligence Banking.</article-title>
                    <year>2024</year>; (<issue>October</issue>).
                    <pub-id pub-id-type="doi">10.46254/EU07.20240030</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref161">
                <label>160</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Khan</surname>
                            <given-names>MH</given-names>
                        </name>
</person-group>:
                    <article-title>The Impact of AI on the Media Industry.</article-title>
                    <source>

                        <italic toggle="yes">DiVA portal.</italic>
</source>
                    <year>2023</year>;<volume>1</volume>(<issue>1</issue>):<fpage>1</fpage>&#x2013;<lpage>52</lpage>.</mixed-citation>
            </ref>
            <ref id="ref162">
                <label>161</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Botunac</surname>
                            <given-names>I</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Parlov</surname>
                            <given-names>N</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Bosna</surname>
                            <given-names>J</given-names>
                        </name>
</person-group>:
                    <chapter-title>Opportunities of Gen AI in the Banking Industry with regards to the AI Act, GDPR, Data Act and DORA.</chapter-title>
                    <source>

                        <italic toggle="yes">2024 13th Mediterr. Conf. Embed. Comput. MECO 2024.</italic>
</source>
                    <year>2024</year>; (<issue>July</issue>): pp.<fpage>1</fpage>&#x2013;<lpage>6</lpage>.
                    <pub-id pub-id-type="doi">10.1109/MECO62516.2024.10577936</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref163">
                <label>162</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Michael</surname>
                            <given-names>K</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Abbas</surname>
                            <given-names>R</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Jayashree</surname>
                            <given-names>P</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Biometrics and AI Bias.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Trans. Technol. Soc.</italic>
</source>
                    <year>2022</year>;<volume>3</volume>(<issue>1</issue>):<fpage>2</fpage>&#x2013;<lpage>8</lpage>.
                    <pub-id pub-id-type="doi">10.1109/tts.2022.3156405</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref164">
                <label>163</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Rabhi</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Bakiras</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Di Pietro</surname>
                            <given-names>R</given-names>
                        </name>
</person-group>:
                    <article-title>Audio-deepfake detection: Adversarial attacks and countermeasures.</article-title>
                    <source>

                        <italic toggle="yes">Expert Syst. Appl.</italic>
</source>
                    <year>2024</year>;<volume>250</volume>(<issue>January</issue>):<fpage>123941</fpage>.
                    <pub-id pub-id-type="doi">10.1016/j.eswa.2024.123941</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref165">
                <label>164</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Li</surname>
                            <given-names>Y</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Cheng</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Hsieh</surname>
                            <given-names>CJ</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>A Review of Adversarial Attack and Defense for Classification Methods.</article-title>
                    <source>

                        <italic toggle="yes">Am. Stat.</italic>
</source>
                    <year>2022</year>;<volume>76</volume>(<issue>4</issue>):<fpage>329</fpage>&#x2013;<lpage>345</lpage>.
                    <pub-id pub-id-type="doi">10.1080/00031305.2021.2006781</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref166">
                <label>165</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Agarwal</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Farid</surname>
                            <given-names>H</given-names>
                        </name>
</person-group>:
                    <chapter-title>Detecting deep-fake videos from aural and oral dynamics.</chapter-title>
                    <source>

                        <italic toggle="yes">IEEE Comput. Soc. Conf. Comput. Vis. Pattern Recognit. Work.</italic>
</source>
                    <year>2021</year>; pp.<fpage>981</fpage>&#x2013;<lpage>989</lpage>.
                    <pub-id pub-id-type="doi">10.1109/CVPRW53098.2021.00109</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref167">
                <label>166</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Naitali</surname>
                            <given-names>A</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ridouani</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Salahdine</surname>
                            <given-names>F</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Deepfake Attacks: Generation, Detection, Datasets, Challenges, and Research Directions.</article-title>
                    <source>

                        <italic toggle="yes">Computers.</italic>
</source>
                    <year>2023</year>;<volume>12</volume>(<issue>10</issue>):<fpage>1</fpage>&#x2013;<lpage>26</lpage>.
                    <pub-id pub-id-type="doi">10.3390/computers12100216</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref168">
                <label>167</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Hussain</surname>
                            <given-names>ZF</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ibraheem</surname>
                            <given-names>HR</given-names>
                        </name>
</person-group>:
                    <article-title>Novel Convolutional Neural Networks based Jaya algorithm Approach for Accurate Deepfake Video Detection.</article-title>
                    <source>

                        <italic toggle="yes">Mesopotamian J. CyberSecurity.</italic>
</source>
                    <year>2023</year>;<volume>2023</volume>:<fpage>35</fpage>&#x2013;<lpage>39</lpage>.
                    <pub-id pub-id-type="doi">10.58496/MJCS/2023/007</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref169">
                <label>168</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Ismail</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Alkawaz</surname>
                            <given-names>MH</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kumar</surname>
                            <given-names>AE</given-names>
                        </name>
</person-group>:
                    <chapter-title>Quick Response Code Validation and Phishing Detection Tool.</chapter-title>
                    <source>

                        <italic toggle="yes">2021 IEEE 11th IEEE Symposium on Computer Applications &amp; Industrial Electronics (ISCAIE).</italic>
</source>
                    <year>2021</year>; pp.<fpage>261</fpage>&#x2013;<lpage>266</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ISCAIE51753.2021.9431807</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref170">
                <label>169</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Al-Kateb</surname>
                            <given-names>GE</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Khaleel</surname>
                            <given-names>I</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Aljanabi</surname>
                            <given-names>M</given-names>
                        </name>
</person-group>:
                    <article-title>CryptoGenSec: A Hybrid Generative AI Algorithm for Dynamic Cryptographic Cyber Defence.</article-title>
                    <source>

                        <italic toggle="yes">Mesopotamian J. CyberSecurity.</italic>
</source>
                    <year>2024</year>;<volume>4</volume>(<issue>3</issue>):<fpage>150</fpage>&#x2013;<lpage>163</lpage>.
                    <pub-id pub-id-type="doi">10.58496/mjcs/2024/013</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref171">
                <label>170</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Ahmed</surname>
                            <given-names>SJ</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Taha</surname>
                            <given-names>DB</given-names>
                        </name>
</person-group>:
                    <chapter-title>Machine Learning for Software Vulnerability Detection: A Survey.</chapter-title>
                    <source>

                        <italic toggle="yes">2022 8th International Conference on Contemporary Information Technology and Mathematics (ICCITM).</italic>
</source>
                    <year>2022</year>; pp.<fpage>66</fpage>&#x2013;<lpage>72</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ICCITM56309.2022.10031734</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref172">
                <label>171</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Balasubramaniam</surname>
                            <given-names>N</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Kauppinen</surname>
                            <given-names>M</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Rannisto</surname>
                            <given-names>A</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Transparency and explainability of AI systems: From ethical guidelines to requirements.</article-title>
                    <source>

                        <italic toggle="yes">Inf. Softw. Technol.</italic>
</source>
                    <year>2023</year>;<volume>159</volume>:<fpage>107197</fpage>.
                    <pub-id pub-id-type="doi">10.1016/j.infsof.2023.107197</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref173">
                <label>172</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Ehsan</surname>
                            <given-names>U</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Liao</surname>
                            <given-names>QV</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Muller</surname>
                            <given-names>M</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Expanding explainability: Towards social transparency in ai systems.</article-title>
                    <source>

                        <italic toggle="yes">Conf. Hum. Factors Comput. Syst. - Proc.</italic>
</source>
                    <year>2021</year>.
                    <pub-id pub-id-type="doi">10.1145/3411764.3445188</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref174">
                <label>173</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Muhammad</surname>
                            <given-names>U</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Hoque</surname>
                            <given-names>MZ</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Oussalah</surname>
                            <given-names>M</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <chapter-title>Deep Ensemble Learning with Frame Skipping for Face Anti-Spoofing.</chapter-title>
                    <source>

                        <italic toggle="yes">2023 Twelfth International Conference on Image Processing Theory, Tools and Applications (IPTA).</italic>
</source>
                    <year>2023</year>; pp.<fpage>1</fpage>&#x2013;<lpage>6</lpage>.
                    <pub-id pub-id-type="doi">10.1109/IPTA59101.2023.10320013</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref175">
                <label>174</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Hussein</surname>
                            <given-names>MKH</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ucan</surname>
                            <given-names>ON</given-names>
                        </name>
</person-group>:
                    <article-title>3D Face Anti-Spoofing With Dense Squeeze and Excitation Network and Neighborhood-Aware Kernel Adaptation Scheme.</article-title>
                    <source>

                        <italic toggle="yes">IEEE Access.</italic>
</source>
                    <year>2025</year>;<volume>13</volume>(<issue>March</issue>):<fpage>43145</fpage>&#x2013;<lpage>43167</lpage>.
                    <pub-id pub-id-type="doi">10.1109/ACCESS.2025.3548418</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref176">
                <label>175</label>
                <mixed-citation publication-type="other">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Liang</surname>
                            <given-names>S</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Nguyen</surname>
                            <given-names>HH</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Ikehata</surname>
                            <given-names>S</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>3D Morphable Master Face: Towards Controllable Wolf Attacks Against 2D and 3D Face Recognition Systems.</article-title>
                    <year>2025</year>; (<issue>February</issue>).
                    <pub-id pub-id-type="doi">10.1561/116.20240089</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref177">
                <label>176</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Mao</surname>
                            <given-names>W</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Zhao</surname>
                            <given-names>Y</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Pavlenko</surname>
                            <given-names>P</given-names>
                        </name>

                        <etal/>
</person-group>:
                    <article-title>Innovative Solutions for Worn Fingerprints: A Comparative Analysis of Traditional Fingerprint Impression and 3D Printing.</article-title>
                    <source>

                        <italic toggle="yes">Sensors.</italic>
</source>
                    <year>2024</year>;<volume>24</volume>(<issue>8</issue>).
                    <pub-id pub-id-type="pmid">38676245</pub-id>
                    <pub-id pub-id-type="doi">10.3390/s24082627</pub-id>
                    <pub-id pub-id-type="pmcid">PMC11053824</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref178">
                <label>177</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Lim</surname>
                            <given-names>CY</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Markus</surname>
                            <given-names>C</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Loh</surname>
                            <given-names>TP</given-names>
                        </name>
</person-group>:
                    <article-title>Precision verification: Effect of experiment design on false acceptance and false rejection rates.</article-title>
                    <source>

                        <italic toggle="yes">Am. J. Clin. Pathol.</italic>
</source>
                    <year>2021</year>;<volume>156</volume>(<issue>6</issue>):<fpage>1058</fpage>&#x2013;<lpage>1067</lpage>.
                    <pub-id pub-id-type="pmid">34111241</pub-id>
                    <pub-id pub-id-type="doi">10.1093/ajcp/aqab049</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref179">
                <label>178</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Agboola</surname>
                            <given-names>TO</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Adegede</surname>
                            <given-names>J</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Jacob</surname>
                            <given-names>JG</given-names>
                        </name>
</person-group>:
                    <article-title>Balancing Usability and Security in Secure System Design: A Comprehensive Study on Principles, Implementation, and Impact on Usability.</article-title>
                    <source>

                        <italic toggle="yes">Int. J. Comput. Sci. Res.</italic>
</source>
                    <year>2024</year>;<volume>8</volume>:<fpage>2995</fpage>&#x2013;<lpage>3009</lpage>.
                    <pub-id pub-id-type="doi">10.25147/ijcsr.2017.001.1.199</pub-id>
                </mixed-citation>
            </ref>
            <ref id="ref180">
                <label>179</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Akinlade</surname>
                            <given-names>EO</given-names>
                        </name>

                        <name name-style="western">
                            <surname>Adeleye</surname>
                            <given-names>EO</given-names>
                        </name>
</person-group>:
                    <article-title>Designing a secure interactive system: balancing the conflict between security, usability, and functionality.</article-title>
                    <source>

                        <italic toggle="yes">Researchgate. Net.</italic>
</source>
                    <ext-link ext-link-type="uri" xlink:href="https://www.researchgate.net/profile/Esther-Akinlade/publication/366252638_Designing_a_secure_interactive_system_balancing_the_conflict_between_security_usability_and_functionality/links/6399c45a11e9f00cda42ab9a/Designing-a-secure-interactive-system-balan">Reference Source</ext-link>
                </mixed-citation>
            </ref>
            <ref id="ref181">
                <label>180</label>
                <mixed-citation publication-type="journal">
                    <person-group person-group-type="author">

                        <name name-style="western">
                            <surname>Naji</surname>
                            <given-names>H</given-names>
                        </name>
</person-group>:
                    <article-title>PRISMA 2020 Checklist, Flow Diagram, and Extracted Dataset for &#x2018;A Systematic Literature Review on Biometric Authentication in Mobile Banking&#x2019;.</article-title>
                    <source>

                        <italic toggle="yes">Zenodo.</italic>
</source>
                    <year>2025</year>.
                    <pub-id pub-id-type="doi">10.5281/zenodo.17744117</pub-id>
                </mixed-citation>
            </ref>
        </ref-list>
    </back>
    <sub-article article-type="reviewer-report" id="report450385">
        <front-stub>
            <article-id pub-id-type="doi">10.5256/f1000research.191708.r450385</article-id>
            <title-group>
                <article-title>Reviewer response for version 1</article-title>
            </title-group>
            <contrib-group>
                <contrib contrib-type="author">
                    <name>
                        <surname>Wodo</surname>
                        <given-names>Wojciech</given-names>
                    </name>
                    <xref ref-type="aff" rid="r450385a1">1</xref>
                    <role>Referee</role>
                    <uri content-type="orcid">https://orcid.org/0000-0002-0237-2882</uri>
                </contrib>
                <aff id="r450385a1">
                    <label>1</label>Wroclaw University of Science and Technology, Wroclaw, Poland</aff>
            </contrib-group>
            <author-notes>
                <fn fn-type="conflict">
                    <p>
                        <bold>Competing interests: </bold>No competing interests were disclosed.</p>
                </fn>
            </author-notes>
            <pub-date pub-type="epub">
                <day>14</day>
                <month>2</month>
                <year>2026</year>
            </pub-date>
            <permissions>
                <copyright-statement>Copyright: &#x00a9; 2026 Wodo W</copyright-statement>
                <copyright-year>2026</copyright-year>
                <license xlink:href="https://creativecommons.org/licenses/by/4.0/">
                    <license-p>This is an open access peer review report distributed under the terms of the Creative Commons Attribution Licence, which permits unrestricted use, distribution, and reproduction in any medium, provided the original work is properly cited.</license-p>
                </license>
            </permissions>
            <related-article ext-link-type="doi" id="relatedArticleReport450385" related-article-type="peer-reviewed-article" xlink:href="10.12688/f1000research.173855.1"/>
            <custom-meta-group>
                <custom-meta>
                    <meta-name>recommendation</meta-name>
                    <meta-value>reject</meta-value>
                </custom-meta>
            </custom-meta-group>
        </front-stub>
        <body>
            <p>In my opinion, preparing the review paper is quite a challenging task, usually much more demanding than a regular research article, as it requires an extensive knowledge of the domain, a deep understanding of details, nuances, and a broad perspective of the described area. The contribution of the review paper is sometimes hard to grasp; it requires an in-depth analysis of the state-of-the-art literature and often internal (not publicly available) industry or business practices and the rationale behind them. To provide a vital contribution to the public, the author of the review paper should demonstrate a comprehensive understanding not only of the technology used but also of regulatory frameworks, compliance issues, as well as industrial or business-specific conditions.</p>
            <p> </p>
            <p> </p>
            <p> 
                <bold>SOME BASIC INFORMATION ABOUT THE PAPER</bold>
            </p>
            <p> </p>
            <p> According to the authors
                <bold> the scope of the paper</bold> is:</p>
            <p> This systematic literature review based on PRISMA methodology, which covers studies from 2020 to 2025, provides a critical review of biometric authentication methods used in mobile banking.</p>
            <p> </p>
            <p> 
                <bold>Reviewer&#x2019;s remark:</bold>
            </p>
            <p> Regarding methodology, authors decided to search four databases: ScienceDirect, Scopus, IEEE, and Google Scholar in order to select papers for analysis. The whole process of selection and eligibility criteria as well as exclusion/inclusion approach was clearly presented. However, in my perspective this extremely important step is flawed by design, because authors limited themselves from the very beginning in learning insights from the industry/business perspective by excluding white papers, technical reports/notes, or from in-depth analysis presented in theses or book chapters. I cannot find any justification for such an approach in the paper and I find it restrictive to the study.</p>
            <p> </p>
            <p> 
                <bold>Objectives are:</bold>
            </p>
            <p> 1. An analysis of the existing approaches, security risks and implementation practices adopted by major banks across the world.</p>
            <p> 2. A detailed overview of the current advances, key issues, and emerging research directions, which will give valuable insight to the development of secure and easy-to-use authentication systems in mobile banking.</p>
            <p> </p>
            <p> </p>
            <p> 
                <bold>Reviewer&#x2019;s remark:</bold>
            </p>
            <p> Motivation is somewhat not clear to me, authors claimed that they did not find a systematic literature review that focused specifically on the uses of BBA in mobile banking. However, the mere fact that no study exists should not be an end in itself for preparing one. The authors did not clearly state what motivated them to take up this topic and what their main idea and goal for the study was. All information is very generic and superficial in this regard. We can find information that they wanted to analyze biometric authentication methods, but we do not know why.</p>
            <p> </p>
            <p> 
                <bold>Intended audience:</bold> The present manuscript is aimed at a wide audience of both academic researchers and industry practitioners.</p>
            <p> </p>
            <p> 
                <bold>Reviewer&#x2019;s remark:</bold>
            </p>
            <p> I cannot agree with authors in this regard, after my evaluation I would say that paper targets students or entry-level professionals and serve as an educational material, or introductionary material to get oriented in fundamentals of described domain.</p>
            <p> </p>
            <p> Authors stated
                <bold> five main research quesitons</bold>:</p>
            <p> 1. Which biometric authentication methods are currently used in mobile banking systems?</p>
            <p> 2. What are the main security threats and vulnerabilities affecting biometric authentication in mobile banking?</p>
            <p> 3. How do major banks worldwide implement and integrate biometric authentication into their mobile banking applications?</p>
            <p> 4. What is the key usability, privacy, and user acceptance challenges related to biometric authentication in mobile banking?</p>
            <p> 5. What are the limitations and future research directions in improving biometric-based authentication for secure and convenient mobile banking?</p>
            <p> </p>
            <p> </p>
            <p> 
                <bold>REVIEWER&#x2019;S EVALUATION</bold>
            </p>
            <p> The paper tackles an undeniably important and interesting topic, and the authors demonstrate a transparent methodology of work, selecting multiple papers for analysis. The structure of the review is easy to follow, and there are formulated research questions and appropriate sections. The attached exhibits and tables are prepared in a neat manner. I have no objections to the formal or editorial aspects of the work; however, I have some substantial reservations about its essential content and the way of presenting the results and insights of the study.</p>
            <p> </p>
            <p> 
                <bold>Major remarks:</bold>
            </p>
            <p> 1. One cannot elaborate on financial or payment market as a homogenous one, as there are different regulatory frameworks on risk, payments, identity management, AI or personal data protection that should be considered when applying technological solutions. These issues tremendously impact the bank and payment industry. Discussion on security mechanisms used in banking should consider wider context of regulatory domain, market maturity and users&#x2019; experience.</p>
            <p> </p>
            <p> For instance, according to PSD2 and the accompanying RTS, introducing SCA (Strong Customer Authentication) for a wide range of financial transactions is mandatory since the directive came into force in 2019 in the European Union market. The scope of the regulation tackles not only strengthening the authentication by enforcing 2FA mechanisms but also OTP binding with transaction data and time validity, so that we can achieve the so-called "dynamic linking" property and expiration time of the token.</p>
            <p> </p>
            <p> 2. Presentation Attacks and Injection Attacks are very powerful threats for biometric-based systems these days, and with the aid of AI, they are even more dangerous, as it is challenging to differentiate the genuine identity from the impostor. The authors claimed for instance that:&#x00a0; &#x201c;Biometrics offer very high resistance against replication and remain difficult to counterfeit&#x201d; (page 7) which is clearly incorrect. Almost every vendor of eKYC solutions for the high-risk industry, like banking or gambling, faces this issue.</p>
            <p> </p>
            <p> NIST is running a project on Face Analysis Technology Evaluation (FATE), which one of the area is PAD (Presentation Attack Detection) -&#x00a0; 
                <ext-link ext-link-type="uri" xlink:href="https://pages.nist.gov/frvt/html/frvt_pad.html">https://pages.nist.gov/frvt/html/frvt_pad.html</ext-link>, where are competing the best of the best players in the market and still are not good enough in detecting the frauds.</p>
            <p> </p>
            <p> 3.&#x00a0;The paper contains a multitude of basic definitions and explanations of concepts that are obvious in the world of computer security. The paragraphs devoted to individual cybersecurity risks are very short and superficial.</p>
            <p> </p>
            <p> 4. The criteria for selecting the banks included in the study are unknown, and relying solely on information obtained from a literature review may, in this case, result in an incomplete or inaccurate picture of the security solutions and challenges in individual banks. In my opinion, it would be necessary to verify/ensure that the information presented reflects the actual state of affairs.</p>
            <p> </p>
            <p> 
                <bold>Minor remarks:</bold>
            </p>
            <p> </p>
            <p> 1. Regarding Introduction section and BBA bullet point, it would be vital to mention about "cancelable biometrics" approaches there</p>
            <p> </p>
            <p> 2.&#x00a0;Information provided by Table 3 is too short to be useful, reader without reading the cited paper cannot grasp the essence of the solutions.</p>
            <p> </p>
            <p> 3.&#x00a0;Figure 5 or Table 4 are fancy, but not meaningful, there is no vital data provided through them</p>
            <p> </p>
            <p> 4.&#x00a0;Table 5 requires some editorial work &#x2013; e.g. wrong spacing</p>
            <p> </p>
            <p> 5.&#x00a0;In Table 6 a lot of data is neither available nor applicable</p>
            <p> </p>
            <p> 6. What is the aim of presenting data in Table 8 and Table 9?</p>
            <p> </p>
            <p> 
                <bold>CONCLUSION OF THE REVIEW</bold>
            </p>
            <p> The study fails to provide high-level insights on the presented subject; there is no vital contribution from the authors in building the wider context for the examined area and in drawing out meaningful takeaways.</p>
            <p> </p>
            <p> The presented material is rather a well-done scrutiny job than in-depth analysis and synthesis of general and more abstract results. The reader can find the answers to the questions What? and sometimes How? but there is no Why? and So what? questions addressed.</p>
            <p> </p>
            <p> Almost all of the included exhibits are a reflection of the information provided in the text, without any additional value to the reader - more like for an aesthetic effect.</p>
            <p> </p>
            <p> Despite an undeniable load of work done by the authors, the submitted manuscript can be treated rather as preliminary work than ready to go, and in my view, it is not suitable for publication in such a form. It requires additional layers of processing gathered data and formulating conclusions and generalizations.</p>
            <p> </p>
            <p> Source selection should also be extended by previously excluded types of bibliographic items, such as industry/business whitepapers, technical reports/notes, or theses and book chapters, as well as or legal acts or international standards containing extremely important data and insights and providing necessary context for the elaborated area.</p>
            <p> </p>
            <p> My general impression is that paper lacks its leading specific angle of looking at the area of interest. Analyzing the material through a &#x201c;specific and more in-depth perspective&#x201d; would allow for interesting conclusions and observations that would be more concrete and specific and more interesting to the audience.</p>
            <p>Are the rationale for, and objectives of, the Systematic Review clearly stated?</p>
            <p>Partly</p>
            <p>Is the statistical analysis and its interpretation appropriate?</p>
            <p>No</p>
            <p>If this is a Living Systematic Review, is the &#x2018;living&#x2019; method appropriate and is the search schedule clearly defined and justified? (&#x2018;Living Systematic Review&#x2019; or a variation of this term should be included in the title.)</p>
            <p>No</p>
            <p>Are sufficient details of the methods and analysis provided to allow replication by others?</p>
            <p>Yes</p>
            <p>Are the conclusions drawn adequately supported by the results presented in the review?</p>
            <p>Partly</p>
            <p>Reviewer Expertise:</p>
            <p>cybersecurity, biometrics, digital identity, electronic &amp; mobile banking security</p>
            <p>I confirm that I have read this submission and believe that I have an appropriate level of expertise to state that I do not consider it to be of an acceptable scientific standard, for reasons outlined above.</p>
        </body>
        <sub-article article-type="response" id="comment15991-450385">
            <front-stub>
                <contrib-group>
                    <contrib contrib-type="author">
                        <name>
                            <surname>Naji</surname>
                            <given-names>Hasan</given-names>
                        </name>
                        <aff>Computer Science, University of Mosul College of Computer Sciences and Mathematics, Mosul, Nineveh Governorate, Iraq</aff>
                    </contrib>
                </contrib-group>
                <author-notes>
                    <fn fn-type="conflict">
                        <p>
                            <bold>Competing interests: </bold>No competing interests were disclosed.</p>
                    </fn>
                </author-notes>
                <pub-date pub-type="epub">
                    <day>18</day>
                    <month>4</month>
                    <year>2026</year>
                </pub-date>
            </front-stub>
            <body>
                <p>
                    <bold>Response to Reviewer</bold>
                </p>
                <p> We sincerely thank the reviewer for the careful reading of our manuscript and for the detailed, thoughtful, and constructive comments. We also apologize for the delay in submitting our revised response, which was due to a temporary health issue. We greatly appreciate your patience and understanding.</p>
                <p> We are especially grateful for the reviewer&#x2019;s emphasis on the need for stronger contextualization, deeper synthesis, and clearer articulation of the practical significance of the review. We have carefully considered these comments and revised the manuscript accordingly, while also acknowledging certain scope limitations of the present study. Our point-by-point responses are provided below.</p>
                <p> 
                    <bold>Major Comment 1:</bold>
                </p>
                <p> 
                    <italic>The paper does not sufficiently consider the wider regulatory, compliance, and market context; banking and payment markets are not homogeneous, and frameworks such as PSD2/SCA should be considered.</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> Thank you for this important observation. We agree that regulatory and compliance frameworks play a major role in shaping authentication practices in banking and payment systems, and that the financial sector cannot be treated as fully homogeneous across jurisdictions. In the revised manuscript, we strengthened the discussion of real-world implementation by more explicitly linking authentication practices to practical banking deployment conditions and by expanding the discussion of security&#x2013;usability trade-offs in operational settings. We also acknowledge that a deeper comparative treatment of jurisdiction-specific regulatory frameworks, such as PSD2/SCA and related compliance requirements, would further strengthen the broader contextual framing. We therefore recognize this as an important direction for future extension of the review and as a limitation of the current study&#x2019;s scope.</p>
                <p> 
                    <bold>Major Comment 2:</bold>
                </p>
                <p> 
                    <italic>The manuscript underestimates the seriousness of presentation and injection attacks, particularly in the AI era, and some statements about biometric resistance to counterfeiting are too strong.</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> We thank the reviewer for highlighting this point. We agree that presentation attacks and related spoofing threats are among the most critical challenges facing biometric systems in contemporary high-risk sectors such as banking. In response, we revised the manuscript to place greater emphasis on spoofing resistance, liveness detection, and the limitations of reported biometric performance. In particular, the revised quantitative discussion now clarifies that performance results are often difficult to generalize across real-world deployment conditions and that only a limited number of reviewed studies explicitly evaluated presentation attack detection or spoofing resistance. We also carefully reconsidered overly broad wording regarding biometric resistance to replication and recognize the reviewer&#x2019;s point that such statements must be qualified in light of current attack capabilities.</p>
                <p> 
                    <bold>Major Comment 3:</bold>
                </p>
                <p> 
                    <italic>The paper contains too many basic definitions and some cybersecurity risk discussions are short and superficial.</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> Thank you for this observation. We understand the reviewer&#x2019;s concern and acknowledge that the manuscript includes foundational explanatory material intended to make the review accessible to a broad readership. At the same time, we appreciate that for expert readers, some of these sections may appear introductory. In the revised version, we sought to improve the analytical depth of the manuscript by strengthening the synthesis sections, especially in relation to quantitative findings, implementation practices, and practical implications. We also recognize that further tightening of basic explanatory material and additional expansion of higher-level synthesis could improve the manuscript further, and we appreciate this guidance.</p>
                <p> 
                    <bold>Major Comment 4:</bold>
                </p>
                <p> 
                    <italic>The criteria for selecting the banks are unclear, and relying only on literature sources may not fully reflect actual banking practices.</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> We appreciate this important point. The bank-related analysis in the manuscript was intended as an illustrative synthesis of practices reported in the reviewed and cited sources, rather than as a definitive audit of the currently deployed security architecture of each institution. We agree that real-world banking implementation may evolve rapidly and may not always be fully captured in academic literature alone. In the revised manuscript, we improved the framing of this section to better reflect its interpretive purpose and to avoid overstating the completeness of the bank comparison. We also acknowledge that future work would benefit from expanding the evidence base to include additional industry and regulatory sources where appropriate.</p>
                <p> 
                    <bold>Major Comment 5:</bold>
                </p>
                <p> 
                    <italic>The rationale and motivation are not sufficiently clear, and the paper does not adequately answer the questions Why? and So what?</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> Thank you for this valuable comment. We took this concern seriously. In response, we strengthened the manuscript&#x2019;s framing by clarifying that the purpose of the review is not merely to catalogue biometric methods, but to synthesize how biometric authentication is being used in mobile banking, what practical limitations remain, where current evidence is methodologically uneven, and which approaches appear most relevant for secure and usable deployment. We also strengthened the conclusion so that the review more clearly communicates the practical significance of the findings, particularly the observation that real-world banking practice increasingly favors layered and adaptive authentication rather than reliance on a single biometric factor.</p>
                <p> 
                    <bold>Major Comment 6:</bold>
                </p>
                <p> 
                    <italic>Source selection should be expanded to include white papers, technical reports, theses, book chapters, legal acts, standards, and related materials.</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> We appreciate this suggestion and agree that such sources can provide valuable insight, especially for industry practices, regulatory interpretation, and deployment realities. However, in the present review, we intentionally limited the formal evidence base to English-language journal and conference publications in order to maintain a more consistent and transparent selection framework under the chosen systematic review methodology. We acknowledge that this decision narrows the scope of the review and may exclude valuable non-traditional or industry-oriented sources. We have therefore treated this issue more explicitly as a limitation of the present study and agree that future reviews could usefully adopt a broader evidence strategy incorporating regulatory, industrial, and technical documentation.</p>
                <p> 
                    <bold>Minor Comment 1:</bold>
                </p>
                <p> 
                    <italic>Cancelable biometrics should be mentioned in the Introduction.</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> Thank you for this helpful suggestion. We agree that cancelable biometrics are relevant in the broader privacy and security discussion of biometric systems, particularly because they address the problem of revocability when biometric templates are compromised. We appreciate the value of this point and recognize it as an important concept for strengthening the introductory framing.</p>
                <p> 
                    <bold>Minor Comment 2:</bold>
                </p>
                <p> 
                    <italic>Table 3 is too brief to be useful.</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> We appreciate this comment. Table 3 was designed to provide a concise overview of the reviewed studies and their core focus areas rather than a full technical exposition of each method. However, we understand the reviewer&#x2019;s concern that brevity may reduce interpretive value for readers. In the revised manuscript, we sought to strengthen the surrounding synthesis so that the table functions more clearly as a reference aid within a broader analytical discussion.</p>
                <p> 
                    <bold>Minor Comment 3:</bold>
                </p>
                <p> 
                    <italic>Figure 5 and Table 4 are visually appealing but not very meaningful.</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> Thank you for this observation. The intention of Figure 5 and Table 4 was to organize and visualize the diversity of authentication combinations reported across the literature, especially the interplay between biometric, knowledge-based, possession-based, and hybrid approaches. We acknowledge, however, that their analytical value depends on clear integration with the discussion. In the revised manuscript, we worked to improve that integration and appreciate the reviewer&#x2019;s comment regarding the importance of ensuring that visual elements contribute interpretive value beyond presentation.</p>
                <p> 
                    <bold>Minor Comment 4:</bold>
                </p>
                <p> 
                    <italic>Table 5 requires editorial refinement.</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> Thank you. We appreciate this observation and carefully reviewed the manuscript for editorial consistency, including tabular formatting.</p>
                <p> 
                    <bold>Minor Comment 5:</bold>
                </p>
                <p> 
                    <italic>Much of the data in Table 6 is unavailable or not applicable.</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> We agree that this is an important limitation. Table 6 was included precisely to make visible the inconsistency and incompleteness of reporting across the reviewed literature. In the revised text, we more explicitly state that incomplete reporting of FAR, FRR, EER, liveness evaluation, and spoofing resistance is itself an important finding of the review and one of the reasons why stronger standardization is needed in future primary studies.</p>
                <p> 
                    <bold>Minor Comment 6:</bold>
                </p>
                <p> 
                    <italic>The purpose of Table 8 and Table 9 is unclear.</italic>
                </p>
                <p> 
                    <bold>Response:</bold>
                </p>
                <p> Thank you for raising this point. The purpose of these tables was to connect the academic literature with practical banking deployment patterns and to illustrate which biometric approaches appear most visible in major banking contexts. In the revised manuscript, we clarified this linkage more explicitly, particularly in the discussion of how banks balance usability and security by embedding biometrics within broader MFA strategies rather than using them in isolation.</p>
                <p> We once again thank the reviewer for the detailed and thought-provoking feedback. The comments helped us identify important areas where the manuscript required stronger synthesis, clearer framing, and more careful qualification of its claims. We believe that the revisions have significantly improved the clarity, depth, and practical relevance of the review.</p>
            </body>
        </sub-article>
    </sub-article>
    <sub-article article-type="reviewer-report" id="report450383">
        <front-stub>
            <article-id pub-id-type="doi">10.5256/f1000research.191708.r450383</article-id>
            <title-group>
                <article-title>Reviewer response for version 1</article-title>
            </title-group>
            <contrib-group>
                <contrib contrib-type="author">
                    <name>
                        <surname>Nadella</surname>
                        <given-names>Geeta Sandeep</given-names>
                    </name>
                    <xref ref-type="aff" rid="r450383a1">1</xref>
                    <role>Referee</role>
                    <uri content-type="orcid">https://orcid.org/0000-0001-7126-5186</uri>
                </contrib>
                <aff id="r450383a1">
                    <label>1</label>University of the Cumberlands, Williamsburg, USA</aff>
            </contrib-group>
            <author-notes>
                <fn fn-type="conflict">
                    <p>
                        <bold>Competing interests: </bold>No competing interests were disclosed.</p>
                </fn>
            </author-notes>
            <pub-date pub-type="epub">
                <day>29</day>
                <month>1</month>
                <year>2026</year>
            </pub-date>
            <permissions>
                <copyright-statement>Copyright: &#x00a9; 2026 Nadella GS</copyright-statement>
                <copyright-year>2026</copyright-year>
                <license xlink:href="https://creativecommons.org/licenses/by/4.0/">
                    <license-p>This is an open access peer review report distributed under the terms of the Creative Commons Attribution Licence, which permits unrestricted use, distribution, and reproduction in any medium, provided the original work is properly cited.</license-p>
                </license>
            </permissions>
            <related-article ext-link-type="doi" id="relatedArticleReport450383" related-article-type="peer-reviewed-article" xlink:href="10.12688/f1000research.173855.1"/>
            <custom-meta-group>
                <custom-meta>
                    <meta-name>recommendation</meta-name>
                    <meta-value>approve-with-reservations</meta-value>
                </custom-meta>
            </custom-meta-group>
        </front-stub>
        <body>
            <p>The review is well-structured, methodologically sound, and clearly reports its rationale, methods, and conclusions. It does not involve statistical analysis beyond reporting existing metrics, and it is not a living review.&#x00a0;This systematic literature review provides a valuable and timely synthesis of research on biometric authentication in mobile banking from 2020 to 2025. The rationale and objectives are clearly articulated, establishing a strong foundation for the work. The methodology is rigorously described using the PRISMA framework, with transparent reporting on databases, search strings, and inclusion criteria, which makes the process highly replicable. The analysis successfully addresses the stated research questions, offering a comprehensive overview of methods, threats, and banking practices, and the conclusions are well-supported by the presented evidence.</p>
            <p> </p>
            <p> To further strengthen this already solid work, several constructive avenues are worth considering. While the review effectively categorizes biometric methods and their performance metrics (e.g., FAR, FRR, EER), a more synthesized critical discussion of these quantitative results would be beneficial. For instance, highlighting the specific conditions under which certain biometrics excel or fail, based on the aggregated data, could offer more actionable insights for practitioners. Additionally, the section on usability and privacy challenges is comprehensive, but it could be enhanced by more explicitly linking these challenges to the specific implementation strategies of the banks analyzed earlier. Discussing how leading banks are practically navigating the trade-off between security strength and user experience would bridge the analysis and its real-world application more powerfully.</p>
            <p> </p>
            <p> Finally, the limitation regarding the heterogeneity of studies is well-noted. A forward-looking recommendation could be to explicitly call for more standardized evaluation protocols in future primary research to facilitate more robust comparative synthesis in subsequent reviews. Overall, this is a commendable and useful piece of scholarship that makes a clear contribution to the field by organizing a rapidly evolving body of knowledge. With some refinement in synthesizing quantitative findings and connecting analysis threads, its impact could be even greater.</p>
            <p>Are the rationale for, and objectives of, the Systematic Review clearly stated?</p>
            <p>Yes</p>
            <p>Is the statistical analysis and its interpretation appropriate?</p>
            <p>Yes</p>
            <p>If this is a Living Systematic Review, is the &#x2018;living&#x2019; method appropriate and is the search schedule clearly defined and justified? (&#x2018;Living Systematic Review&#x2019; or a variation of this term should be included in the title.)</p>
            <p>Not applicable</p>
            <p>Are sufficient details of the methods and analysis provided to allow replication by others?</p>
            <p>Yes</p>
            <p>Are the conclusions drawn adequately supported by the results presented in the review?</p>
            <p>Yes</p>
            <p>Reviewer Expertise:</p>
            <p>MIS, Artificial Intelligence, HCI, Cybersecurity, Business and IT alignment</p>
            <p>I confirm that I have read this submission and believe that I have an appropriate level of expertise to confirm that it is of an acceptable scientific standard, however I have significant reservations, as outlined above.</p>
        </body>
        <sub-article article-type="response" id="comment15990-450383">
            <front-stub>
                <contrib-group>
                    <contrib contrib-type="author">
                        <name>
                            <surname>Naji</surname>
                            <given-names>Hasan</given-names>
                        </name>
                        <aff>Computer Science, University of Mosul College of Computer Sciences and Mathematics, Mosul, Nineveh Governorate, Iraq</aff>
                    </contrib>
                </contrib-group>
                <author-notes>
                    <fn fn-type="conflict">
                        <p>
                            <bold>Competing interests: </bold>No competing interests were disclosed.</p>
                    </fn>
                </author-notes>
                <pub-date pub-type="epub">
                    <day>18</day>
                    <month>4</month>
                    <year>2026</year>
                </pub-date>
            </front-stub>
            <body>
                <p>We sincerely thank the reviewer for the careful reading of our manuscript and for the constructive and insightful comments. We also apologize for the delay in submitting our revised response, which was due to a temporary health issue. We greatly appreciate your patience and understanding.</p>
                <p> In response to the reviewer&#x2019;s comments, we have revised the manuscript in three main ways. First, we strengthened the synthesized discussion of the quantitative findings by expanding the interpretation of the reported FAR, FRR, EER, and accuracy values, with greater emphasis on the conditions under which particular biometric approaches perform well or show limitations. Second, we revised the usability and privacy discussion to more explicitly connect these challenges with the real-world implementation strategies used by major banks, particularly the use of biometrics together with OTP, device recognition, app-based approval, secure tokens, and step-up authentication. Third, we strengthened the conclusion and future directions by adding a clearer recommendation for more standardized evaluation protocols in future primary studies to support stronger comparative synthesis in subsequent reviews.</p>
                <p> We are grateful for the reviewer&#x2019;s positive overall assessment of the manuscript and believe that these revisions have improved its clarity, depth, and practical relevance.</p>
            </body>
        </sub-article>
    </sub-article>
</article>
