A Machine Learning Approach to Augment Security in NFC-Based Access Control Systems
DOI:
https://doi.org/10.31273/reinvention.v18i2.1931Keywords:
Clone card detection, Deep learning (CNN) for NFC security, Image-based card verification, Near-field communication-based access systems, Visual authentication using machine learningAbstract
Near-field communication (NFC) is widely used in access control systems such as payment processing and regulating access to facilities. Due to its decentralised nature, NFC is constrained by resource limitations, making it vulnerable to exploits such as key cloning. This study investigated the effectiveness of machine-learning algorithms in visually distinguishing cards as an added security measure against unauthorised cloned cards.
The methodology includes collecting datasets, building classification models (CNN, KNN and SVM), performance evaluations and integration of the best-performing model into an NFC prototype, Clone Guard. Performance evaluations included accuracy, precision, F1-score and recall metrics. We found that CNN was the best-performing model, with a prediction accuracy of 96 per cent.
Experimental results showed that noisy datasets produced a more robust model than noiseless datasets. Heatmap visualisations indicate that distinct colours and bold text regions contributed significantly to the model’s decision-making. Despite the high accuracy on test data, the prototype performed less accurately when classifying scanned cards.
The study provided a basic evaluation of classification algorithms, concluding that deep learning offered greater suitability. The implications of the prototype extended into the applied research domain, offering a configurable and deployable solution to improve the resilience of NFC-based access systems against unauthorised cloned cards.
References
Additional Files
Published
Issue
Section
License
Copyright (c) 2025 Daniella R. Gullotta, David Prego, Yibeltal F. Alem

This work is licensed under a Creative Commons Attribution 4.0 International License.
Authors are responsible for obtaining permission from copyright holders for reproducing through any medium of communication those illustrations, tables, figures or lengthy quotations previously published elsewhere. Authors are also responsible for adding these permissions to the acknowledgement footnote that precedes all other notes or crediting the source and copyright of photographs or figures in the accompanying captions.
The journal's policy is to ask authors to grant us the licence to publish their work, which gives us the exclusive right both to reproduce and/or distribute their article (including the abstract) in printed, electronic or any other medium, and in turn to authorise others (including Reproduction Rights Organisations such as the Copyright Licensing Agency and the Copyright Clearance Center) to do the same. In return the author(s) assert their Moral Right to be identified as the author, and we promise that we will respect their rights as the author(s). That is, we will make sure that their name(s) is/are always clearly associated with the article and, while they do allow us to make necessary editorial changes, we will not make any substantial alteration to their article without consulting them.
Copyright remains with the author(s), however, the author(s) authorise us to act on their behalf to defend their copyright if anyone should infringe it, and to retain half of any damages awarded, after deducting our costs. The author(s) also retain the right to use their own article (provided they acknowledge the published original in standard bibliographic citation form) in the following ways, as long as they do not sell it or give it away in ways which would conflict directly with our interests. The author(s) is/are free to use their article for the internal educational or other purposes of their own institution or company; mounted on their own or their institution’s website; posted to free public servers of preprints and/or articles in their subject area; or in whole or in part, as the basis for their own further publications or spoken presentations.
If you have any queries about copyright please contact reinventionjournal@warwick.ac.uk