On cryptographic mechanisms for the selective disclosure of verifiable credentials

被引:1
|
作者
Flamini, Andrea [1 ]
Sciarretta, Giada [2 ]
Scuro, Mario [1 ]
Sharif, Amir [2 ]
Tomasi, Alessandro [2 ]
Ranise, Silvio [1 ,2 ]
机构
[1] Univ Trento, Dept Math, Trento, Italy
[2] Fdn Bruno Kessler, Ctr Cybersecur, Trento, Italy
关键词
Selective disclosure; Verifiable credentials; Zero-knowledge proof; eIDAS; 2; GDPR; SIGNATURES;
D O I
10.1016/j.jisa.2024.103789
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Verifiable credentials are a digital analogue of physical credentials. Their authenticity and integrity are protected by means of cryptographic techniques, and they can be presented to verifiers to reveal attributes or even predicates about the attributes included in the credential. One way to preserve privacy during presentation consists in selectively disclosing the attributes in a credential. In this paper we present the most widespread cryptographic mechanisms used to enable selective disclosure of attributes identifying two categories: the ones based on hiding commitments - e.g., m dl ISO/IEC 18013-5 - and the ones based on non -interactive zeroknowledge proofs - e.g., BBS signatures. We also include a description of the cryptographic primitives used to design such cryptographic mechanisms. We describe the design of the cryptographic mechanisms and compare them by performing an analysis on their standard maturity in terms of standardization, cryptographic agility and quantum safety, then we compare the features that they support with main focus on the unlinkability of presentations, the ability to create predicate proofs and support for threshold credential issuance. Finally we perform an experimental evaluation based on the Rust open source implementations that we have considered most relevant. In particular we evaluate the size of credentials and presentations built using different cryptographic mechanisms and the time needed to generate and verify them. We also highlight some trade-offs that must be considered in the instantiation of the cryptographic mechanisms.
引用
收藏
页数:18
相关论文
共 50 条
  • [1] A First Appraisal of Cryptographic Mechanisms for the Selective Disclosure of Verifiable Credentials
    Flamini, Andrea
    Ranise, Silvio
    Sciarretta, Giada
    Scuro, Mario
    Sharif, Amir
    Tomasi, Alessandro
    PROCEEDINGS OF THE 20TH INTERNATIONAL CONFERENCE ON SECURITY AND CRYPTOGRAPHY, SECRYPT 2023, 2023, : 123 - 134
  • [2] Requirements and Secure Serialization for Selective Disclosure Verifiable Credentials
    Kalos, Vasilis
    Polyzos, George C.
    ICT SYSTEMS SECURITY AND PRIVACY PROTECTION (SEC 2022), 2022, 648 : 231 - 247
  • [3] Formalising Linked-Data based Verifiable Credentials for Selective Disclosure
    Yamamoto, Dan
    Suga, Yuji
    Sako, Kazue
    7TH IEEE EUROPEAN SYMPOSIUM ON SECURITY AND PRIVACY WORKSHOPS (EUROS&PW 2022), 2022, : 52 - 65
  • [4] Cryptographic Requirements of Verifiable Credentials for Digital Identification Documents
    Richter, Maximilian
    Bertram, Magdalena
    Seidensticker, Jasper
    Margraf, Marian
    2023 IEEE 47TH ANNUAL COMPUTERS, SOFTWARE, AND APPLICATIONS CONFERENCE, COMPSAC, 2023, : 1663 - 1668
  • [5] SD-BLS: Privacy Preserving Selective Disclosure of Verifiable Credentials with Unlinkable Threshold Revocation
    Roio, Denis
    Selvaggini, Rebecca
    Bellini, Gabriele
    D'Intino, Andrea
    2024 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN, BLOCKCHAIN 2024, 2024, : 505 - 511
  • [6] Selective disclosure in digital credentials: A review
    Ramic, Seila Becirovic
    Cogo, Ehlimana
    Prazina, Irfan
    Cogo, Emir
    Turkanovic, Muhamed
    Mulahasanovic, Razija Turcinhodzic
    Mrdovic, Sasa
    ICT EXPRESS, 2024, 10 (04): : 916 - 934
  • [7] Authentication, Authorization, and Selective Disclosure for IoT Data Sharing Using Verifiable Credentials and Zero-Knowledge Proofs
    Fotiou, Nikos
    Pittaras, Iakovos
    Chadoulos, Spiros
    Siris, Vasilios A.
    Polyzos, George C.
    Ipiotis, Nikolaos
    Keranidis, Stratos
    EMERGING TECHNOLOGIES FOR AUTHORIZATION AND AUTHENTICATION, ETAA 2022, 2023, 13782 : 88 - 101
  • [8] Grouping verifiable content for selective disclosure
    Bull, L
    Squire, DM
    Newmarch, J
    Zheng, YL
    INFORMATION SECURITY AND PRIVACY, PROCEEDINGS, 2003, 2727 : 1 - 12
  • [9] Lightweight selective disclosure for verifiable documents on blockchain
    Saito, Kenji
    Watanabe, Satoki
    ICT EXPRESS, 2021, 7 (03): : 290 - 294
  • [10] Digital Identities and Verifiable Credentials
    Johannes Sedlmeir
    Reilly Smethurst
    Alexander Rieger
    Gilbert Fridgen
    Business & Information Systems Engineering, 2021, 63 : 603 - 613