On cryptographic mechanisms for the selective disclosure of verifiable credentials

被引:1
|
作者
Flamini, Andrea [1 ]
Sciarretta, Giada [2 ]
Scuro, Mario [1 ]
Sharif, Amir [2 ]
Tomasi, Alessandro [2 ]
Ranise, Silvio [1 ,2 ]
机构
[1] Univ Trento, Dept Math, Trento, Italy
[2] Fdn Bruno Kessler, Ctr Cybersecur, Trento, Italy
关键词
Selective disclosure; Verifiable credentials; Zero-knowledge proof; eIDAS; 2; GDPR; SIGNATURES;
D O I
10.1016/j.jisa.2024.103789
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Verifiable credentials are a digital analogue of physical credentials. Their authenticity and integrity are protected by means of cryptographic techniques, and they can be presented to verifiers to reveal attributes or even predicates about the attributes included in the credential. One way to preserve privacy during presentation consists in selectively disclosing the attributes in a credential. In this paper we present the most widespread cryptographic mechanisms used to enable selective disclosure of attributes identifying two categories: the ones based on hiding commitments - e.g., m dl ISO/IEC 18013-5 - and the ones based on non -interactive zeroknowledge proofs - e.g., BBS signatures. We also include a description of the cryptographic primitives used to design such cryptographic mechanisms. We describe the design of the cryptographic mechanisms and compare them by performing an analysis on their standard maturity in terms of standardization, cryptographic agility and quantum safety, then we compare the features that they support with main focus on the unlinkability of presentations, the ability to create predicate proofs and support for threshold credential issuance. Finally we perform an experimental evaluation based on the Rust open source implementations that we have considered most relevant. In particular we evaluate the size of credentials and presentations built using different cryptographic mechanisms and the time needed to generate and verify them. We also highlight some trade-offs that must be considered in the instantiation of the cryptographic mechanisms.
引用
收藏
页数:18
相关论文
共 50 条
  • [21] CredenceLedger: A Permissioned Blockchain for Verifiable Academic Credentials
    Arenas, Rodelio
    Fernandez, Proceso
    2018 IEEE INTERNATIONAL CONFERENCE ON ENGINEERING, TECHNOLOGY AND INNOVATION (ICE/ITMC), 2018,
  • [22] Verifiable Credentials in US Government Disaster Relief
    Brunelle, Justin F.
    Darling, Erika
    Nohle, Andrew
    O'Leary, Patrick
    Thomas, Jaylen Jerome
    Wijesinghe, Sanith
    Sarasti, Mike
    2024 IEEE WORLD FORUM ON PUBLIC SAFETY TECHNOLOGY, WFPST 2024, 2024, : 98 - 98
  • [23] Access with Fast Batch Verifiable Anonymous Credentials
    Zeng, Ke
    INFORMATION AND COMMUNICATIONS SECURITY, PROCEEDINGS, 2008, 5308 : 65 - 80
  • [24] Towards Post-Quantum Verifiable Credentials
    Wood, Tim
    Thomas, Keerthi
    Dean, Matthew
    Kannan, Swaminathan
    Learney, Robert
    19TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY, AND SECURITY, ARES 2024, 2024,
  • [25] Automated Trust Negotiation Using Cryptographic Credentials
    Li, Jiangtao
    Li, Ninghui
    Winsborough, William H.
    ACM TRANSACTIONS ON INFORMATION AND SYSTEM SECURITY, 2009, 13 (01)
  • [26] VERIFIABLE DISCLOSURE OF SECRETS AND APPLICATIONS
    CREPEAU, C
    LECTURE NOTES IN COMPUTER SCIENCE, 1990, 434 : 150 - 154
  • [27] EVOKE: Efficient Revocation of Verifiable Credentials in IoT Networks
    Mazzocca, Carlo
    Acar, Abbas
    Uluagac, Selcuk
    Montanari, Rebecca
    PROCEEDINGS OF THE 33RD USENIX SECURITY SYMPOSIUM, SECURITY 2024, 2024, : 1279 - 1295
  • [28] POSTER: Using Verifiable Credentials for Authentication of UAVs in Logistics
    Watanabe, Ken
    Sako, Kazue
    APPLIED CRYPTOGRAPHY AND NETWORK SECURITY WORKSHOPS, ACNS 2023 SATELLITE WORKSHOPS, ADSC 2023, AIBLOCK 2023, AIHWS 2023, AIOTS 2023, CIMSS 2023, CLOUD S&P 2023, SCI 2023, SECMT 2023, SIMLA 2023, 2023, 13907 : 710 - 715
  • [29] Blockchain-based Traceable Selective Disclosure Credentials for Self-Sovereign Identity
    Li, Xiang
    Chen, Congcong
    Teng, Minyu
    Shi, Yang
    PROCEEDINGS OF THE 2024 27 TH INTERNATIONAL CONFERENCE ON COMPUTER SUPPORTED COOPERATIVE WORK IN DESIGN, CSCWD 2024, 2024, : 1382 - 1387
  • [30] Data Sharing Using Verifiable Credentials in the Agriculture Sector
    Ashley, Paul
    DISTRIBUTED LEDGER TECHNOLOGY, SDLT 2023, 2024, 1975 : 72 - 81