Sybil-Resistant Self-Sovereign Identity Utilizing Attested Execution Secure Processors and Zero-Knowledge Membership Proofs

被引:0
|
作者
Moriyama, Koichi [1 ,2 ]
Otsuka, Akira [2 ]
机构
[1] NTT DOCOMO INC, Tokyo 1006150, Japan
[2] Inst Informat Secur, Yokohama 2210835, Japan
来源
IEEE ACCESS | 2025年 / 13卷
关键词
Security; Protocols; Program processors; Blockchains; Privacy; Mobile applications; Multi-party computation; Electrical resistance measurement; Buildings; W3C; Attested execution secure processors; decentralized digital identity; permissionless blockchain; self-sovereign identity; Sybil-resistant; verifiable credentials; zero-knowledge membership proofs Sigma-protocol;
D O I
10.1109/ACCESS.2025.3533877
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Increasing attention to digital identity and self-sovereign identity (SSI) is gaining momentum. SSI brings various benefits to natural persons, such as owning controls; conversely, digital identity systems in the real world require Sybil-resistance to comply with anti-money laundering (AML) and other needs. CanDID by Maram et al. proposed that decentralized digital identity systems may achieve Sybil-resistance and preserve privacy by utilizing multi-party computation (MPC), assuming a distributed committee of trusted nodes. Pass et al. proposed the formal abstraction of attested execution secure processors (AESPs) while equipping hardware-assisted security in mobile devices has become the norm. We first describe our proposal to utilize AESPs for building secure Sybil-resistant SSI systems, the architecture with a set of system protocols Pi(Gatt), which brings drastic flexibility and efficiency compared to existing systems. In addition, we propose a novel scheme that enables users (holders) to request verifiers to verify their credentials without AESPs, and it further achieves unlinkability among credentials created for public verification. Our scheme introduces a simplified format for computed claims and commitment-based anonymous identifiers. We also describe a technique to utilize zero-knowledge membership proofs, in particular, "One-Out-of-Many Proofs" Sigma -protocol by Groth and Kohlweiss, which can prove the existence of an expected credential without identifying it. Along with other techniques, such as utilizing the BBS+ signature scheme, we demonstrate how our scheme can achieve its goals with the extended anonymous and Sybil-resistant SSI system protocols Pi(Gatt) . Entitling unlinkability among derived credentials in the anonymous Sybil-resistant SSI results in proper privacy preservation.
引用
收藏
页码:17919 / 17944
页数:26
相关论文
共 6 条
  • [1] Permissionless Blockchain-Based Sybil-Resistant Self-Sovereign Identity Utilizing Attested Execution Secure Processors
    Moriyama, Koichi
    Otsuka, Akira
    2022 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN (BLOCKCHAIN 2022), 2022, : 1 - 10
  • [2] Permissionless Blockchain-Based Sybil-Resistant Self-Sovereign Identity Utilizing Attested Execution Secure Processors*
    Moriyama, Koichi
    Otsuka, Akira
    IEICE TRANSACTIONS ON INFORMATION AND SYSTEMS, 2024, E107D (09) : 1112 - 1122
  • [3] A Self-Sovereign Identity Based on Zero-Knowledge Proof and Blockchain
    Dieye, Mohameden
    Valiorgue, Pierre
    Gelas, Jean-Patrick
    Diallo, El-Hacen
    Ghodous, Parisa
    Biennier, Frederique
    Peyrol, Eric
    IEEE ACCESS, 2023, 11 : 49445 - 49455
  • [4] Zero-Knowledge Proof of Distinct Identity: a Standard-compatible Sybil-resistant Pseudonym Extension for C-ITS
    Tao, Ye
    Wu, Hongyi
    Javanmardi, Ehsan
    Tsukada, Manabu
    Esaki, Hiroshi
    2024 35TH IEEE INTELLIGENT VEHICLES SYMPOSIUM, IEEE IV 2024, 2024, : 1828 - 1835
  • [5] Empowering Privacy Through Peer-Supervised Self-Sovereign Identity: Integrating Zero-Knowledge Proofs, Blockchain Oversight, and Peer Review Mechanism
    Liu, Junliang
    Liang, Zhiyao
    Lyu, Qiuyun
    SENSORS, 2024, 24 (24)
  • [6] zkSSI: A Zero-Knowledge-Based Self-Sovereign Identity Framework
    Hoang, Anh-Tu
    Ileri, Can Umut
    Sanders, William
    Schulte, Stefan
    2024 IEEE INTERNATIONAL CONFERENCE ON BLOCKCHAIN, BLOCKCHAIN 2024, 2024, : 276 - 285