中文
相关论文

相关论文: ExPrESSO: Zero-Knowledge backed Extensive Privacy …

200 篇论文

Today, digital identity management for individuals is either inconvenient and error-prone or creates undesirable lock-in effects and violates privacy and security expectations. These shortcomings inhibit the digital transformation in…

密码学与安全 · 计算机科学 2023-11-06 Matthias Babel , Johannes Sedlmeir

As IoT becomes omnipresent vast amounts of data are generated, which can be used for building innovative applications. However,interoperability issues and security concerns, prevent harvesting the full potentials of these data. In this…

Single sign-on authentication systems such as OAuth 2.0 are widely used in web services. They allow users to use accounts registered with major identity providers such as Google and Facebook to login on multiple services (relying parties).…

密码学与安全 · 计算机科学 2021-03-04 Srivathsan G. Morkonda , Paul C. van Oorschot , Sonia Chiasson

Digital identity verification often forces a privacy trade-off, where users must disclose sensitive personal data to prove simple eligibility criteria. As blockchain applications integrate with regulated environments, this over-disclosure…

密码学与安全 · 计算机科学 2026-02-24 Supriya Khadka , Dhiman Goswami , Sanchari Das

The Self-Sovereign Identity (SSI) paradigm is instrumental for decentralised identity management, allowing an entity to create, manage, and present their digital credentials without relying on centralised authorities. Credential selective…

密码学与安全 · 计算机科学 2026-04-14 Elia Onofri , Andrea De Salve , Paolo Mori , Laura Emilia Maria Ricci , Roberto Di Pietro

Single Sign-On (SSO) shifts the crucial authentication process on a website to to the underlying SSO protocols and their correct implementation. To strengthen SSO security, organizations, such as IETF and W3C, maintain advisories to address…

密码学与安全 · 计算机科学 2023-02-03 Maximilian Westers , Tobias Wich , Louis Jannett , Vladislav Mladenov , Christian Mainka , Andreas Mayer

Tax returns contain key financial information of interest to third parties: public officials are asked to share financial data for transparency, companies seek to assess the financial status of business partners, and individuals need to…

密码学与安全 · 计算机科学 2024-03-26 Alex Berke , Tobin South , Robert Mahari , Kent Larson , Alex Pentland

In today's digital age, personal data is constantly at risk of compromise. Attribute-Based Encryption (ABE) has emerged as a promising approach to privacy-preserving data protection. This paper proposes an anonymous authentication mechanism…

密码学与安全 · 计算机科学 2025-06-18 Nouha Oualha

In decentralized web applications, users face an inherent conflict between public verifiability and personal privacy. To participate in regulated on-chain services, users must currently disclose sensitive identity documents to centralized…

密码学与安全 · 计算机科学 2026-03-18 Supriya Khadka , Sanchari Das

Software Bills of Materials (SBOMs) are increasingly mandated by regulators, yet existing sharing mechanisms impose a binary choice between full disclosure and full opacity. This exposes software suppliers to attacks that can be deduced…

密码学与安全 · 计算机科学 2026-05-04 Tom Sorger , Eric Cornelissen , Aman Sharma , Javier Ron , Musard Balliu , Martin Monperrus

In the digital era, users share their personal data with service providers to obtain some utility, e.g., access to high-quality services. Yet, the induced information flows raise privacy and integrity concerns. Consequently, cautious users…

密码学与安全 · 计算机科学 2021-01-13 Sylvain Chatel , Apostolos Pyrgelis , Juan R. Troncoso-Pastoriza , Jean-Pierre Hubaux

Approved client-server authentication mechanisms are described for the IVOA single-sign-on profile: No Authentication; HTTP Basic Authentication; TLS with passwords; TLS with client certificates; Cookies; Open Authentication; Security…

天体物理仪器与方法 · 物理学 2019-06-05 Giuliano Taffoni , André Schaaff , Guy Rixon , Brian Major

We live in an era of information and it is very important to handle the exchange of information. While sending data to an authorized source, we need to protect it from unauthorized sources, changes, and authentication. ZKP technique can be…

密码学与安全 · 计算机科学 2019-11-22 Lavish Saluja , Ashutosh Bhatia

In today's world, secure and efficient biometric authentication is of keen importance. Traditional authentication methods are no longer considered reliable due to their susceptibility to cyber-attacks. Biometric authentication, particularly…

密码学与安全 · 计算机科学 2023-10-31 Pranay Kothari , Deepak Chopra , Manjot Singh , Shivam Bhardwaj , Rudresh Dwivedi

The challenge of achieving passwordless user authentication is real given the prevalence of web applications that keep asking passwords. Complicating this issue further, in an enterprise environment, a single sign-on (SSO) service is often…

密码学与安全 · 计算机科学 2023-10-10 Amin Mahnamfar , Kemal Bicakci , Yusuf Uzunay

With the proliferation of decentralized applications (DApps), the conflict between the transparency of blockchain technology and user data privacy has become increasingly prominent. While Decentralized Identity (DID) and Verifiable…

密码学与安全 · 计算机科学 2025-10-14 Hui Yuan

Anonymous credentials (ACs) are a crucial cryptographic tool for privacy-preserving authentication in decentralized networks, allowing holders to prove eligibility without revealing their identity. However, a major limitation of standard…

密码学与安全 · 计算机科学 2025-12-24 Bin Xie , Rui Song , Xuyuan Cai

Single Sign-On (SSO) systems simplify login procedures by using an an Identity Provider (IdP) to issue authentication tokens which can be consumed by Service Providers (SPs). Traditionally, IdPs are modeled as trusted third parties. This is…

密码学与安全 · 计算机科学 2014-12-05 Christian Mainka , Vladislav Mladenov , Jörg Schwenk

Privacy and security are often intertwined. For example, identity theft is rampant because we have become accustomed to authentication by identification. To obtain some service, we provide enough information about our identity for an…

密码学与安全 · 计算机科学 2009-08-10 A. Damodaram , H. Jayasri

Constrained devices in IoT networks often require to outsource resource-heavy computations or data processing tasks. Currently, most of those jobs are done in the centralised cloud. However, with rapidly increasing number of devices and…

密码学与安全 · 计算机科学 2018-07-18 Michał Król , Ioannis Psaras