ETRI-Knowledge Sharing Plaform

KOREAN
논문 검색
Type SCI
Year ~ Keyword

Detail

Journal Article A Security Analysis of Blockchain-Based Did Services
Cited 25 time in scopus Download 208 time Share share facebook twitter linkedin kakaostory
Authors
Bong Gon Kim, Young-Seob Cho, Seok-Hyun Kim, Hyoungshick Kim, Simon S. Woo
Issue Date
2021-02
Citation
IEEE Access, v.9, pp.22894-22913
ISSN
2169-3536
Publisher
IEEE
Language
English
Type
Journal Article
DOI
https://dx.doi.org/10.1109/ACCESS.2021.3054887
Abstract
Decentralized identifiers (DID) has shown great potential for sharing user identities across different domains and services without compromising user privacy. DID is designed to enable the minimum disclosure of the proof from a user's credentials on a need-to-know basis with a contextualized delegation. At first glance, DID appears to be well-suited for this purpose. However, the overall security of DID has not been thoroughly examined. In this paper, we systemically explore key components of DID systems and analyze their possible vulnerabilities when deployed. First, we analyze the data flow between DID system components and analyze possible security threats. Next, we carefully identify potential security threats over seven different DID functional domains, ranging from user wallet to universal resolver. Lastly, we discuss the possible countermeasures against the security threats we identified.
KSP Keywords
BlockChain, Data Flow, Different domains, Key Components, Security threats, User privacy, security analysis, system components
This work is distributed under the term of Creative Commons License (CCL)
(CC BY)
CC BY