Toward Mending Two Nation-Scale Brokered Identification Systems

نویسندگان

  • Luís T. A. N. Brandão
  • Nicolas Christin
  • George Danezis
  • anonymous
چکیده

Available online public/governmental services requiring authentication by citizens have considerably expanded in recent years. This has hindered the usability and security associated with credential management by users and service providers. To address the problem, some countries have proposed nation-scale identification/authentication systems that intend to greatly reduce the burden of credential management, while seemingly offering desirable privacy benefits. In this paper we analyze two such systems: the Federal Cloud Credential Exchange (FCCX) in the United States and GOV.UK Verify in the United Kingdom, which altogether aim at serving more than a hundred million citizens. Both systems propose a brokered identification architecture, where an online central hub mediates user authentications between identity providers and service providers. We show that both FCCX and GOV.UK Verify suffer from serious privacy and security shortcomings, fail to comply with privacy-preserving guidelines they are meant to follow, and may actually degrade user privacy. Notably, the hub can link interactions of the same user across different service providers and has visibility over private identifiable information of citizens. In case of malicious compromise it is also able to undetectably impersonate users. Within the structural design constraints placed on these nation-scale brokered identification systems, we propose feasible technical solutions to the privacy and security issues we identified. We conclude with a strong recommendation that FCCX and GOV.UK Verify be subject to a more in-depth technical and public review, based on a defined and comprehensive threat model, and adopt adequate structural adjustments.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A Public Comment on NCCoE's White Paper on Privacy-Enhancing Identity Brokers

The National Cybersecurity Center of Excellence (NCCoE) (in the United States) has published on October 19, 2015, a white paper on “privacy-enhanced identity brokers.” We present here a reply to their request for public comments. We enumerate concerns whose consideration we find paramount for the design of a privacy-enhancing identity brokering solution, for identification and authentication of...

متن کامل

Tight Fault Locality (Extended Abstract)

The notion of fault local mending was suggested as a paradigm for designing fault tolerant algorithms that scale to large networks. For such algorithms the complexity of recovering is proportional to the number of faults. We refine this notion by introducing the concept of tight fault locality to deal with problems whose complexity (in the absence of faults) is sublinear in the size of the netw...

متن کامل

American Humor in Promoting the Talk over the Wall with a Focus on Robert Frost’s Poems

The Yankee is an American national phenomenon. He had leapt into national stature when slipped outside of his local character. A myth was woven around him and a cult of the Yankee developed by the permeation of the Yankee characteristics in many different characters who played tricks or told stories and entertained their audiences. The present article is an attempt to observe the Yankee myth, i...

متن کامل

Entrepreneurship Financing and Nation Building in Nigeria: Evidence from Agricultural Small and Medium Scale Enterprises

An attempt has been made in this study to examine the relationship between entrepreneurship financing from the perspective of agricultural small and medium scale enterprises and nation building in Nigeria from 1990 to 2017. Data were collected from the Central Bank of Nigeria Statistical Bulletin with the application of Autoregressive Distributed Lagged and Bounds test to address the objective ...

متن کامل

BUISY - Using Brokered Data-Objects for Environmental Informat

Internet-based information systems can be applied to manage and efficiently use distributed data-sources in large companies and government organizations. However, due to the heterogeneity of data-sources and user requirements, “traditional” information system architectures have serious shortcomings. In this paper, we introduce the concept of information sites based on brokered data-objects, and...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:
  • PoPETs

دوره 2015  شماره 

صفحات  -

تاریخ انتشار 2015