Paper 2025/267

Authentication and sole control at a high level of assurance on widespread smartphones with threshold signatures

Sander Q. Dijkhuis, Cleverbase ID B.V.
Abstract

How to be assured that a user entered their PIN on their smartphone? The question is especially relevant when deploying remotely secured services such as with mobile wallets for digital identity and banking, which typically deploy a server side backed by a hardware security module (HSM). As long as the server can be trusted, authentication can be performed with high assurance, but it is challenging to guarantee sole control. This report defines an approach in terms of an abstract security problem and a concrete solution based on threshold signatures. It can be applied to use cases such as HSM-backed mobile identity wallets and other identification means.

Metadata
Available format(s)
PDF
Category
Applications
Publication info
Preprint.
Keywords
authenticationauthorizationwalletsmartphonethreshold signature
Contact author(s)
sander dijkhuis @ cleverbase com
History
2025-02-18: approved
2025-02-18: received
See all versions
Short URL
https://ia.cr/2025/267
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2025/267,
      author = {Sander Q. Dijkhuis},
      title = {Authentication and sole control at a high level of assurance on widespread smartphones with threshold signatures},
      howpublished = {Cryptology {ePrint} Archive, Paper 2025/267},
      year = {2025},
      url = {https://eprint.iacr.org/2025/267}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.