{"id":"https://openalex.org/W7160319550","doi":"https://doi.org/10.62056/a3qjmpgxq","title":"Anonymous Credentials from ECDSA","display_name":"Anonymous Credentials from ECDSA","publication_year":2026,"publication_date":"2026-05-04","ids":{"openalex":"https://openalex.org/W7160319550","doi":"https://doi.org/10.62056/a3qjmpgxq"},"language":"en","primary_location":{"id":"doi:10.62056/a3qjmpgxq","is_oa":true,"landing_page_url":"https://doi.org/10.62056/a3qjmpgxq","pdf_url":"https://cic.iacr.org/p/3/1/7/pdf","source":{"id":"https://openalex.org/S4394708374","display_name":"IACR Communications in Cryptology","issn_l":"3006-5496","issn":["3006-5496"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320989","host_organization_name":"International Association for Cryptologic Research","host_organization_lineage":["https://openalex.org/P4310320989"],"host_organization_lineage_names":["International Association for Cryptologic Research"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Communications in Cryptology","raw_type":"journal-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"hybrid","oa_url":"https://cic.iacr.org/p/3/1/7/pdf","any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5135387928","display_name":"Matteo Frigo","orcid":"https://orcid.org/0009-0007-2648-2641"},"institutions":[{"id":"https://openalex.org/I1291425158","display_name":"Google (United States)","ror":"https://ror.org/00njsd438","country_code":"US","type":"company","lineage":["https://openalex.org/I1291425158","https://openalex.org/I4210128969"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Matteo Frigo","raw_affiliation_strings":["Google"],"raw_orcid":"https://orcid.org/0009-0007-2648-2641","affiliations":[{"raw_affiliation_string":"Google","institution_ids":["https://openalex.org/I1291425158"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5135289778","display_name":"abhi shelat","orcid":"https://orcid.org/0009-0008-5362-469X"},"institutions":[{"id":"https://openalex.org/I1291425158","display_name":"Google (United States)","ror":"https://ror.org/00njsd438","country_code":"US","type":"company","lineage":["https://openalex.org/I1291425158","https://openalex.org/I4210128969"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"abhi shelat","raw_affiliation_strings":["Google"],"raw_orcid":"https://orcid.org/0009-0008-5362-469X","affiliations":[{"raw_affiliation_string":"Google","institution_ids":["https://openalex.org/I1291425158"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":2,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":true,"cited_by_count":0,"citation_normalized_percentile":{"value":0.69297961,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":"3","issue":"1","first_page":null,"last_page":null},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9783999919891357,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9783999919891357,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11693","display_name":"Cryptography and Residue Arithmetic","score":0.011599999852478504,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11504","display_name":"Advanced Authentication Protocols Security","score":0.0027000000700354576,"subfield":{"id":"https://openalex.org/subfields/1705","display_name":"Computer Networks and Communications"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/credential","display_name":"Credential","score":0.8575000166893005},{"id":"https://openalex.org/keywords/issuer","display_name":"Issuer","score":0.6729999780654907},{"id":"https://openalex.org/keywords/elliptic-curve-digital-signature-algorithm","display_name":"Elliptic Curve Digital Signature Algorithm","score":0.5619000196456909},{"id":"https://openalex.org/keywords/digital-signature","display_name":"Digital signature","score":0.5289999842643738},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.5188000202178955},{"id":"https://openalex.org/keywords/signcryption","display_name":"Signcryption","score":0.5115000009536743},{"id":"https://openalex.org/keywords/handshake","display_name":"Handshake","score":0.4447999894618988},{"id":"https://openalex.org/keywords/password","display_name":"Password","score":0.4332999885082245},{"id":"https://openalex.org/keywords/authentication","display_name":"Authentication (law)","score":0.39489999413490295}],"concepts":[{"id":"https://openalex.org/C2777810591","wikidata":"https://www.wikidata.org/wiki/Q16861606","display_name":"Credential","level":2,"score":0.8575000166893005},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.7347000241279602},{"id":"https://openalex.org/C138170105","wikidata":"https://www.wikidata.org/wiki/Q1337949","display_name":"Issuer","level":2,"score":0.6729999780654907},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.574999988079071},{"id":"https://openalex.org/C197966572","wikidata":"https://www.wikidata.org/wiki/Q915079","display_name":"Elliptic Curve Digital Signature Algorithm","level":5,"score":0.5619000196456909},{"id":"https://openalex.org/C118463975","wikidata":"https://www.wikidata.org/wiki/Q220849","display_name":"Digital signature","level":3,"score":0.5289999842643738},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.5188000202178955},{"id":"https://openalex.org/C155527597","wikidata":"https://www.wikidata.org/wiki/Q1727777","display_name":"Signcryption","level":4,"score":0.5115000009536743},{"id":"https://openalex.org/C2778000800","wikidata":"https://www.wikidata.org/wiki/Q830043","display_name":"Handshake","level":3,"score":0.4447999894618988},{"id":"https://openalex.org/C109297577","wikidata":"https://www.wikidata.org/wiki/Q161157","display_name":"Password","level":2,"score":0.4332999885082245},{"id":"https://openalex.org/C148417208","wikidata":"https://www.wikidata.org/wiki/Q4825882","display_name":"Authentication (law)","level":2,"score":0.39489999413490295},{"id":"https://openalex.org/C203062551","wikidata":"https://www.wikidata.org/wiki/Q201339","display_name":"Public-key cryptography","level":3,"score":0.3901999890804291},{"id":"https://openalex.org/C94284585","wikidata":"https://www.wikidata.org/wiki/Q228184","display_name":"Random oracle","level":4,"score":0.3898000121116638},{"id":"https://openalex.org/C2778355321","wikidata":"https://www.wikidata.org/wiki/Q17079427","display_name":"Identity (music)","level":2,"score":0.3894999921321869},{"id":"https://openalex.org/C15927051","wikidata":"https://www.wikidata.org/wiki/Q246593","display_name":"Cryptographic primitive","level":4,"score":0.3849000036716461},{"id":"https://openalex.org/C108710211","wikidata":"https://www.wikidata.org/wiki/Q11538","display_name":"Mathematical proof","level":2,"score":0.38350000977516174},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.3409999907016754},{"id":"https://openalex.org/C2780513914","wikidata":"https://www.wikidata.org/wiki/Q18210350","display_name":"Bottleneck","level":2,"score":0.3330000042915344},{"id":"https://openalex.org/C110406131","wikidata":"https://www.wikidata.org/wiki/Q41349","display_name":"Smart card","level":2,"score":0.3278999924659729},{"id":"https://openalex.org/C94461902","wikidata":"https://www.wikidata.org/wiki/Q2762418","display_name":"Formal proof","level":3,"score":0.3160000145435333},{"id":"https://openalex.org/C202424057","wikidata":"https://www.wikidata.org/wiki/Q1224829","display_name":"Digital Signature Algorithm","level":4,"score":0.3154999911785126},{"id":"https://openalex.org/C178005623","wikidata":"https://www.wikidata.org/wiki/Q308859","display_name":"Anonymity","level":2,"score":0.2892000079154968},{"id":"https://openalex.org/C18899389","wikidata":"https://www.wikidata.org/wiki/Q2736593","display_name":"Blind signature","level":4,"score":0.28859999775886536},{"id":"https://openalex.org/C167529545","wikidata":"https://www.wikidata.org/wiki/Q274758","display_name":"Public key certificate","level":4,"score":0.2745000123977661},{"id":"https://openalex.org/C2780801425","wikidata":"https://www.wikidata.org/wiki/Q5164392","display_name":"Construct (python library)","level":2,"score":0.2646999955177307},{"id":"https://openalex.org/C180073179","wikidata":"https://www.wikidata.org/wiki/Q3304359","display_name":"Secure channel","level":3,"score":0.25780001282691956},{"id":"https://openalex.org/C40404285","wikidata":"https://www.wikidata.org/wiki/Q1921816","display_name":"Merkle signature scheme","level":5,"score":0.25360000133514404}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.62056/a3qjmpgxq","is_oa":true,"landing_page_url":"https://doi.org/10.62056/a3qjmpgxq","pdf_url":"https://cic.iacr.org/p/3/1/7/pdf","source":{"id":"https://openalex.org/S4394708374","display_name":"IACR Communications in Cryptology","issn_l":"3006-5496","issn":["3006-5496"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320989","host_organization_name":"International Association for Cryptologic Research","host_organization_lineage":["https://openalex.org/P4310320989"],"host_organization_lineage_names":["International Association for Cryptologic Research"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Communications in Cryptology","raw_type":"journal-article"}],"best_oa_location":{"id":"doi:10.62056/a3qjmpgxq","is_oa":true,"landing_page_url":"https://doi.org/10.62056/a3qjmpgxq","pdf_url":"https://cic.iacr.org/p/3/1/7/pdf","source":{"id":"https://openalex.org/S4394708374","display_name":"IACR Communications in Cryptology","issn_l":"3006-5496","issn":["3006-5496"],"is_oa":false,"is_in_doaj":false,"is_core":true,"host_organization":"https://openalex.org/P4310320989","host_organization_name":"International Association for Cryptologic Research","host_organization_lineage":["https://openalex.org/P4310320989"],"host_organization_lineage_names":["International Association for Cryptologic Research"],"type":"journal"},"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"IACR Communications in Cryptology","raw_type":"journal-article"},"sustainable_development_goals":[{"score":0.6444258093833923,"display_name":"Industry, innovation and infrastructure","id":"https://metadata.un.org/sdg/9"}],"awards":[],"funders":[],"has_content":{"pdf":true,"grobid_xml":true},"content_urls":{"pdf":"https://content.openalex.org/works/W7160319550.pdf","grobid_xml":"https://content.openalex.org/works/W7160319550.grobid-xml"},"referenced_works_count":31,"referenced_works":["https://openalex.org/W1931152882","https://openalex.org/W2001350036","https://openalex.org/W2031618446","https://openalex.org/W2031855568","https://openalex.org/W2035696589","https://openalex.org/W2049982182","https://openalex.org/W2082647621","https://openalex.org/W2104070031","https://openalex.org/W2131647018","https://openalex.org/W2165210192","https://openalex.org/W2166087281","https://openalex.org/W2168543008","https://openalex.org/W2311411768","https://openalex.org/W2470176151","https://openalex.org/W2517225079","https://openalex.org/W2519202371","https://openalex.org/W2766710082","https://openalex.org/W2883585522","https://openalex.org/W2913105718","https://openalex.org/W2964279767","https://openalex.org/W3015343560","https://openalex.org/W3206768055","https://openalex.org/W4312884376","https://openalex.org/W4313042292","https://openalex.org/W4384200977","https://openalex.org/W4385080297","https://openalex.org/W4385654262","https://openalex.org/W4402264037","https://openalex.org/W4409833108","https://openalex.org/W4411337601","https://openalex.org/W7076054439"],"related_works":[],"abstract_inverted_index":{"Anonymous":[0],"digital":[1,37,113,359],"credentials":[2,115],"allow":[3],"a":[4,31,36,130,194,237,267,318,333,342,354],"user":[5,22,32],"to":[6,70,79,104,116,137,207],"prove":[7,41],"possession":[8],"of":[9,64,84,153,191,193],"an":[10,17,154],"attribute":[11],"that":[12,100,196],"has":[13,34,235],"been":[14,77,236],"asserted":[15],"by":[16,119,265,278,290],"identity":[18,114,183,321,360],"issuer":[19,106,203],"without":[20,53,200,205,211],"the":[21,85,91,121,126,138,151,159,187,274,286,325,337],"revealing":[23,54],"any":[24,55,202],"extra":[25],"information":[26],"about":[27,176,232],"themselves.":[28],"For":[29],"example,":[30],"who":[33],"received":[35],"passport":[38],"credential":[39,74,156,195],"can":[40,197,300,331],"their":[42,60,67],"\u201cage":[43],"is":[44],"<mml:math":[45,307],"xmlns:mml=\"http://www.w3.org/1998/Math/MathML\">":[46,308],"<mml:mrow>":[47,309],"<mml:mo>&gt;</mml:mo>":[48],"<mml:mn>18</mml:mn>":[49],"</mml:mrow>":[50,312],"</mml:math>":[51,313],"\u201d":[52],"other":[56,240],"attributes":[57],"such":[58,93,247,323],"as":[59,94,225,248,304,306,324],"name":[61],"or":[62],"date":[63],"birth.":[65],"Despite":[66],"clear":[68],"application":[69],"privacy-preserving":[71,358],"authentication,":[72],"anonymous":[73,155],"schemes":[75,89,132],"have":[76],"difficult":[78],"deploy":[80],"at":[81],"scale.":[82],"Part":[83],"difficulty":[86],"arises":[87],"because":[88,244],"in":[90,303,341],"literature,":[92],"BBS+,":[95],"use":[96,250],"new":[97,146],"cryptographic":[98,214],"primitives":[99],"require":[101,112,135],"system-wide":[102],"changes":[103,206],"existing":[105],"infrastructure.":[107],"In":[108],"addition,":[109],"issuers":[110],"often":[111],"be":[117,198,301],"device-bound":[118],"incorporating":[120],"device\u2019s":[122],"secure":[123],"element":[124],"into":[125,317],"presentation":[127,339],"flow.":[128],"As":[129],"result,":[131],"like":[133],"BBS+":[134],"updates":[136],"hardware":[139],"on":[140,223,346],"every":[141],"user's":[142],"device.":[143],"We":[144,261],"propose":[145],"ZK":[147,172,189,230,241,268],"techniques":[148],"which":[149,253],"enable":[150],"construction":[152],"scheme":[157,353],"for":[158,174,181,239,282,294,298,336,357],"legacy":[160],"Elliptic":[161],"Curve":[162],"Digital":[163],"Signature":[164],"Algorithm":[165],"(ECDSA)":[166],"signature":[167],"scheme.":[168],"By":[169],"adding":[170],"efficient":[171,257,280],"arguments":[173],"statements":[175],"SHA-256":[177,224],"and":[178,210,273,289],"document":[179],"parsing":[180],"ISO-standardized":[182],"formats,":[184],"we":[185],"construct":[186],"first":[188],"proof":[190,218,242,269,335],"posession":[192],"deployed":[199],"changing":[201],"processes,":[204],"mobile":[208,347],"devices,":[209],"requiring":[212],"non-standard":[213],"assumptions.":[215],"Furthermore,":[216],"our":[217,329,352],"system":[219,270,330],"itself":[220],"only":[221],"relies":[222],"its":[226],"complexity":[227],"assumption.":[228],"Producing":[229],"proofs":[231,297],"ECDSA":[233,299],"signatures":[234],"bottleneck":[238,264],"systems":[243],"standardized":[245,320],"curves":[246],"P256":[249],"finite":[251],"fields":[252],"do":[254],"not":[255],"support":[256],"number":[258],"theoretic":[259],"transforms.":[260],"overcome":[262],"this":[263],"designing":[266,279,291],"around":[271],"sumcheck":[272],"Ligero":[275],"argument":[276],"system,":[277],"methods":[281],"Reed-Solomon":[283],"encoding":[284],"over":[285],"required":[287],"fields,":[288],"specialized":[292],"circuits":[293],"ECDSA.":[295],"Our":[296],"generated":[302],"little":[305],"<mml:mo>\u2248</mml:mo>":[310],"<mml:mn>20</mml:mn>":[311],"ms.":[314],"When":[315],"incorporated":[316],"fully":[319],"protocol":[322],"ISO":[326],"MDOC":[327,338],"standard,":[328],"generate":[332],"zero-knowledge":[334],"flow":[340],"few":[343],"hundred":[344],"ms":[345],"devices.":[348],"These":[349],"advantages":[350],"make":[351],"promising":[355],"candidate":[356],"applications.":[361]},"counts_by_year":[],"updated_date":"2026-06-11T09:08:48.828518","created_date":"2026-05-06T00:00:00"}
