{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,14]],"date-time":"2026-07-14T10:20:28Z","timestamp":1784024428357,"version":"3.55.0"},"publisher-location":"Cham","reference-count":45,"publisher":"Springer Nature Switzerland","isbn-type":[{"value":"9783031708893","type":"print"},{"value":"9783031708909","type":"electronic"}],"license":[{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"},{"start":{"date-parts":[[2024,1,1]],"date-time":"2024-01-01T00:00:00Z","timestamp":1704067200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springernature.com\/gp\/researchers\/text-and-data-mining"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2024]]},"DOI":"10.1007\/978-3-031-70890-9_14","type":"book-chapter","created":{"date-parts":[[2024,9,5]],"date-time":"2024-09-05T09:24:24Z","timestamp":1725528264000},"page":"268-288","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":2,"title":["ARPSSO: An OIDC-Compatible Privacy-Preserving SSO Scheme Based on\u00a0RP Anonymization"],"prefix":"10.1007","author":[{"given":"Junlin","family":"He","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Lingguang","family":"Lei","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yuewu","family":"Wang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Pingjian","family":"Wang","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jiwu","family":"Jing","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2024,9,6]]},"reference":[{"key":"14_CR1","unstructured":"ARPSSO\/ARPSSO. https:\/\/github.com\/ARPSSO\/ARPSSO"},{"key":"14_CR2","unstructured":"GitHub Pages. https:\/\/pages.github.com\/"},{"key":"14_CR3","unstructured":"Implicit Grant Flow for Client-Side Apps - Yahoo Developer Network. https:\/\/developer.yahoo.com\/oauth2\/guide\/flows_implicitgrant\/"},{"key":"14_CR4","unstructured":"Login Provider Technologies Market Share and Web Usage Statistics. https:\/\/www.similartech.com\/categories\/login-provider"},{"key":"14_CR5","unstructured":"Referrer Policy. https:\/\/www.w3.org\/TR\/referrer-policy\/"},{"key":"14_CR6","unstructured":"Subresource Integrity (2016). https:\/\/www.w3.org\/TR\/SRI\/\/#verification-of-html-document-subresources"},{"key":"14_CR7","unstructured":"Alp\u00e1r, G., Van Den\u00a0Broek, F., Hampiholi, B., Jacobs, B., Lueks, W., Ringers, S.: IRMA: practical, decentralized and privacy-friendly identity management using smartphones. In: 10th Workshop on Hot Topics in Privacy Enhancing Technologies (HotPETs 2017), pp.\u00a01\u20132 (2017)"},{"key":"14_CR8","doi-asserted-by":"crossref","unstructured":"Androulaki, E., et al.: Hyperledger fabric: a distributed operating system for permissioned blockchains. In: Proceedings of the Thirteenth EuroSys Conference, p.\u00a030. ACM (2018)","DOI":"10.1145\/3190508.3190538"},{"key":"14_CR9","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"177","DOI":"10.1007\/978-3-642-36334-4_11","volume-title":"Pairing-Based Cryptography \u2013 Pairing 2012","author":"DF Aranha","year":"2013","unstructured":"Aranha, D.F., Fuentes-Casta\u00f1eda, L., Knapp, E., Menezes, A., Rodr\u00edguez-Henr\u00edquez, F.: Implementing pairings at the 192-bit security level. In: Abdalla, M., Lange, T. (eds.) Pairing 2012. LNCS, vol. 7708, pp. 177\u2013195. Springer, Heidelberg (2013). https:\/\/doi.org\/10.1007\/978-3-642-36334-4_11"},{"key":"14_CR10","doi-asserted-by":"crossref","unstructured":"Asghar, M.R., Backes, M., Simeonovski, M.: PRIMA: privacy-preserving identity and access management at internet-scale. In: 2018 IEEE International Conference on Communications (ICC), pp.\u00a01\u20136. IEEE (2018)","DOI":"10.1109\/ICC.2018.8422732"},{"key":"14_CR11","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"48","DOI":"10.1007\/BFb0054851","volume-title":"Algorithmic Number Theory","author":"D Boneh","year":"1998","unstructured":"Boneh, D.: The decision Diffie-Hellman problem. In: Buhler, J.P. (ed.) ANTS 1998. LNCS, vol. 1423, pp. 48\u201363. Springer, Heidelberg (1998). https:\/\/doi.org\/10.1007\/BFb0054851"},{"key":"14_CR12","unstructured":"Bowe, S.: BLS12-381: new zk-SNARK elliptic curve construction. https:\/\/electriccoin.co\/blog\/new-snark-curve\/"},{"key":"14_CR13","unstructured":"Damg\u00e5rd, I.: On $$\\varSigma $$-protocols. Lecture Notes, University of Aarhus, Department for Computer Science, p.\u00a084 (2002)"},{"key":"14_CR14","unstructured":"Dey, A., Weis, S.: PseudoID: enhancing privacy in federated login (2010)"},{"key":"14_CR15","doi-asserted-by":"crossref","unstructured":"Dingledine, R., Mathewson, N., Syverson, P.: Tor: the second-generation onion router. Technical report, Naval Research Lab Washington DC (2004)","DOI":"10.21236\/ADA465464"},{"key":"14_CR16","unstructured":"Faz-Hern\u00e1ndez, A., Kwiatkowski, K.: Introducing CIRCL: an advanced cryptographic library. https:\/\/github.com\/cloudflare\/circl\/"},{"key":"14_CR17","doi-asserted-by":"crossref","unstructured":"Fett, D., K\u00fcsters, R., Schmitz, G.: The web SSO standard OpenID connect: in-depth formal security analysis and security guidelines. In: 2017 IEEE 30th Computer Security Foundations Symposium (CSF), pp. 189\u2013202. IEEE (2017)","DOI":"10.1109\/CSF.2017.20"},{"key":"14_CR18","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"43","DOI":"10.1007\/978-3-319-24174-6_3","volume-title":"Computer Security \u2013 ESORICS 2015","author":"D Fett","year":"2015","unstructured":"Fett, D., K\u00fcsters, R., Schmitz, G.: Analyzing the BrowserID SSO system with primary identity providers using an expressive model of the web. In: Pernul, G., Ryan, P.Y.A., Weippl, E. (eds.) ESORICS 2015. LNCS, vol. 9326, pp. 43\u201365. Springer, Cham (2015). https:\/\/doi.org\/10.1007\/978-3-319-24174-6_3"},{"key":"14_CR19","doi-asserted-by":"crossref","unstructured":"Fett, D., K\u00fcsters, R., Schmitz, G.: SPRESSO: a secure, privacy-respecting single sign-on system for the web. In: Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security, CCS 2015, pp. 1358\u20131369. Association for Computing Machinery (2015)","DOI":"10.1145\/2810103.2813726"},{"key":"14_CR20","doi-asserted-by":"crossref","unstructured":"Fett, D., K\u00fcsters, R., Schmitz, G.: A comprehensive formal security analysis of OAuth 2.0. In: Proceedings of the 2016 ACM SIGSAC Conference on Computer and Communications Security, CCS 2016, pp. 1204\u20131215. Association for Computing Machinery (2016)","DOI":"10.1145\/2976749.2978385"},{"key":"14_CR21","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"186","DOI":"10.1007\/3-540-47721-7_12","volume-title":"Advances in Cryptology \u2014 CRYPTO\u2019 86","author":"A Fiat","year":"1987","unstructured":"Fiat, A., Shamir, A.: How to prove yourself: practical solutions to identification and signature problems. In: Odlyzko, A.M. (ed.) CRYPTO 1986. LNCS, vol. 263, pp. 186\u2013194. Springer, Heidelberg (1987). https:\/\/doi.org\/10.1007\/3-540-47721-7_12"},{"issue":"16","key":"14_CR22","doi-asserted-by":"publisher","first-page":"3113","DOI":"10.1016\/j.dam.2007.12.010","volume":"156","author":"SD Galbraith","year":"2008","unstructured":"Galbraith, S.D., Paterson, K.G., Smart, N.P.: Pairings for cryptographers. Discret. Appl. Math. 156(16), 3113\u20133121 (2008)","journal-title":"Discret. Appl. Math."},{"key":"14_CR23","unstructured":"Grassi, P., et al.: Digital identity guidelines: federation and assertions. Technical report, NIST Special Publication (SP) 800-63C, National Institute of Standards and Technology (2020)"},{"key":"14_CR24","doi-asserted-by":"crossref","unstructured":"Guo, C., Lang, F., Wang, Q., Lin, J.: UP-SSO: enhancing the user privacy of SSO by integrating PPID and SGX. In: 2021 International Conference on Advanced Computing and Endogenous Security, pp. 01\u201305 (2022)","DOI":"10.1109\/IEEECONF52377.2022.10013340"},{"key":"14_CR25","unstructured":"Guo, C., et al.: UPPRESSO: untraceable and unlinkable privacy-PREserving single sign-on services. arXiv preprint arXiv:2110.10396 (2021)"},{"key":"14_CR26","doi-asserted-by":"crossref","unstructured":"Hammann, S., Sasse, R., Basin, D.: Privacy-preserving OpenID connect. In: Proceedings of the 15th ACM Asia Conference on Computer and Communications Security, ASIA CCS 2020, pp. 277\u2013289. Association for Computing Machinery (2020)","DOI":"10.1145\/3320269.3384724"},{"key":"14_CR27","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"470","DOI":"10.1007\/978-3-319-99073-6_23","volume-title":"Computer Security","author":"J Han","year":"2018","unstructured":"Han, J., Chen, L., Schneider, S., Treharne, H., Wesemeyer, S.: Anonymous single-sign-on for n designated services with traceability. In: Lopez, J., Zhou, J., Soriano, M. (eds.) ESORICS 2018. LNCS, vol. 11098, pp. 470\u2013490. Springer, Cham (2018). https:\/\/doi.org\/10.1007\/978-3-319-99073-6_23"},{"key":"14_CR28","doi-asserted-by":"publisher","first-page":"223","DOI":"10.1109\/TIFS.2019.2919926","volume":"15","author":"J Han","year":"2020","unstructured":"Han, J., Chen, L., Schneider, S., Treharne, H., Wesemeyer, S., Wilson, N.: Anonymous single sign-on with proxy re-verification. IEEE Trans. Inf. Forensics Secur. 15, 223\u2013236 (2020)","journal-title":"IEEE Trans. Inf. Forensics Secur."},{"key":"14_CR29","doi-asserted-by":"crossref","unstructured":"Hardt, D.: The OAuth 2.0 authorization framework. RFC 6749 (2012)","DOI":"10.17487\/rfc6749"},{"key":"14_CR30","unstructured":"Inc, A.: Sign in with Apple. https:\/\/developer.apple.com\/sign-in-with-apple\/"},{"key":"14_CR31","doi-asserted-by":"crossref","unstructured":"Isaakidis, M., Halpin, H., Danezis, G.: UnlimitID: privacy-preserving federated identity management using algebraic MACs. In: Proceedings of the 2016 ACM on Workshop on Privacy in the Electronic Society, WPES 2016, pp. 139\u2013142. Association for Computing Machinery (2016)","DOI":"10.1145\/2994620.2994637"},{"key":"14_CR32","doi-asserted-by":"crossref","unstructured":"Jones, M.B.: JSON web key (JWK). RFC 7517 (2015)","DOI":"10.17487\/RFC7517"},{"key":"14_CR33","doi-asserted-by":"crossref","unstructured":"Kroschewski, M., Lehmann, A.: Save the implicit flow? Enabling Privacy-preserving RP authentication in OpenID connect. Proc. Priv. Enhanc. Technol.(2023)","DOI":"10.56553\/popets-2023-0100"},{"key":"14_CR34","doi-asserted-by":"crossref","unstructured":"Lodderstedt, T., McGloin, M., Hunt, P.: RFC 6819: OAuth 2.0 threat model and security considerations. Internet Eng. Tast Force (IETF) 1\u201371 (2013)","DOI":"10.17487\/rfc6819"},{"key":"14_CR35","unstructured":"Lodderstedt, T., Bradley, J., Labunets, A., Fett, D.: OAuth 2.0 security best current practice. Internet-Draft draft-ietf-oauth-security-topics-23, Internet Engineering Task Force\/Internet Engineering Task Force (2023)"},{"key":"14_CR36","doi-asserted-by":"crossref","unstructured":"Maganis, G., Shi, E., Chen, H., Song, D.: Opaak: using mobile phones to limit anonymous identities online. In: Proceedings of the 10th International Conference on Mobile Systems, Applications, and Services, MobiSys 2012, pp. 295\u2013308. Association for Computing Machinery (2012)","DOI":"10.1145\/2307636.2307664"},{"key":"14_CR37","unstructured":"Miller, P.: Noble-BLS12-381. https:\/\/github.com\/paulmillr\/noble-bls12-381"},{"key":"14_CR38","unstructured":"Nat, S., John, B., Mike, J., de Medeiros, B., Mortimore, C.: OpenID connect core 1.0 incorporating errata set 1. The OpenID Foundation, specification (2014)"},{"key":"14_CR39","unstructured":"nickludwig: OAuth 2.0 implicit grant flow - The Microsoft identity platform - Microsoft Entra (2022). https:\/\/learn.microsoft.com\/en-us\/azure\/active-directory\/develop\/v2-oauth2-implicit-grant-flow"},{"key":"14_CR40","unstructured":"Paquin, C.: U-prove technology overview v1. 1. Microsoft Corp. Draft Revision 1 (2011)"},{"key":"14_CR41","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"111","DOI":"10.1007\/978-3-319-29485-8_7","volume-title":"Topics in Cryptology - CT-RSA 2016","author":"D Pointcheval","year":"2016","unstructured":"Pointcheval, D., Sanders, O.: Short randomizable signatures. In: Sako, K. (ed.) CT-RSA 2016. LNCS, vol. 9610, pp. 111\u2013126. Springer, Cham (2016). https:\/\/doi.org\/10.1007\/978-3-319-29485-8_7"},{"key":"14_CR42","unstructured":"Thomson, M., Wood, C.A.: Oblivious HTTP. Internet Draft draft-thomson-http-oblivious-01, Internet Engineering Task Force (2021)"},{"key":"14_CR43","doi-asserted-by":"crossref","unstructured":"Wang, J., Wang, G., Susilo, W.: Anonymous single sign-on schemes transformed from group signatures. In: 2013 5th International Conference on Intelligent Networking and Collaborative Systems, pp. 560\u2013567. IEEE (2013)","DOI":"10.1109\/INCoS.2013.104"},{"key":"14_CR44","doi-asserted-by":"crossref","unstructured":"Xu, R., Yang, S., Zhang, F., Fang, Z.: MISO: legacy-compatible privacy-preserving single sign-on using trusted execution environments. In: 2023 IEEE 8th European Symposium on Security and Privacy (EuroS &P), pp. 352\u2013372. IEEE Computer Society (2023)","DOI":"10.1109\/EuroSP57164.2023.00029"},{"key":"14_CR45","doi-asserted-by":"crossref","unstructured":"Zhang, Z., Kr\u00f3l, M., Sonnino, A., Zhang, L., Rivi\u00e8re, E.: EL PASSO: privacy-preserving, asynchronous single sign-on (2021)","DOI":"10.2478\/popets-2021-0018"}],"container-title":["Lecture Notes in Computer Science","Computer Security \u2013 ESORICS 2024"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/978-3-031-70890-9_14","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,9,5]],"date-time":"2024-09-05T09:28:32Z","timestamp":1725528512000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/978-3-031-70890-9_14"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024]]},"ISBN":["9783031708893","9783031708909"],"references-count":45,"URL":"https:\/\/doi.org\/10.1007\/978-3-031-70890-9_14","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"value":"0302-9743","type":"print"},{"value":"1611-3349","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024]]},"assertion":[{"value":"6 September 2024","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}},{"value":"ESORICS","order":1,"name":"conference_acronym","label":"Conference Acronym","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"European Symposium on Research in Computer Security","order":2,"name":"conference_name","label":"Conference Name","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Bydgoszcz","order":3,"name":"conference_city","label":"Conference City","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"Poland","order":4,"name":"conference_country","label":"Conference Country","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"2024","order":5,"name":"conference_year","label":"Conference Year","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"16 September 2024","order":7,"name":"conference_start_date","label":"Conference Start Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"20 September 2024","order":8,"name":"conference_end_date","label":"Conference End Date","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"29","order":9,"name":"conference_number","label":"Conference Number","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"esorics2024","order":10,"name":"conference_id","label":"Conference ID","group":{"name":"ConferenceInfo","label":"Conference Information"}},{"value":"https:\/\/esorics2024.org","order":11,"name":"conference_url","label":"Conference URL","group":{"name":"ConferenceInfo","label":"Conference Information"}}]}}