{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,16]],"date-time":"2026-07-16T14:49:31Z","timestamp":1784213371039,"version":"3.55.0"},"reference-count":61,"publisher":"Springer Science and Business Media LLC","issue":"4","license":[{"start":{"date-parts":[[2020,8,27]],"date-time":"2020-08-27T00:00:00Z","timestamp":1598486400000},"content-version":"tdm","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"},{"start":{"date-parts":[[2020,8,27]],"date-time":"2020-08-27T00:00:00Z","timestamp":1598486400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":["Int. J. Inf. Secur."],"published-print":{"date-parts":[[2021,8]]},"DOI":"10.1007\/s10207-020-00518-3","type":"journal-article","created":{"date-parts":[[2020,8,27]],"date-time":"2020-08-27T12:03:59Z","timestamp":1598529839000},"page":"553-570","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":8,"title":["DeTRACT: a decentralized, transparent, immutable and open PKI certificate framework"],"prefix":"10.1007","volume":"20","author":[{"given":"Thomas","family":"Sermpinis","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-8141-0276","authenticated-orcid":false,"given":"George","family":"Vlahavas","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Konstantinos","family":"Karasavvas","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Athena","family":"Vakali","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"297","published-online":{"date-parts":[[2020,8,27]]},"reference":[{"key":"518_CR1","volume-title":"Understanding PKI: Concepts, Standards, and Deployment Considerations","author":"C Adams","year":"2003","unstructured":"Adams, C., Lloyd, S.: Understanding PKI: Concepts, Standards, and Deployment Considerations. Addison-Wesley Professional, Boston (2003)"},{"key":"518_CR2","doi-asserted-by":"crossref","unstructured":"Nechvatal,J.: Public-key cryptography. Tech. Rep. NIST Special Publication 800-2, National Institute of Standards & Technology, Research Information Center, Gaithersburg, MD 20899 (1991)","DOI":"10.6028\/NIST.SP.800-2"},{"issue":"2","key":"518_CR3","doi-asserted-by":"publisher","first-page":"120","DOI":"10.1145\/359340.359342","volume":"21","author":"RL Rivest","year":"1978","unstructured":"Rivest, R.L., Shamir, A., Adleman, L.: A method for obtaining digital signatures and public-key cryptosystems. Commun. ACM 21(2), 120 (1978). https:\/\/doi.org\/10.1145\/359340.359342","journal-title":"Commun. ACM"},{"key":"518_CR4","doi-asserted-by":"publisher","DOI":"10.1201\/9780203498156","volume-title":"Public Key Infrastructure: Building Trusted Applications and Web Services","author":"JR Vacca","year":"2004","unstructured":"Vacca, J.R.: Public Key Infrastructure: Building Trusted Applications and Web Services. Auerbach Publications, New York (2004)"},{"key":"518_CR5","unstructured":"Adkins, H.: Google online security blog: an update on attempted man-in-the-middle attacks. https:\/\/security.googleblog.com\/2011\/08\/update-on-attempted-man-in-middle.html (2011). Accessed 20 Oct 2018"},{"key":"518_CR6","unstructured":"Ducklin, P.: The TURKTRUST SSL certificate fiasco\u2014what really happened, and what happens next? https:\/\/nakedsecurity.sophos.com\/2013\/01\/08\/the-turktrust-ssl-certificate-fiasco-what-happened-and-what-happens-next\/ (2013). Accessed 5 Oct 2018"},{"key":"518_CR7","unstructured":"Constantin, L.: Trustwave admits issuing man-in-the-middle digital certificate, Mozilla debates punishment. https:\/\/www.cio.com\/article\/2399630\/internet\/trustwave-admits-issuing-man-in-the-middle-digital-certificate-mozilla-debates-punishment.html (2012). Accessed 10 Oct 2018"},{"key":"518_CR8","unstructured":"Keizer, G.: Solo Iranian hacker takes credit for comodo certificate attack. https:\/\/www.computerworld.com\/article\/2507258\/security0\/solo-iranian-hacker-takes-credit-for-comodo-certificate-attack.html (2011). Accessed 20 Oct 2018"},{"key":"518_CR9","unstructured":"Nakamoto, S.: Bitcoin: A peer-to-peer electronic cash system (2008)"},{"key":"518_CR10","unstructured":"Devine, P.: Blockchain learning can crypto-currency methods be appropriated to enhance online learning? http:\/\/oro.open.ac.uk\/44966\/ (2015). Accessed 18 Oct 2018"},{"key":"518_CR11","doi-asserted-by":"publisher","first-page":"273","DOI":"10.1080\/02763869.2017.1332261","volume":"36","author":"MB Hoy","year":"2017","unstructured":"Hoy, M.B.: An introduction to the Blockchain and its implications for libraries and medicine. Med. Ref. Serv. Q. 36, 273\u2013279 (2017)","journal-title":"Med. Ref. Serv. Q."},{"key":"518_CR12","unstructured":"Buterin, V.: A next-generation smart contract and decentralized application platform-Ethereum whitepaper, 2014. https:\/\/www.weusecoins.com\/assets\/pdf\/library\/Ethereum_white_paper-a_next_generation_smart_contract_and_decentralized_application_platform-vitalik-buterin.pdf (2014). Accessed 20 Oct 2018"},{"key":"518_CR13","unstructured":"Lewison, K., Corella, F.: Backing rich credentials with a blockchain PKI. https:\/\/pomcor.com\/techreports\/BlockchainPKI.pdf (2016). Accessed 18 Oct 2018"},{"key":"518_CR14","unstructured":"Baldi, M., Chiaraluce, F., Frontoni, E., Gottardi, G., Sciarroni, D., Spalazzi, L.: Certificate validation through public ledgers and blockchains. In: Proceedings of the First Italian Conference on Cybersecurity, Venice, Italy, pp. 156\u2013165 (2017)"},{"key":"518_CR15","doi-asserted-by":"publisher","unstructured":"Al-Bassam, M.: SCPKI: a smart contract-based PKI and identity system. In: Proceedings of the ACM Workshop on Blockchain, Cryptocurrencies and Contracts, New York, NY, USA, 2017, BCC \u201917, pp. 35\u201340. https:\/\/doi.org\/10.1145\/3055518.3055530. http:\/\/doi.acm.org\/10.1145\/3055518.3055530","DOI":"10.1145\/3055518.3055530"},{"key":"518_CR16","unstructured":"Fredriksson, B.: A distributed public key infrastructure for the web backed by a blockchain. https:\/\/helix.stormhub.org\/data\/exjobb\/Compact.pdf (2017). Accessed 8 Oct 2018"},{"key":"518_CR17","unstructured":"Lundkvist, C., Heck, R., Torstensson, J., Mitton, Z., Sena, M.: Uport: a platform for self-sovereign identity. https:\/\/whitepaper.uport.me\/uPort_whitepaper_DRAFT20170221.pdf (2017). Accessed 20 Oct 2018"},{"key":"518_CR18","unstructured":"Boersma, J., Bulters, M.: Blockchain technology: 9 benefits & 7 challenges. https:\/\/blog.deloitte.com.ng\/blockchain-technology-benefits-challenges\/ (2017). Accessed 20 Oct 2018"},{"key":"518_CR19","unstructured":"Bartoletti, M., Pompianu, L.: An analysis of Bitcoin OP\\_RETURN metadata. In: Brenner, M., Rohloff, K., Bonneau, J., Miller, A., Ryan, P.Y., Teague, V., Bracciali, A., Sala, M., Pintore, F., Jakobsson, M. (eds.) Financial Cryptography and Data Security, pp. 218\u2013230. Springer, Cham (2017)"},{"key":"518_CR20","doi-asserted-by":"publisher","unstructured":"Chariton, A.A., Degkleri, E., Papadopoulos, P., Ilia, P., Markatos, E.P.: DCSP: performant certificate revocation a DNS-based approach. In: Proceedings of the 9th European Workshop on System Security, pp. 1\u20136. (2016). https:\/\/doi.org\/10.1145\/2905760.2905767","DOI":"10.1145\/2905760.2905767"},{"key":"518_CR21","doi-asserted-by":"publisher","unstructured":"Chariton, A.A., Degkleri, E., Papadopoulos, P., Ilia, P., Markatos, E.P.: CCSP: a compressed certificate status protocol. In: IEEE INFOCOM 2017\u2014IEEE Conference on Computer Communications, pp. 1\u20139 (2017). https:\/\/doi.org\/10.1109\/INFOCOM.2017.8057065","DOI":"10.1109\/INFOCOM.2017.8057065"},{"key":"518_CR22","unstructured":"Internet Engineering Task Force (IETF). Rfc6962: certificate transparency. https:\/\/tools.ietf.org\/html\/rfc6962 (2013). Accessed 7 July 2019"},{"key":"518_CR23","unstructured":"Internet Engineering Task Force (IETF). Rfc6698: The DNS-based authentication of named entities (DANE) transport layer security (TLS) protocol: TLSA. https:\/\/tools.ietf.org\/html\/rfc6698 (2012). Accessed 7 July 2019"},{"key":"518_CR24","unstructured":"Matsumoto, S., Reischuk, R.M.: IKP: turning a PKI around with blockchains. IACR Cryptol. ePrint Arch., 1018 (2016)"},{"key":"518_CR25","unstructured":"Fromknecht, C., Velicanu, D., Yakoubov, S.: A decentralized public key infrastructure with identity retention. IACR Cryptol. ePrint Arch., 803 (2014)"},{"key":"518_CR26","doi-asserted-by":"publisher","unstructured":"Axon, L., Goldsmith, M.: PB-PKI: A Privacy-aware Blockchain-based PKI. In: Proceedings of the 14th International Joint Conference on e-Business and Telecommunications, vol 4, pp. 311\u2013318 (2016). https:\/\/doi.org\/10.5220\/0006419203110318","DOI":"10.5220\/0006419203110318"},{"key":"518_CR27","unstructured":"Morselli, R., Bhattacharjee, B., Katz, J., Marsh, M., Keychains: A decentralized public-key infrastructure. Tech. rep., Department of Computer Science, University of Maryland. https:\/\/drum.lib.umd.edu\/bitstream\/handle\/1903\/3332\/0.pdf (2006). Accessed 8 July 2019"},{"key":"518_CR28","unstructured":"Ali, M., Nelson, J., Shea, R., Freedman, M.J.: Blockstack: a global naming and storage system secured by blockchains. In: 2016 USENIX Annual Technical Conference (USENIX ATC 16), pp. 181\u2013194. USENIX Association, Denver (2016). https:\/\/www.usenix.org\/conference\/atc16\/technical-sessions\/presentation\/ali"},{"key":"518_CR29","volume-title":"SSL and TLS: Designing and Building Secure Systems","author":"E Rescorla","year":"2001","unstructured":"Rescorla, E.: SSL and TLS: Designing and Building Secure Systems. Addison-Wesley Reading, Boston (2001)"},{"key":"518_CR30","doi-asserted-by":"crossref","unstructured":"Dykcik, L., Chuat, L., Szalachowski, P., Perrig, A.: BlockPKI: an automated, resilient, and transparent public-key infrastructure (2018). arXiv preprint arXiv:1809.09544","DOI":"10.1109\/ICDMW.2018.00022"},{"key":"518_CR31","unstructured":"Singla, A., Bertino, E.: in 2018 IEEE 4th International Conference on Collaboration and Internet Computing (CIC) (IEEE, 2018), pp. 9\u201315"},{"key":"518_CR32","doi-asserted-by":"publisher","unstructured":"Caronni, G.: Walking the web of trust. In: Proceedings IEEE 9th International Workshops on Enabling Technologies: Infrastructure for Collaborative Enterprises (WET ICE 2000), pp. 153\u2013158 (2000). https:\/\/doi.org\/10.1109\/ENABL.2000.883720","DOI":"10.1109\/ENABL.2000.883720"},{"key":"518_CR33","unstructured":"Namecoin. https:\/\/www.namecoin.org\/ (2019). Accessed 11 Sept 2019"},{"key":"518_CR34","unstructured":"Blockstack naming service (BNS). https:\/\/docs.blockstack.org\/core\/naming\/introduction.html (2019). Accessed 11 Sept 2019"},{"key":"518_CR35","unstructured":"Kalodner, H.A., Carlsten, M., Ellenbogen, P., Bonneau, J., Narayanan, A.: An empirical study of namecoin and lessons for decentralized namespace design. In: WEIS. Citeseer, Princeton (2015)"},{"key":"518_CR36","doi-asserted-by":"publisher","unstructured":"M\u00fchle, A., Gr\u00fcner, A., Gayvoronskaya, T., Meinel, C.: A survey on essential components of a self-sovereign identity. Comput. Sci. Rev. 30, 80\u201386 (2018). https:\/\/doi.org\/10.1016\/j.cosrev.2018.10.002. http:\/\/www.sciencedirect.com\/science\/article\/pii\/S1574013718301217","DOI":"10.1016\/j.cosrev.2018.10.002"},{"key":"518_CR37","doi-asserted-by":"publisher","first-page":"25","DOI":"10.1007\/978-1-4842-3081-7_4","volume-title":"Unpacking Ethereum","author":"V Dhillon","year":"2017","unstructured":"Dhillon, V., Metcalf, D., Hooper, M.: Unpacking Ethereum, pp. 25\u201345. Apress, Berkeley (2017). https:\/\/doi.org\/10.1007\/978-1-4842-3081-7_4"},{"key":"518_CR38","unstructured":"Pow 51% attack cost. https:\/\/www.crypto51.app\/"},{"key":"518_CR39","unstructured":"Internet Engineering Task Force (IETF). Rfc8615: Well-known uniform resource identifiers (URIS). https:\/\/tools.ietf.org\/html\/rfc8615 (2019). Accessed 7 July 2019"},{"key":"518_CR40","unstructured":"Internet x.509 public key infrastructure certificate and certificate revocation list (CRL) profile. 5.3.1 reason code. https:\/\/tools.ietf.org\/html\/rfc5280#section-5.3.1 (2008). Accessed 18 Jul 2019"},{"key":"518_CR41","doi-asserted-by":"crossref","unstructured":"Gervais, A., Capkun, S. Karame, G.O., Gruber, D.: On the privacy provisions of bloom filters in lightweight bitcoin clients. In: Proceedings of the 30th Annual Computer Security Applications Conference, pp. 326\u2013335. ACM (2014)","DOI":"10.1145\/2664243.2664267"},{"key":"518_CR42","unstructured":"Electrum protocol. https:\/\/electrumx.readthedocs.io\/en\/latest\/protocol.html (2020). Accessed 08 May 2020"},{"key":"518_CR43","unstructured":"Cadena, R.V.: Cryptographic characterization of bitcoin software electrum. https:\/\/www.researchgate.net\/profile\/Romel_Vera\/publication\/301958666_CRYPTOGRAPHIC_CHARACTERIZATION_OF_BITCOIN_SOFTWARE_ELECTRUM\/links\/572cd2e508aeb1c73d11b219\/CRYPTOGRAPHIC-CHARACTERIZATION-OF-BITCOIN-SOFTWARE-ELECTRUM (2016). Accessed 21 May 2019"},{"key":"518_CR44","volume-title":"Bitcoin and Blockchain Security","author":"GO Karame","year":"2016","unstructured":"Karame, G.O., Androulaki, E.: Bitcoin and Blockchain Security. Artech House, Norwood (2016)"},{"key":"518_CR45","unstructured":"Ethereum yellow paper. https:\/\/ethereum.github.io\/yellowpaper\/paper.pdf (2019). Accessed 06 Jul 2019"},{"key":"518_CR46","doi-asserted-by":"publisher","unstructured":"Li, X., Jiang, P., Chen, T., Luo, X., Wen, Q.: A survey on the security of blockchain systems. Future Gener. Comput. Syst. (2017). https:\/\/doi.org\/10.1016\/j.future.2017.08.020. http:\/\/www.sciencedirect.com\/science\/article\/pii\/S0167739X17318332","DOI":"10.1016\/j.future.2017.08.020"},{"key":"518_CR47","unstructured":"Solidity. https:\/\/solidity.readthedocs.io (2020). Accessed 08 May 2020"},{"key":"518_CR48","unstructured":"web3.js - Ethereum Javascript API. https:\/\/web3js.readthedocs.io (2020). Accessed 08 May 2020"},{"key":"518_CR49","unstructured":"uport connect. https:\/\/github.com\/uport-project\/uport-connect (2020). Accessed 8 May 2020"},{"key":"518_CR50","doi-asserted-by":"publisher","unstructured":"Larisch, J., Choffnes, D., Levin, D., Maggs, B.M., Mislove, A., Wilson, C.: CRLite: a scalable system for pushing all TLS revocations to all browsers. In: 2017 IEEE Symposium on Security and Privacy (SP), pp. 539\u2013556 (2017). https:\/\/doi.org\/10.1109\/SP.2017.17","DOI":"10.1109\/SP.2017.17"},{"key":"518_CR51","unstructured":"Internet Engineering Task Force (IETF). Rfc6066: transport layer security (TLS) extensions: extension definitions. https:\/\/tools.ietf.org\/html\/rfc6066 (2011). Accessed 7 July 2019"},{"key":"518_CR52","unstructured":"Bitcoin\u2019s security model: A deep dive. https:\/\/www.coindesk.com\/bitcoins-security-model-deep-dive (2016). Accessed 10 May 2020"},{"key":"518_CR53","unstructured":"Li, C., Li, P., Zhou, D., Xu, W., Long, F., Yao, A.: Scaling Nakamoto consensus to thousands of transactions per second (2018). arXiv e-prints arXiv:1805.03870"},{"key":"518_CR54","unstructured":"How will ethereum scale? https:\/\/www.coindesk.com\/information\/will-ethereum-scale. Accessed 11 July 2019"},{"key":"518_CR55","unstructured":"Sompolinsky, Y., Zohar, A.: Accelerating bitcoin\u2019s transaction processing. Fast money grows on trees, not chains. Cryptology ePrint Archive, Report 2013\/881. https:\/\/eprint.iacr.org\/2013\/881 (2013)"},{"key":"518_CR56","doi-asserted-by":"crossref","unstructured":"Croman, K., Decker, C., Eyal, I., Gencer, A.E., Juels, A., Kosba, A., Miller, A., Saxena, P., Shi, E., G\u00fcn Sirer, E., Song, D., Wattenhofer, R.: On scaling decentralized blockchains. In: Clark, J., Meiklejohn, S., Ryan, P.Y., Wallach, D., Brenner, M., Rohloff, K. (eds.) Financial Cryptography and Data Security, pp. 106\u2013125. Springer, Berlin (2016)","DOI":"10.1007\/978-3-662-53357-4_8"},{"key":"518_CR57","doi-asserted-by":"publisher","unstructured":"Zamani, M., Movahedi, M., Raykova, M.: RapidChain: scaling blockchain via full sharding. In: Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security (CCS \u201918), pp. 931\u2013948. ACM, New York (2018). https:\/\/doi.org\/10.1145\/3243734.3243853. http:\/\/doi.acm.org\/10.1145\/3243734.3243853","DOI":"10.1145\/3243734.3243853"},{"key":"518_CR58","doi-asserted-by":"publisher","unstructured":"Xin, W., Zhang, T., Hu, C., Tang, C., Liu, C., Chen, Z.: On scaling and accelerating decentralized private blockchains. In: 2017 IEEE 3rd International Conference on Big Data Security on Cloud (BigDataSecurity), IEEE International Conference on High Performance and Smart Computing (HPSC), and IEEE International Conference on Intelligent Data and Security (IDS), pp. 267\u2013271 (2017). https:\/\/doi.org\/10.1109\/BigDataSecurity.2017.25","DOI":"10.1109\/BigDataSecurity.2017.25"},{"key":"518_CR59","unstructured":"Poon, J., Dryja, T.: The bitcoin lightning network: Scalable off-chain instant payments. https:\/\/lightning.network\/lightning-network-paper.pdf (2016). Accessed 11 July 2019"},{"key":"518_CR60","doi-asserted-by":"crossref","unstructured":"Bellare, M., Neven, G.: Identity-Based Multi-signatures from RSA. In: Abe, M. (ed.) Topics in Cryptology\u2014CT-RSA 2007, pp. 145\u2013162. Springer, Berlin (2006)","DOI":"10.1007\/11967668_10"},{"key":"518_CR61","doi-asserted-by":"publisher","unstructured":"Decker, C., Wattenhofer, R.: Information propagation in the bitcoin network. In: IEEE P2P 2013 Proceedings, pp. 1\u201310. https:\/\/doi.org\/10.1109\/P2P.2013.6688704","DOI":"10.1109\/P2P.2013.6688704"}],"container-title":["International Journal of Information Security"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10207-020-00518-3.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/article\/10.1007\/s10207-020-00518-3\/fulltext.html","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/link.springer.com\/content\/pdf\/10.1007\/s10207-020-00518-3.pdf","content-type":"application\/pdf","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2021,8,27]],"date-time":"2021-08-27T00:03:31Z","timestamp":1630022611000},"score":1,"resource":{"primary":{"URL":"https:\/\/link.springer.com\/10.1007\/s10207-020-00518-3"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,8,27]]},"references-count":61,"journal-issue":{"issue":"4","published-print":{"date-parts":[[2021,8]]}},"alternative-id":["518"],"URL":"https:\/\/doi.org\/10.1007\/s10207-020-00518-3","relation":{},"ISSN":["1615-5262","1615-5270"],"issn-type":[{"value":"1615-5262","type":"print"},{"value":"1615-5270","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020,8,27]]},"assertion":[{"value":"27 August 2020","order":1,"name":"first_online","label":"First Online","group":{"name":"ArticleHistory","label":"Article History"}},{"order":1,"name":"Ethics","group":{"name":"EthicsHeading","label":"Compliance with ethical standards"}},{"value":"The authors declare that they have no conflict of interest.","order":2,"name":"Ethics","group":{"name":"EthicsHeading","label":"Conflict of interest"}},{"value":"This article does not contain any studies with human participants performed by any of the authors.","order":3,"name":"Ethics","group":{"name":"EthicsHeading","label":"Ethical approval"}}]}}