Explore a conference talk from USENIX Security '23 that introduces FIDO-AC, a novel framework combining FIDO2 authentication with users' digital and non-shareable identities. Learn how this approach addresses the limitations of current web authentication protocols by integrating trusted attributes into the authentication process. Discover how FIDO-AC enables users to selectively disclose personal information while adhering to data minimization principles. Examine the practical implementation of this framework using off-the-shelf FIDO tokens and electronic identity documents like biometric passports. Gain insights into the potential of FIDO-AC to enhance online security and privacy, particularly in light of recent data breaches involving sensitive personal information.
Overview
Syllabus
USENIX Security '23 - Fast IDentity Online with Anonymous Credentials (FIDO-AC)
Taught by
USENIX