ScienceDaily
Your source for the latest research news
Follow Facebook Twitter LinkedIn Subscribe RSS Feeds Newsletters
New:
  • COVID-19: Hyperactivity in Blood-Clotting Cells
  • Shutting Down SARS-CoV-2 Polymerase Reaction
  • To Find Giant Black Holes, Start With Jupiter
  • Extreme Warming of the South Pole
  • Cosmic Mystery: Disappearance of a Massive Star
  • Global Warming Upends 6,500 Years of Cooling
  • Beavers Gnawing Away at the Permafrost
  • End of Dinosaurs: Asteroid Impact, Not Volcanoes
  • Why Some Words More Memorable Than Others
  • How Paradise Tree Snakes Undulate to Fly
advertisement
Follow all of ScienceDaily's latest research news and top science headlines!
Science News
from research organizations

1

2

No keys to the kingdom: New single sign-on algorithm provides superior privacy

Date:
June 29, 2020
Source:
Tokyo University of Science
Summary:
Single sign-on systems (SSOs) allow us to login to multiple websites and applications using a single username and password combination. But these are third party systems usually handled by Big Tech companies who have been reported to gather and leak personal information without user consent. Now, researchers have developed a new and secure single sign-on algorithm that eliminates all these problems.
Share:
FULL STORY

Over the last few decades, as the information era has matured, it has shaped the world of cryptography and made it a varied landscape. Amongst the myriad of encoding methods and cryptosystems currently available for ensuring secure data transfers and user identification, some have become quite popular because of their safety or practicality. For example, if you have ever been given the option to log onto a website using your Facebook or Gmail ID and password, you have encountered a single sign-on (SSO) system at work. The same goes for most smartphones, where signing in with a single username and password combination allows access to many different services and applications.

advertisement

SSO schemes give users the option to access multiple systems by signing in to just one specific system. This specific system is called the "identity provider" and is regarded as a trusted entity that can verify and store the identity of the user. When the user attempts to access a service via the SSO, the "service provider" asks this identity provider to authenticate the user.

The advantages of SSO systems are many. For one, users need not remember several username and password combinations for each website or application. This translates into fewer people forgetting their passwords and, in turn, fewer telephone calls to IT support centers. Moreover, SSO reduces the hassle of logging in, which can, for example, encourage employees to use their company's security-oriented tools for tasks such as secure file transfer.

But with these advantages come some grave concerns. SSO systems are often run by Big Tech companies, who have, in the past, been reported to gather people's personal information from apps and websites (service providers) without their consent, for targeted advertising and other marketing purposes. Some people are also concerned that their ID and password could be stored locally by third parties when they provide them to the SSO mechanism.

In an effort to address these problems, Associate Professor Satoshi Iriyama from Tokyo University of Science and his colleague Dr Maki Kihara have recently developed a new SSO algorithm that on principle prevents such holistic information exchange. In their paper, published in Cryptography, they describe the new algorithm in great detail after going over their motivations for developing it. Dr Iriyama states: "We aimed to develop an SSO algorithm that does not disclose the user's identity and sensitive personal information to the service provider. In this way, our SSO algorithm uses personal information only for authentication of the user, as originally intended when SSO systems were introduced."

Because of the way this SSO algorithm is designed, it is impossible in essence for user information to be disclosed without authorization. This is achieved, as explained by Dr Iriyama, by applying the principle of "handling information while it is still encrypted." In their SSO algorithm, all parties exchange encrypted messages but never exchange decryption keys, and no one is ever in possession of all the pieces of the puzzle because no one has the keys to all the information. While the service provider (not the identity provider) gets to know whether a user was successfully authenticated, they do not get access to the user's identity and any of their sensitive personal information. This in turn breaks the link that allows identity providers to draw specific user information from service providers.

The proposed scheme offers many other advantages. In terms of security, it is impervious by design to all typical forms of attack by which information or passwords are stolen. For instance, as Dr Iriyama explains, "Our algorithm can be used not only with an ID and a password, but also with any other type of identity information, such as biometrics, credit card data, and unique numbers known by the user." This also means that users can only provide identity information that they wish to disclose, reducing the risk of Big Tech companies or other third parties siphoning off personal information. In addition, the algorithm runs remarkably fast, an essential quality to ensure that the computational burden does not hinder its implementation.

This study will hopefully bring about positive changes in current SSO systems, so that more users are encouraged to use them and reap their many benefits.

make a difference: sponsored opportunity

Story Source:

Materials provided by Tokyo University of Science. Note: Content may be edited for style and length.


Journal Reference:

  1. Maki Kihara, Satoshi Iriyama. Security and Performance of Single Sign-on Based on One-Time Pad Algorithm. Cryptography, 2020; 4 (2): 16 DOI: 10.3390/cryptography4020016

Cite This Page:

  • MLA
  • APA
  • Chicago
Tokyo University of Science. "No keys to the kingdom: New single sign-on algorithm provides superior privacy." ScienceDaily. ScienceDaily, 29 June 2020. <www.sciencedaily.com/releases/2020/06/200629124054.htm>.
Tokyo University of Science. (2020, June 29). No keys to the kingdom: New single sign-on algorithm provides superior privacy. ScienceDaily. Retrieved June 30, 2020 from www.sciencedaily.com/releases/2020/06/200629124054.htm
Tokyo University of Science. "No keys to the kingdom: New single sign-on algorithm provides superior privacy." ScienceDaily. www.sciencedaily.com/releases/2020/06/200629124054.htm (accessed June 30, 2020).

  • RELATED TOPICS
    • Computers & Math
      • Encryption
      • Hacking
      • Computers and Internet
      • Information Technology
      • Computer Programming
      • Statistics
      • Quantum Computers
      • Internet
advertisement

  • RELATED TERMS
    • Application software
    • Quantum entanglement
    • Information and communication technologies
    • User interface design
    • Security engineering
    • Virtual reality
    • Quantum computer
    • Cyber-bullying

1

2

3

4

5
RELATED STORIES

New Photon-Counting Camera Captures 3D Images With Record Speed and Resolution
Apr. 16, 2020 — Researchers have developed the first megapixel photon-counting camera based on new-generation image sensor technology that uses single-photon avalanche diodes (SPADs). The new camera can detect ...
Scientists Exchanged Quantum Information on Daylight in a Free-Space Quantum Key Distribution
Dec. 7, 2018 — Scientists have reported a successful free-space quantum key distribution (QKD) in daylight with the self-developed polarization encoding chip for the first time. QKD is one of the most promising ...
Long-Range Secure Quantum Communication System Developed
Apr. 12, 2016 — A novel approach to the construction of quantum communication systems has been developed for secure data exchange. The experimental device based on the results of the research is capable of ...
Researchers Create Better Algorithm for Simulating Particles in Fermi Sea
Oct. 27, 2015 — A team of researchers has created a new, more precise algorithm for simulating particle interactions when a single impurity is introduced into a Fermi sea. The algorithm shows that when these ...
FROM AROUND THE WEB

Below are relevant articles that may interest you. ScienceDaily shares links with scholarly publications in the TrendMD network and earns revenue from third-party advertisers, where indicated.
  Print   Email   Share

advertisement

1

2

3

4

5
Most Popular
this week

SPACE & TIME
Monster Black Hole Found in the Early Universe
Black Hole Collision May Have Exploded With Light
Evidence Supports 'Hot Start' Scenario and Early Ocean Formation on Pluto
MATTER & ENERGY
Why Are Plants Green?
The Best Material for Homemade Face Masks May Be a Combination of Two Fabrics
Far-UVC Light Safely Kills Airborne Coronaviruses, Study Finds
COMPUTERS & MATH
Teleportation: Important Step in Improving Quantum Computing
Tool to Protect Children's Online Privacy
How at Risk Are You of Getting a Virus on an Airplane?
advertisement

Strange & Offbeat
 

SPACE & TIME
NASA's TESS Delivers New Insights Into an Ultrahot World
To Find Giant Black Holes, Start With Jupiter
A Cosmic Mystery: ESO Telescope Captures the Disappearance of a Massive Star
MATTER & ENERGY
Quantum Physics Provides a Way to Hide Ignorance
Laser-Welded Sugar: Sweet Way to 3D-Print Blood Vessels
Wearable-Tech Glove Translates Sign Language Into Speech in Real Time
COMPUTERS & MATH
New Spray-on Technique Allows for Any Shape Touchscreens
Experimentally Identifying Effective Theories in Many-Body Systems
Synthetic Materials Mimic Living Creatures
SD
  • SD
    • Home Page
    • Top Science News
    • Latest News
  • Home
    • Home Page
    • Top Science News
    • Latest News
  • Health
    • View all the latest top news in the health sciences,
      or browse the topics below:
      Health & Medicine
      • Allergy
      • Alternative Medicine
      • Birth Control
      • Cancer
      • Diabetes
      • Diseases
      • Heart Disease
      • HIV and AIDS
      • Obesity
      • Stem Cells
      • ... more topics
      Mind & Brain
      • ADD and ADHD
      • Addiction
      • Alzheimer's
      • Autism
      • Depression
      • Headaches
      • Intelligence
      • Psychology
      • Relationships
      • Schizophrenia
      • ... more topics
      Living Well
      • Parenting
      • Pregnancy
      • Sexual Health
      • Skin Care
      • Men's Health
      • Women's Health
      • Nutrition
      • Diet and Weight Loss
      • Fitness
      • Healthy Aging
      • ... more topics
  • Tech
    • View all the latest top news in the physical sciences & technology,
      or browse the topics below:
      Matter & Energy
      • Aviation
      • Chemistry
      • Electronics
      • Fossil Fuels
      • Nanotechnology
      • Physics
      • Quantum Physics
      • Solar Energy
      • Technology
      • Wind Energy
      • ... more topics
      Space & Time
      • Astronomy
      • Black Holes
      • Dark Matter
      • Extrasolar Planets
      • Mars
      • Moon
      • Solar System
      • Space Telescopes
      • Stars
      • Sun
      • ... more topics
      Computers & Math
      • Artificial Intelligence
      • Communications
      • Computer Science
      • Hacking
      • Mathematics
      • Quantum Computers
      • Robotics
      • Software
      • Video Games
      • Virtual Reality
      • ... more topics
  • Enviro
    • View all the latest top news in the environmental sciences,
      or browse the topics below:
      Plants & Animals
      • Agriculture and Food
      • Animals
      • Biology
      • Biotechnology
      • Endangered Animals
      • Extinction
      • Genetically Modified
      • Microbes and More
      • New Species
      • Zoology
      • ... more topics
      Earth & Climate
      • Climate
      • Earthquakes
      • Environment
      • Geography
      • Geology
      • Global Warming
      • Hurricanes
      • Ozone Holes
      • Pollution
      • Weather
      • ... more topics
      Fossils & Ruins
      • Ancient Civilizations
      • Anthropology
      • Archaeology
      • Dinosaurs
      • Early Humans
      • Early Mammals
      • Evolution
      • Lost Treasures
      • Origin of Life
      • Paleontology
      • ... more topics
  • Society
    • View all the latest top news in the social sciences & education,
      or browse the topics below:
      Science & Society
      • Arts & Culture
      • Consumerism
      • Economics
      • Political Science
      • Privacy Issues
      • Public Health
      • Racial Disparity
      • Religion
      • Sports
      • World Development
      • ... more topics
      Business & Industry
      • Biotechnology & Bioengineering
      • Computers & Internet
      • Energy & Resources
      • Engineering
      • Medical Technology
      • Pharmaceuticals
      • Transportation
      • ... more topics
      Education & Learning
      • Animal Learning & Intelligence
      • Creativity
      • Educational Psychology
      • Educational Technology
      • Infant & Preschool Learning
      • Learning Disorders
      • STEM Education
      • ... more topics
  • Quirky
    • Top News
    • Human Quirks
    • Odd Creatures
    • Bizarre Things
    • Weird World
Free Subscriptions

Get the latest science news with ScienceDaily's free email newsletters, updated daily and weekly. Or view hourly updated newsfeeds in your RSS reader:

  • Email Newsletters
  • RSS Feeds
Follow Us

Keep up to date with the latest news from ScienceDaily via social networks:

  • Facebook
  • Twitter
  • LinkedIn
Have Feedback?

Tell us what you think of ScienceDaily -- we welcome both positive and negative comments. Have any problems using the site? Questions?

  • Leave Feedback
  • Contact Us
About This Site  |  Staff  |  Reviews  |  Contribute  |  Advertise  |  Privacy Policy  |  Editorial Policy  |  Terms of Use
Copyright 2020 ScienceDaily or by other parties, where indicated. All rights controlled by their respective owners.
Content on this website is for information only. It is not intended to provide medical or other professional advice.
Views expressed here do not necessarily reflect those of ScienceDaily, its staff, its contributors, or its partners.
Financial support for ScienceDaily comes from advertisements and referral programs, where indicated.
— CCPA: Do Not Sell My Information — — GDPR: Privacy Settings —