1
Return

DID-TUF: Secure Decentralized Identifier Management using Trustless Registries

delete2025-11-29
delete0
PRE
AI
B
Bander Alzahrani *
DOI:10.1016/j.cose.2025.104780delete
deleteOriginal
deleteOriginal request for help
deleteShare
deleteSave
Abstract

Abstract

En 中文
Decentralized Identifiers (DIDs) represent a novel and transformative approach to digital identity management, offering a decentralized alternative to traditional systems that rely on centralized authorities. Unlike conventional identity frameworks, which are typically governed by third-party providers such as certificate authorities or identity federations, DIDs empower individuals, organizations, and devices to create, control, and manage their identifiers independently, ensuring enhanced privacy, autonomy, and resistance to censorship. In this paper, a DID method is introduced that leverages The Update Framework (TUF) to enable secure and efficient dissemination of DID documents through a trustless registry model. This method blends the strengths of registry-based and registry-less approaches to enhance the resilience and security of decentralized identity systems. Our solution is robust against a wide range of attacks while maintaining a small overhead. It is also agnostic to the DID document storage method and provides an auditable trail of updates. Our proof-of-concept implementation demonstrates that DID creation, update, and resolution operations incur minimal computational overhead, confirming the practicality and efficiency of our approach.

Journal

C
Computers and Security
IF:
5.4
Papers:
4.6K
Citations:
1.4W

Organization

No organization information available
Cited Papers

Cited Papers

Citing Papers

Citing Papers