Identosphere 218: Biden Preps Digital ID Executive Order • Arcblock's role in DIF • The goal isn't Zero Passwords
You weekly guide to decentralized identity and verifiable credentials
We Gather, You Read!
End of the year gifts via PayPal, or Patreon are appreciated if you love what you read here.
Coming Up
Newly Listed
Previously Listed
[online] CA mDL Community Hackathon Public Briefing 1/10
The two hackathons, participated by 20+ teams, 40+ organizations, and 200+ attendees
The CA DMV is hosting this briefing to share with the broader mDL ecosystem[Berlin] European Cloud and Identity Conference [Call for Proposals] Until 01/31
[Cape Town] DID:Unconf Africa 2/18-20
[Zurich] Digital Identity Unconference Europe - Ecosystems 3/4-5
New -> [Manila] MOSIP Connect - March 11-13
[Orlando] Gartner Identity & Access Management Summit 2025 3/3-5
[London] Future Identity Finance 3/19
[Netherlands] IDM Europe 4/1
[California] Internet Identity Workshop #40 4/8-10
[Washington DC] IAPP Global Privacy Summit 2025 4/21-24
[San Francisco] RSA Conference 2025 4/28-5/1
IRL: the Fires in California.
Doc Searls who Kaliya co-organizes IIW has a home in Santa Barbara just north of LA.
He is doing extensive blogging of the fires that is quite good.
Jan 8 On Los Angeles Wildfires
Jan 10 Palisades Fire on the Ridge
Jan 11 Aviation vs. Fire
Jan 14 How Facts Matter
Government
Biden Administration Preps Executive Order Expanding Digital ID Verification for Federal Programs idtechwire.com
NIST to develop guidance on using digital identity documents, including mDLs and electronic passports, in online verification processes
Emphasizes interoperability between systems
Incorporates data minimization principles
Prevents issuer tracking
Explores alternatives to traditional identity verification methods, including attribute validation services provided by the Social Security Administration
Avoids mandating the use of Login.gov due to operational challenges and security concerns mentioned in an inspector general report.
Travel
[Instagram] As travel digital ID concepts mature, experts discuss the challenges PhocusWright
NeoKe pilot: Successful test of document-free travel between Hong Kong-Tokyo using biometrics and SSID
"We were able to prove that these standards operate pretty well."
Condatis application: Using SSID for real-time hotel personalization and targeted offers
[youtube] A New Identity - SSI Comes of Age, Neoke, Condatis, Microsoft 2025-01-09
From shopping to booking to on the ground, SSI can empower travelers with control over every step of their experience, from relevant offers to frictionless travel throughout the journey.
Pain Points in Travel Processing Alleviated by Biometrics and Digital Identity 2025-01-10 Biometric Update
Facial recognition deployment for cruise travelers at Palm Beach, Florida
Increasing capacity and modernizing immigration control areas with processing times of 10 to 15 seconds in San Jose's Juan Santamaría International Airport, Costa Rica, Thailand, Taiwan.
Organization
LF Decentralized Trust’s Hyperledger Indy on Besu Joins the Did:indy Method: Six Months of Progress Renata Toktar
Government Digital Identity Programs: Complies with regulatory requirements like eIDAS 2.0, supports Trusted List Provider role in EUDI Wallet
Enterprise Identity Systems: Enables secure identity verification for supply chain management, customer authentication, and employee systems
IoT and Device Identity: Facilitates trusted interactions and secure authentication for IoT devices
Dynamic Credential Management: High throughput capabilities allow frequent updates in sectors like education, healthcare, finance
ArcBlock Takes Roles in Decentralized Identity Foundation, Helping to Drive DID Standardization and Innovation www.arcblock.io
Matt McKinney, ArcBlock's Head of Growth, has been appointed Co-Chair of the DIF DID Method Working Group and an expert mentor in DIF Labs. This dual role highlights ArcBlock's commitment to both the standardization of DID methods and the practical application of decentralized identity technologies, bringing its years of experience building decentralized solutions to the forefront.
Results of 3rd Annual Elections to the Board of the Velocity Network Foundation 2025-01-07 Velocity
3rd annual board elections completed
10 seats up for election
94% of eligible member organizations participated in the vote
VNF grateful for high level of participation and engagement from candidates
DIF Welcomes the Camino Network Foundation! 2025-01-07 blog.identity.foundation
Background on Camino Network Foundation:
Specialized layer-one blockchain for travel industry use cases
Permissioned yet public infrastructure for travel stakeholders
Interoperable, secure digital identity systems
Entering the digital ID market, DNP wants to leverage expertise from a partner consortium across APAC 2025-01-09 Evie Kim Sing; Identity Week
With extensive expertise in secure documents and KYC, it was a “natural transition” to enter the digital identity market, says Takumi , DNP, who launched a decentralized ID management platform in 2024.
Virtual Worlds Interoperability and Standards Status and Opportunities (ViWISSO) Project Christine Perey
ViWiSSO project will deliver an exhaustive assessment of standardization activities in diverse virtual world technologies. In parallel with preparing the standards landscape, we are seeking to compile and prioritize requirements of stakeholders for virtual world interoperability and standards.
Standards Development
NIST Announces First Four Quantum-Resistant Cryptographic Algorithms (h/t SpruceID)
U.S. National Institute of Standards and Technology (NIST) has announced the selection of first quantum-resistant cryptographic algorithms Selected Algorithms:
CRYSTALS-Kyber: general encryption
CRYSTALS-Dilithium, Falcon, and SPHINCS+: digital signatures
Best Practices for Digital Certificate Linting Christoph Bröter; www.linkedin.com
Simply put, linting is an automated method to test PKI artifacts against documented standards such as the CA/Browser Forum (CABF) Baseline Requirements or relevant IETF RFCs. Those PKI artifacts can include precertificates (as defined in RFC 6962) or tbsCertificates (as defined in RFC 5280), actual certificates, or a CRL or OCSP response.
BSI Technical Guideline 03138 Replacement Scanning (RESISCAN) www.bsi.bund.de
BSI Technical Guideline 03138: Replacement Scanning (RESISCAN):
Electronic document management systems increasing
Need for paper documents despite digitalization
Legal uncertainties regarding replacement scanning
Technical guideline TR-03138 aims to address these issues
Research
[Book] Governance and Control of Data and Digital Economy in the European Single Market Law, Governance and Technology Series - Springer
Empowering Global Supply Chains Through Blockchain-Based Platforms: New Evidence from the Coffee Industry 2024-11-29 by Tommaso Agnola, Luca Ambrosini, Edoardo Beretta and Giuliano Gremlich
The present Communication describes a blockchain-based platform that leverages Self-Sovereign Identity (SSI) and Verifiable Credentials (VCs) to address these challenges in supply chain management.
Beyond Trial and Error: Strategic Assessment of Decentralized Identity in US Healthcare 2024-11-18 Sophia Sophia Maite Magdalena, Alexander Meier, Edona Elshan, Omid Malekan, J. M. Leimeister
The framework serves healthcare organizations as a decision-support tool in choosing suitable use cases for decentralized ID and planning corresponding initiatives. For researchers, the socio-technical factors that determine use cases's amenability to decentralized ID enhance their understanding of this novel IS and the socio-technical change it brings about.
Hardware
[linkedin] Attacks Against TEEs Simone Onofri
Physical and Software Based Fault Injection Attacks Against TEEs in Mobile Devices: A Systemisation of Knowledge
Particularly in the identity arena, we often delegate some of the security to the hardware component, assuming it is secure. But is it?
Use Cases
[remitance] How to put billions into people’s pockets by transforming cross-border payments with Verifiable Credentials 2025-01-07 Trevor Butterworth; Indicio
Global Cross-Border Payments: To increase from $190 trillion USD (2023) to $290 trillion USD (2030) due to digital integration Remittances: Reducing cost of cross border remittances (SDG10)
Average cost: 6.65% of amount sent, rising to 8.37% for Sub-Saharan Africa Travel Sector:: Rapidly transitioning to decentralized identity and "government-grade" digital identities Finance Industry:: Complex regulatory and technical challenges across multiple stakeholders
Top 5 exciting use cases for Verifiable Credentials to look out for in 2025 2025-01-09 Ken Ebert; Indicio
Top Use Cases:
International Travel: Digital Travel Credentials (DTC) and IATA One ID
Biometric Authentication: Bring Your Own Biometrics using Verifiable Credentials
Education: Streamlining student records through Open Badges 3.0 and digital wallets
Agriculture: Proving provenance and creating transparent supply chains
Finance: Preventing fraud through mutual authentication using Verifiable Credentials
Company Stories
iDen2 Inc. is a US-based company with operations in the Middle East and Switzerland iden2.com
Established in 2022 by co-founders with over 250 years of collective experience in Identity Management, Verification, and Decentralized Identity
With the acquisition of Bindle Systems, the largest SSI network in the US, iDen2 has secured a strong market position. We have established relationships with 300 issuers and 400 verifiers, serving hundreds of thousands of users worldwide
Digital Identity
Authorization Matters Phil Windley; www.technometria.com
Increasing use of cloud-based services that require robust authorization systems
Regulatory compliance requirements like HIPAA and GDPR that mandate access control and auditing
Rise of AI agents and the need to make good authorization decisions, know what decisions were made, and easily incorporate authorization infrastructure into apps and infrastructure
The End Goal Isn’t Zero Passwords — It’s Zero Compromise on Security and Simplicity ; Dqindia Online; www.dqindia.com
Issues such as poor password hygiene, phishing, and credential stuffing attacks have revealed the limitations of relying on passwords for identity verification. These challenges make passwords not only a security risk but also a burden on users who are required to manage an ever-growing list of complex credentials.
DWeb
[tweet thread] Mastodon vs Bluesky: A Comparison of Twitter Alternatives Gro-Tsen via Threadreaderapp
Whereas the Fediverse (ActivityPub) just has one kind of piece, viꝫ. servers, the ATmosphere has three different beasts: personal data servers (PDSs), relays, and (app) views. In short, PDSs store users' posts, relays aggregate them and views present them to others.
[tweet] Decentralized PKI? Built right into our DID framework 🔐 2025-01-09 Bino_AI
Transport layer? W3bstream's got you covered with ZKP-powered data validation 📡 • Embedded applications? Our SDKs support everything from Arduino to Raspberry Pi 🤖
ioID Specification | IoTeX Documentation
To onboard a device (e.g., a 5G Cellular Antenna) that belongs to a certain DePIN project, a device owner needs to:
Retrieve the device's DID and DID document (e.g. via a usb tool paired with an embedded SDK installed on the device).
Upload the DID document to a storage provider and get the URI.
Register the device with its DID, DID document hash, and URI.
Using the owner's blockchain account, invoke the ioID on-chain registry to perform a Device Registration with the device DID, DID document hash, and URI.
The ioID device registry is updated with the new information and a "device NFT" is minted to the owner's blockchain address.
[tweet thread] idOS is made up of 2 key elements DecentraGirl via Threadreaderapp
1/ A dStorage Network of Nodes- which are managed by node operators that host user-encrypted data, usually in the form of W3C verifiable credentials.
2/ An Access management protocol- that allows users manage their own data and grant or revoke access to third parties like dAPPS.
Artificial Intelligence Changes Advertising
[Perplexity AI] Radical transformation in digital advertising, where artificial intelligence agents could become the primary target for advertisements 2024-01-04 Pascal Hetzscholdt
Disruption to marketing industry: unprepared for decision making outside human brain
Urgency for action: dramatic shift in consumer behavior with existential implications for brands and agencies