Attribute-based Authentication in Secure Group Messaging for Distributed Environments and Safer Online Spaces

UDC.coleccionInvestigación
UDC.departamentoCiencias da Computación e Tecnoloxías da Información
UDC.grupoInvLaboratorio Interdisciplinar de Aplicacións da Intelixencia Artificial (LIA2)
UDC.institutoCentroCITIC - Centro de Investigación de Tecnoloxías da Información e da Comunicación
UDC.journalTitleComputer Networks
UDC.startPage112302
UDC.volume283
dc.contributor.authorSoler, David
dc.contributor.authorDafonte, Carlos
dc.contributor.authorFernández Veiga, Manuel
dc.contributor.authorFernández Vilas, Ana
dc.contributor.authorNóvoa, Francisco
dc.date.accessioned2026-05-12T12:22:25Z
dc.date.available2026-05-12T12:22:25Z
dc.date.issued2026-04
dc.descriptionThe implementation presented in this work is available at: https://github.com/SDABIS/aa-cgka. This link is included in the manuscript.
dc.description.abstract[Abstract]: The Messaging Layer security (MLS) and its underlying Continuous Group Key Agreement (CGKA) protocol allows a group of users to share a cryptographic secret in a dynamic manner, such that the secret is modified in member insertions and deletions. Although this flexibility makes MLS ideal for implementations in distributed environments, a number of issues need to be overcome. Particularly, the use of digital certificates for authentication in a group goes against the group members’ privacy. In this work we provide an alternative method of authentication in which the solicitors, instead of revealing their identity, only need to prove possession of certain attributes, dynamically defined by the group, to become a member. Instead of digital certificates, we employ Attribute-Based Credentials accompanied with Selective Disclosure in order to reveal the minimum required amount of information and to prevent attackers from linking the activity of a user through multiple groups. We formally define a CGKA variant named Attribute-Authenticated Continuous Group Key Agreement (AA-CGKA) and provide security proofs for its properties of Requirement Integrity, Unforgeability and Unlinkability. We also provide an implementation of our AA-CGKA scheme and show that it achieves performance similar to a trivial certificate-based solution.
dc.description.sponsorshipD.S. acknowledges support from Xunta de Galicia, Spain and the European Union (European Social Fund - ESF) scholarship [ED481A-2023-219]. This work is funded by the Plan Complementario de Comunicaciones Cuánticas, Spanish Ministry of Science and Innovation (MICINN), Spain, Plan de Recuperación NextGeneration, European Union (PRTR-C17.I1, CITIC Ref. 305.2022), and Regional Government of Galicia, Spain (Agencia Gallega de Innovación, GAIN, CITIC Ref. 306.2022). This work is also funded by the European Regional Development Fund (ERDF), Spain through the EU Interreg VI-A Spain-Portugal (POCTEP) 2021-2027 Programme , project “Quantum IBER_IA: Impulso estratégico de las capacidades en tecnologías cuánticas e inteligencia artificial en el espacio ibérico transfronterizo”.
dc.description.sponsorshipXunta de Galicia; ED481A-2023-219
dc.identifier.citationD. Soler, C. Dafonte, M. Fernández-Veiga, A. Fernández Vilas, and F. J. Nóvoa, "Attribute-based authentication in secure group messaging for distributed environments and safer online spaces", Computer Networks, Vol. 283, 112302, https://doi.org/10.1016/j.comnet.2026.112302
dc.identifier.doi10.1016/j.comnet.2026.112302
dc.identifier.issn1872-7069
dc.identifier.urihttps://hdl.handle.net/2183/48222
dc.language.isoeng
dc.publisherElsevier
dc.relation.isbasedonhttps://github.com/SDABIS/aa-cgka
dc.relation.urihttps://doi.org/10.1016/j.comnet.2026.112302
dc.rightsAttribution-NonCommercial-NoDerivatives 4.0 Internationalen
dc.rights.accessRightsopen access
dc.rights.urihttp://creativecommons.org/licenses/by-nc-nd/4.0/
dc.subjectCGKA
dc.subjectMLS
dc.subjectAttribute-based credentials
dc.titleAttribute-based Authentication in Secure Group Messaging for Distributed Environments and Safer Online Spaces
dc.typejournal article
dc.type.hasVersionVoR
dspace.entity.typePublication
relation.isAuthorOfPublication7ca53fa8-f0b0-4317-bbb1-d44a8a829a27
relation.isAuthorOfPublicationc3c2021f-0b5d-408f-afff-ec09ab5eaeee
relation.isAuthorOfPublication6f38fb90-68db-4d7c-89e0-8cff7f9d673c
relation.isAuthorOfPublication.latestForDiscovery7ca53fa8-f0b0-4317-bbb1-d44a8a829a27

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
Dafonte_Carlos_2026_Attribute_based_authentication_in_secure_group_messaging.pdf
Size:
2.88 MB
Format:
Adobe Portable Document Format