zkLogin: Privacy-Preserving Blockchain Authentication with Existing Credentials

AI-generated keywords: zkLogin authentication blockchain privacy-preserving user experience

AI-generated Key Points

The license of the paper does not allow us to build upon its content and the key points are generated using the paper metadata rather than the full article.

  • zkLogin is a revolutionary authentication technique for blockchain applications
  • It leverages identity tokens from platforms like Google and Facebook through OpenID Connect for user authentication
  • Provides strong security and privacy guarantees by using zero-knowledge proofs (ZKP) to conceal user identities
  • Implemented on the Sui blockchain with widespread adoption in industries such as gaming, DeFi, direct payments, NFT collections, ride sharing, sports racing, etc.
  • Eliminates the need for mnemonics or complex hardware wallets, improving accessibility and usability of blockchain applications
Also access our AI generated: Comprehensive summary, Lay summary, Blog-like article; or ask questions about this paper to our AI assistant.

Authors: Foteini Baldimtsi, Konstantinos Kryptos Chalkias, Yan Ji, Jonas Lindstrøm, Deepak Maram, Ben Riva, Arnab Roy, Mahdi Sedaghat, Joy Wang

Abstract: For many users, a private key based wallet serves as the primary entry point to blockchains. Commonly recommended wallet authentication methods, such as mnemonics or hardware wallets, can be cumbersome. This difficulty in user onboarding has significantly hindered the adoption of blockchain-based applications. We develop zkLogin, a novel technique that leverages identity tokens issued by popular platforms (any OpenID Connect enabled platform e.g. Google, Facebook, etc.) to authenticate transactions. At the heart of zkLogin lies a signature scheme allowing the signer to \textit{sign using their existing OpenID accounts} and nothing else. This improves the user experience significantly as users do not need to remember a new secret and can reuse their existing accounts. zkLogin provides strong security and privacy guarantees. By design, zkLogin builds on top of the underlying platform's authentication mechanisms, and derives its security from there. Unlike prior related works however, zkLogin avoids the use of additional trusted parties (e.g., trusted hardware or oracles) for its security guarantees. zkLogin leverages zero-knowledge proofs (ZKP) to ensure that the link between a user's off-chain and on-chain identities is hidden, even from the platform itself. We have implemented and deployed zkLogin on the Sui blockchain as an alternative to traditional digital signature-based addresses. Due to the ease of web3 on-boarding just with social login, without requiring mnemonics, many hundreds of thousands zkLogin accounts have already been generated in various industries such as gaming, DeFi, direct payments, NFT collections, ride sharing, sports racing and many more.

Submitted to arXiv on 22 Jan. 2024

Ask questions about this paper to our AI assistant

You can also chat with multiple papers at once here.

The license of the paper does not allow us to build upon its content and the AI assistant only knows about the paper metadata rather than the full article.

AI assistant instructions?

Results of the summarizing process for the arXiv paper: 2401.11735v1

This paper's license doesn't allow us to build upon its content and the summarizing process is here made with the paper's metadata rather than the article.

zkLogin is a revolutionary authentication technique that aims to streamline user onboarding in blockchain applications. In the past, users have had to rely on private key-based wallets for access to blockchains, which can be cumbersome and hinder adoption. However, with zkLogin's innovative approach of leveraging identity tokens issued by popular platforms like Google and Facebook through OpenID Connect, users can now authenticate transactions using their existing accounts. This eliminates the need to remember new secrets and significantly improves the user experience. One of the standout features of zkLogin is its strong security and privacy guarantees. By building upon the underlying platform's authentication mechanisms, zkLogin ensures that user data remains secure. Unlike previous solutions that require additional trusted parties for security, zkLogin utilizes zero-knowledge proofs (ZKP) to conceal the link between a user's off-chain and on-chain identities - even from the platform itself. The implementation of zkLogin on the Sui blockchain has already seen widespread adoption across various industries such as gaming, DeFi (Decentralized Finance), direct payments, NFT collections (Non-Fungible Tokens), ride sharing, sports racing, and more. With hundreds of thousands of zkLogin accounts generated without the need for mnemonics or complex hardware wallets, this novel authentication method has significantly improved the accessibility and usability of blockchain-based applications. Authored by Foteini Baldimtsi, Konstantinos Kryptos Chalkias, Yan Ji, Jonas Lindstrøm, Deepak Maram, Ben Riva, Arnab Roy, Mahdi Sedaghat,and Joy Wang,this research paper titled "zkLogin: Privacy-Preserving Blockchain Authentication with Existing Credentials" presents a cutting-edge solution that not only enhances security but also simplifies the process of interacting with blockchain technology for users worldwide.
Created on 13 Nov. 2024

Assess the quality of the AI-generated content by voting

Score: 0

Why do we need votes?

Votes are used to determine whether we need to re-run our summarizing tools. If the count reaches -10, our tools can be restarted.

Similar papers summarized with our AI tools

Navigate through even more similar papers through a

tree representation

Look for similar papers (in beta version)

By clicking on the button above, our algorithm will scan all papers in our database to find the closest based on the contents of the full papers and not just on metadata. Please note that it only works for papers that we have generated summaries for and you can rerun it from time to time to get a more accurate result while our database grows.

Disclaimer: The AI-based summarization tool and virtual assistant provided on this website may not always provide accurate and complete summaries or responses. We encourage you to carefully review and evaluate the generated content to ensure its quality and relevance to your needs.