Assessing the Solid Protocol in Relation to Security Privacy Obligations

10/15/2022
by   Christian Esposito, et al.
0

The Solid specification aims to empower data subjects by giving them direct access control over their data across multiple applications. As governments are manifesting their interest in this framework for citizen empowerment and e-government services, security and privacy represent pivotal issues to be addressed. By analyzing the relevant legislation, notably GDPR, and international standards, namely ISO/IEC 27001:2011 and 15408, we formulate the primary security and privacy requirements for such a framework. Furthermore, we survey the current Solid protocol specifications regarding how they cover the highlighted requirements, and draw attention to potential gaps between the specifications and requirements. We also point out the contribution of recent academic work presenting novel approaches to increase the security and privacy degree provided by the Solid project. This paper has a twofold contribution to improve user awareness of how Solid can help protect their data and to present possible future research lines on Solid security and privacy enhancements.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
09/18/2018

Security and Protocol Exploit Analysis of the 5G Specifications

The Third Generation Partnership Project (3GPP) released its first 5G se...
research
09/06/2023

Provably Unlinkable Smart Card-based Payments

The most prevalent smart card-based payment method, EMV, currently offer...
research
08/31/2022

A Survey of Security and Privacy Issues in V2X Communication Systems

Vehicle-to-Everything (V2X) communication is receiving growing attention...
research
08/18/2021

A Review on Cybersecurity in Smart Local Energy Systems: Requirements, Challenges, and Standards

Smart local energy system (SLES) is considered as a promising pathway fa...
research
07/27/2021

Abordagem probabilística para análise de confiabilidade de dados gerados em sequenciamentos multiplex na plataforma ABI SOLiD

The next-generation sequencers such as Illumina and SOLiD platforms gene...
research
03/31/2020

Cross-project Classification of Security-related Requirements

We investigate the feasibility of using a classifier for security-relate...
research
11/21/2017

Direct and mediating influences of user-developer perception gaps in requirements understanding on user participation

User participation is considered an effective way to conduct requirement...

Please sign up or login with your details

Forgot password? Click here to reset