The question above seems absurd but it is what a Bank has to ask to its suppliers to meet the European Central Bank (ECB) regulations on the continuity of critical business functions. The bank has no intention of mingling in the daily work of the supplier (that's the whole purpose of outsourcing). Nor the supplier has any intention to make available to the bank the keys of its kingdom (it is actually forbidden to do so by the very same regulations). We need a way to do so only when the hearts of the key people stop beating. In this paper, we discuss whether recent advances in cryptography (secret sharing and MPC, time-lock puzzles, etc.) can replace the classical approach based on human redundancy.

Vision: What If They All Die? Crypto Requirements For Key People / Nam Ngo, Chan; Friolo, Daniele; Massacci, Fabio; Venturi, Daniele; Battaiola, Ettore. - (2020), pp. 178-183. ( 5th IEEE European Symposium on Security and Privacy (IEEE Euro S and P) Genova; Italia ) [10.1109/EuroSPW51379.2020.00032].

Vision: What If They All Die? Crypto Requirements For Key People

Daniele Friolo
;
Fabio Massacci;Daniele Venturi;
2020

Abstract

The question above seems absurd but it is what a Bank has to ask to its suppliers to meet the European Central Bank (ECB) regulations on the continuity of critical business functions. The bank has no intention of mingling in the daily work of the supplier (that's the whole purpose of outsourcing). Nor the supplier has any intention to make available to the bank the keys of its kingdom (it is actually forbidden to do so by the very same regulations). We need a way to do so only when the hearts of the key people stop beating. In this paper, we discuss whether recent advances in cryptography (secret sharing and MPC, time-lock puzzles, etc.) can replace the classical approach based on human redundancy.
2020
5th IEEE European Symposium on Security and Privacy (IEEE Euro S and P)
phishing; user awareness; anti-phishing recommendations; anti-phishing material
04 Pubblicazione in atti di convegno::04b Atto di convegno in volume
Vision: What If They All Die? Crypto Requirements For Key People / Nam Ngo, Chan; Friolo, Daniele; Massacci, Fabio; Venturi, Daniele; Battaiola, Ettore. - (2020), pp. 178-183. ( 5th IEEE European Symposium on Security and Privacy (IEEE Euro S and P) Genova; Italia ) [10.1109/EuroSPW51379.2020.00032].
File allegati a questo prodotto
File Dimensione Formato  
Ngo_post-print_Vision_2020.pdf

accesso aperto

Note: DOI10.1109/EuroSPW51379.2020.00032
Tipologia: Documento in Post-print (versione successiva alla peer review e accettata per la pubblicazione)
Licenza: Tutti i diritti riservati (All rights reserved)
Dimensione 301.06 kB
Formato Adobe PDF
301.06 kB Adobe PDF
Ngo_Vision_2020.pdf

solo gestori archivio

Tipologia: Versione editoriale (versione pubblicata con il layout dell'editore)
Licenza: Tutti i diritti riservati (All rights reserved)
Dimensione 110.41 kB
Formato Adobe PDF
110.41 kB Adobe PDF   Contatta l'autore

I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione.

Utilizza questo identificativo per citare o creare un link a questo documento: https://hdl.handle.net/11573/1512247
Citazioni
  • ???jsp.display-item.citation.pmc??? ND
  • Scopus 0
  • ???jsp.display-item.citation.isi??? 0
social impact