BlindRevoke: Um Mecanismo de Revogação para SSI
Resumo
Este trabalho propõe o BlindRevoke, um mecanismo de revogação para Identidade Autossoberana que busca reduzir o rastreamento temporal do titular ao restringir a verificação de revogação à janela explicitamente autorizada pelo Holder. A solução combina vetor público no ledger, tokens temporais sob controle do usuário, prova por árvore de Merkle e filtros de Bloom off-ledger ancorados por um Manifesto. A proposta foi implementada no Hyperledger Indy e os resultados indicam viabilidade inicial em ambiente controlado, com verificação leve e com baixo uso do ledger no desenho avaliado. A arquitetura do BlindRevoke depende de infraestrutura auxiliar off-ledger e pode aumentar o tamanho da credencial em cenários com muitas janelas temporais.
Referências
Buccafurri, F. and Licciardi, C. (2025). Towards privacy-preserving revocation of verifiable credentials with time-flexibility. In 2025 IEEE European Symposium on Security and Privacy Workshops (EuroS&PW), pages 516–521, Venice, Italy.
Castaldo, L., Cortese, G., Izzo, S., and Balsamo, F. (2025). Electronic attestation of attributes extended validation services. In 3rd International Workshop on Trends in Digital Identity (TDI 2025), pages 16–25, Bologna, Italy. CEUR-WS.org. CEUR Workshop Proceedings, vol. 3396. Disponível em: [link].
Christensen, K., Roginsky, A., and Jimeno, M. (2010). A new analysis of the false positive rate of a bloom filter. Information Processing Letters, 110(21):944–949.
Dayaratne, T., Rudolph, C., and Yu, J. (2026). Enhancing security and resilience in der integration: A self-sovereign identity approach for smart inverters in virtual power plants. Distributed Ledger Technologies. Just Accepted, May 2026.
Hoops, F., Gebele, J., and Matthes, F. (2025). Crset: Private non-interactive verifiable credential revocation. arXiv preprint arXiv:2501.17089v3. Disponível em: [link].
Khayer, B., Mirzaei, S., Alavizadeh, H., and Salehi Shahraki, A. (2025). Blockchain for secure iot: A review of identity management, access control, and trust mechanisms. IoT, 6:65.
Kuzmanovic, D. (2025). Design and implementation of efficient credential revocation system. Disponível em: [link].
Kwon, H., Kim, D., Kim, H., Hahn, C., and Hur, J. (2026). Certificate revocation in the tls ecosystem: A survey. ACM Computing Surveys, 58(7):Article 178, 36 pages.
Lee, Y., Shin, H., and Choi, D. (2026). A survey on credential revocation and did deactivation in self-sovereign identity systems. IEEE Access, 14:16089–16115.
Malamas, V., Kotzanikolaou, P., Dasaklis, T. K., and Burmester, M. (2020). A hierarchical multi blockchain for fine grained access to medical data. IEEE Access, 8:134393–134412.
Mallesh, A. (2025). Immutable identity ledger: Revolutionizing secure credential management with blockchain technology. International Research Journal of Modernization in Engineering Technology and Science, 7(3).
Manimaran, P., Raikwar, M., Garrett, T., da Conceição, A. F., Jehl, L., and Vitenberg, R. (2025). zkrevoke: Configurable untraceability for verifiable credentials using zkps. Proceedings on Privacy Enhancing Technologies Symposium (PETS 2026): [link].
Mazzocca, C., Acar, A., Uluagac, S., Montanari, R., Bellavista, P., and Conti, M. (2025). A survey on decentralized identifiers and verifiable credentials. IEEE Communications Surveys & Tutorials, 27(6):3641–3671.
Papathanasiou, A. M. and Polyzos, G. C. (2024). Privacy-preserving revocation of verifiable credentials with verifiable random functions. In 2024 International Conference on Information Networking (ICOIN), pages 391–394, Ho Chi Minh City, Vietnam.
Paredes-García, D., Fernández-Carrasco, J. Á., López, J. A. M., Vasquez-Correa, J. C., Yoldi, I. J., Moreno-Acevedo, S. A., González-Docasal, A., Irazusta, H. A., Muniain, A. Á., and Loinaz, Y. d. D. (2025). Siberia: A self-sovereign identity and multi-factor authentication framework for industrial access. Applied Sciences, 15:8589.
Schumm, D., Mukta, R., and Paik, H.-y. (2023). Efficient credential revocation using cryptographic accumulators. In 2023 IEEE International Conference on Decentralized Applications and Infrastructures (DAPPS), pages 127–134, Athens, Greece.
Sofronie, M., Brı̂nzea, A., Bratu, A., Aciobăniţei, I., and Pop, F. (2025). A bidirectional bridge for cross-chain revocation of verifiable credentials in segregated blockchains. Algorithms, 18:734.
Sporny, M., Longley, D., Sabadello, M., Reed, D., Steele, O., and Allen, C. (2022). Decentralized identifiers v1.0: Core architecture, data model, and representations. W3C Recommendation, 19 July 2022. World Wide Web Consortium (W3C). Disponível em: [link]. Último acesso: 23/04/2026.
Tan-Vo, K. et al. (2025). Optimizing academic certificate management with blockchain and machine learning: A novel approach using optimistic rollups and fraud detection. IEEE Access, 13:168135–168159.
Tesei, A., Lattuca, D., Luise, M., Pagano, P., Ferreira, J., and Bartolomeu, P. C. (2023). A transparent distributed ledger-based certificate revocation scheme for vanets. Journal of Network and Computer Applications, 212:103569.
Vikram, S. (2023). Enhancing credential security in distributed manufacturing: Machine learning for monitoring and preventing unauthorized client certificate sharing. JAAFR - Journal of Advance and Future Research, 1(7):7–15. Disponível em: [link].
von Rauscher, C. E. (2024). Design and implementation of privacy-preserving mechanisms for metadata and public keys in blockchain-based self-sovereign identities. Disponível em: [link].
Wohlmacher, P. (2000). Digital certificates: a survey of revocation methods. In Proceedings of the 2000 ACM Workshops on Multimedia (MULTIMEDIA ’00), pages 111–114, New York, NY, USA. Association for Computing Machinery.
