Thomas Groß


[Contact] [Curriculum Vitae] [Publications]

Portrait of Thomas Groß

I'm a researcher at the Security and Cryptography group of the IBM Zurich Research Lab. I'm the IBM Research Relationship Manager for Privacy. [more...]
[IBM Research, Zurich Laboratory]    [Security and Cryptography group]

Research Interests

My research interests are in security, privacy and applied cryptography:

  • Cloud security
  • Identity and privacy-enhancing technology
  • Formal methods in protocol security proofs
Ever wondered what the world thinks about privacy? See the most Google searches on "Is privacy...?" and "Privacy is...!"

Projects

Cryptography for Privacy-enhanced Identity Management

I'm researching cryptography applications to identity management, mostly in the areas of privacy-enhancing technology (PET), zero-knowledge proofs of knowledge and anonymous credential systems. My overall goal is to establish a combination of strong authentication and privacy in identity management. Much of my research is centered around IBM's anonymous credential system Identity Mixer. Watch IBM's Identity Mixer YouTube video!. Beyond its integration into standardized identity federation protocols, I've contributed to a highly efficient attribute encoding for resource-constrained environments based on prime numbers and divisibility. I'm a contributor to the Identity Mixer community page.

Smart Identity Card

I'm leading an initiative to establish anonymous credential systems on electronic identity cards, more generally on the Java Card platform. We coined this a Smart Identity Card. Whereas we follow the same goal of strong authentication combined with privacy, the Java Card's trust model, limited access to crypto primitives and resource constraints make this a challenge. The system must be secure in face of untrusted terminals and, thus, cannot easily delegate computation to a more powerful device and still achieve practical response times with secure keys. Nevertheless, we were the first to establish a practical and autonomous anonymous credential system on a standard Java Card (on a JCOP 41/v2.2 to be precise). We will publish this result at ACM CCS 2009. The German Society for Computer Science (Gesellschaft für Informatik, GI) recognized this with the Innovation Award 2009.

Federated Identity Management

I'm responsible for research in Federated Identity Management, , a technology that facilitates authentication and attribute exchange accross trust domains. This research involves the application of cryptography and formal methods to protocol standards such as the Security Assertion Markup Language (SAML), Liberty Alliance Project, and WS-Federation. I contributed significantly to the architecture and research prototype of the Tivoli Federated Identity Manager (TFIM).

Publications

Have a look at my publication list, the group publications of the security group of the IBM Zurich Research Lab, or DBLP (>2002). [more...]

Pointers


<<< last modified 2010/07/20 >>>
http://www.thomasgross.net


[Contact] [Curriculum Vitae] [Publications]