|
|
|
|
|
by krunck
105 days ago
|
|
If issuer knows the identity of the user and the signature that it sent to her, and if the user passes on the signature to the resource, what's to keep the issuer and resource from conspiring and sharing information to track the behavior of the user? One has to assume that the signature is going to be just as unique as the serial number the user generated. see this image from the article: https://blog.cryptographyengineering.com/wp-content/uploads/... |
|