Skip to content

Home > Resources > papers > LZ26-AnonCreds-Legacy

Device Binding for Anonymous Credentials on Legacy Phones (Lehmann, Zacharakis 2026)

Summary

Addresses the curve incompatibility problem for adding device binding to anonymous credentials in the EUDI Wallet context: anonymous credentials require pairing-friendly curves for efficiency, but consumer phone secure elements are restricted to ECDSA on P-256. Device binding ties a credential to a hardware-protected key and requires a fresh proof-of-possession per presentation; this paper bridges the curve gap to enable that binding without requiring new hardware.