Featured articles
Archive
Category: Identity
Is It Dangerous When an “Identifier Number” Leaks?
We are entering a summer at the height of the My Number compliance bubble. How is everyone doing? As it happens, pension numbers have leaked on a massive scale People say this migh…
U.S. Real Estate Industry Adopts OpenID Connect for Web API Authentication
According to a report by Peter Williams[1], the U.S. real estate industry appears to have decided to adopt OpenID Connect for Web API authentication. I did not know this, but the r…
JWS and JWT Are Now RFCs!
It took a very long time[1], but JSON Web Signature (JWS) and JSON Web Token (JWT) have finally become Standards Track RFCs[2]. They are [RFC 7515] and [RFC 7519], respectively. Fo…
Implementations by Google, Microsoft, PayPal, Nomura Research Institute, and Others Pass OpenID Connect Conformance Tests
(Figure 1) OpenID Certified logo On the 22nd local time, the U.S.-based OpenID® Foundation announced its self-certification program for the conformance of OpenID Connect implementa…
【Amendment of the Act on the Protection of Personal Information】Obligation to Keep Records of Third-Party Provision【Part 2】
Now, regarding the obligation to keep records of third-party provision that I pointed out on 3/12[1], I subsequently learned a great deal from people at the Cabinet Secretariat…
President Obama Taps David Recordon as the White House’s “Director of Information Technology (?)”
This is somewhat old news. My colleagues and I had quite a lively discussion about it on Friday morning Japan time, but I had no time on Friday. Then I became ill and slept until j…
NSA and GCHQ Had Secretly Taken SIM Keys in Massive Quantities
According to a report by The Intercept on 2015/2/19 local time [1], the NSA and GCHQ had stolen large quantities of keys (Ki) stored on SIMs shipped by Gemalto. As a result, interc…
From IDM to IRM: The Changing Horizon of Identity
Today (2014/11/21), starting at 14:15, I gave the keynote address at the 6th OpenAM Consortium Seminar held at Shinagawa Intercity. The title was: “From IDM to IRM: The Changing Ho…
Guidelines for Providing Information and Explanations with Due Consideration for Consumer Privacy in Online Services Have Been Formulated (METI/Ministry of Economy, Trade and Industry)
The guidelines that I helped develop as a member of the study committee have been published. METI: “Guidelines for Providing Information and Explanations with Due Consideration for…
Executive Order Issued to Improve the Security of Consumer Financial Transactions — Including the Adoption of Chip Cards for Credit Cards and Multi-Factor Authentication for Government Websites
On October 17, 2014, an Executive Order [1] was issued to improve the security of consumer financial transactions. Its 3 main provisions are as follows. Section 1. Securing Payment…

You must be logged in to post a comment.