arXiv:2506.02027cs.CRcs.AI2025-06被引 1

旧式终身身份标识在AI时代已不安全,需用新系统替代。

The End Of Universal Lifelong Identifiers: Identity Systems For The AI Era

  • 提出基于密码学的新身份系统框架
  • 传统隐私保护手段已无法应对AI风险
  • 适合关注隐私与合规的机构使用

许多身份系统为个人分配一生不变的唯一标识符(ULI),广泛用于医疗、金融和教育等领域。这类通用终身标识符虽支撑关键流程,却在当前AI背景下带来系统性隐私风险。本文认为,ULI与AI时代本质冲突,必须逐步淘汰。基于现代AI能力构建威胁模型,证明传统的脱敏、授权和访问控制已不再有效。我们定义了AI时代身份系统的四大核心属性,并提出一个满足这些属性的密码学框架,兼容现有标识工作流。该设计保留审计、委托等必要功能,提供切实可行的迁移路径,实现从ULI向更安全身份体系的过渡。

原文摘要 · Abstract (English)

Many identity systems assign a single, static identifier to an individual for life, reused across domains like healthcare, finance, and education. These Universal Lifelong Identifiers (ULIs) underpin critical workflows but now pose systemic privacy risks. We take the position that ULIs are fundamentally incompatible with the AI era and must be phased out. We articulate a threat model grounded in modern AI capabilities and show that traditional safeguards such as redaction, consent, and access controls are no longer sufficient. We define core properties for identity systems in the AI era and present a cryptographic framework that satisfies them while retaining compatibility with existing identifier workflows. Our design preserves institutional workflows, supports essential functions such as auditability and delegation, and offers a practical migration path beyond ULIs.

身份识别隐私保护密码学

Thank you to arXiv for use of its open access interoperability. PaperDance 不是 arXiv 官方产品;中文卡片由大模型生成,请以原文为准。