Blockchain Papers

Follow blockchain research across journals, conferences, and preprint repositories.

88 papersLast indexed Aug 31, 2026
Search papers

Paper index

88 results · page 1 of 4

Clear filters
May 30, 2026·The Scientific Issues of Ternopil Volodymyr Hnatiuk National Pedagogical University Series pedagogy
0 cites
Децентралізовані автономні організації: «корпоративна обгортка» як obstacle épistémologique

Владислав Удянський

The relevance of this study is driven by the necessity to transform modern civil law doctrine toward a post-non-classical stage. Civil law constantly faces challenges from newly emerging relationships. The new decentralized internet, Web3, has shifted the paradigm for perceiving the elements of civil legal relations; as this article demonstrates, a new legal object exists on the blockchain, even though current civil norms state otherwise. In this regard, decentralized autonomous organizations are not merely a technological phenomenon but also a challenge to existing civil law theories and an instrument for protecting human rights amid the identity crisis of the information society and "surveillance capitalism". The purpose of this work is to substantiate a paradigm shift in research on decentralized autonomous organizations and to analyze their legal status by deconstructing the values they defend: privacy, dignity, and autonomy. The methodology is based on the axiological and historical approaches to Roman law and Kantian ethics to comprehend the depth of privacy problems and the relevance of these decentralized entities, alongside the synergetic method, which views a decentralized autonomous organization as a dissipative structure. The results demonstrate that such an organization is an autopoietic system where the protocol acts as a slaving principle (teleonomy of the code), while in bifurcation points preserving teleology of the community. It is argued that applying general corporate laws is dogmatically flawed due to the absence of affectio societatis (mutual trust) and undermines the very causa finalis of these decentralized systems – advocating for a decentralized internet and a shift of power to users, rather than creating just another form of a limited liability company. Prospects for further research include the proposal to treat these decentralized organizations as a sui generis construct. It is concluded that regulators should create "strange attractors" by applying the legal construct of Zweckvermögen (purpose-bound patrimony) to smart contracts, allowing these structures to participate in offline legal relationships without destroying their unique nature.

Open access
Energy Law and Policy
Digitalization, Law, and Regulation
Blockchain Technology Applications and Security
Original source
May 30, 2026·Теорія і практика правознавства
0 cites
Decentralized Autonomous Organizations: Corporate Wrapper Obstacle Épistémologique

Vladyslav Udiansky

The relevance of this study is driven by the necessity to transform modern civil law doctrine toward a post-non-classical stage. Civil law constantly faces challenges from newly emerging relationships. The new decentralized internet, Web3, has shifted the paradigm for perceiving the elements of civil legal relations; as this article demonstrates, a new legal object exists on the blockchain, even though current civil norms state otherwise. In this regard, decentralized autonomous organizations are not merely a technological phenomenon but also a challenge to existing civil law theories and an instrument for protecting human rights amid the identity crisis of the information society and "surveillance capitalism". The purpose of this work is to substantiate a paradigm shift in research on decentralized autonomous organizations and to analyze their legal status by deconstructing the values they defend: privacy, dignity, and autonomy. The methodology is based on the axiological and historical approaches to Roman law and Kantian ethics to comprehend the depth of privacy problems and the relevance of these decentralized entities, alongside the synergetic method, which views a decentralized autonomous organization as a dissipative structure. The results demonstrate that such an organization is an autopoietic system where the protocol acts as a slaving principle (teleonomy of the code), while in bifurcation points preserving teleology of the community. It is argued that applying general corporate laws is dogmatically flawed due to the absence of affectio societatis (mutual trust) and undermines the very causa finalis of these decentralized systems – advocating for a decentralized internet and a shift of power to users, rather than creating just another form of a limited liability company. Prospects for further research include the proposal to treat these decentralized organizations as a sui generis construct. It is concluded that regulators should create "strange attractors" by applying the legal construct of Zweckvermögen (purpose-bound patrimony) to smart contracts, allowing these structures to participate in offline legal relationships without destroying their unique nature.

Open access
Digitalization, Law, and Regulation
Blockchain Technology Applications and Security
Energy Law and Policy
Original source
Apr 7, 2026·Zenodo (CERN European Organization for Nuclear Research)
0 cites
Post-Quantum Cryptography in immo.quick Core/Machine Law

Rami Cherri

This paper presents the first formally documented implementation of post-quantum cryptographic infrastructure within a production-grade institutional compliance enforcement system. It addresses a structural vulnerability endemic to the entire regulatory technology industry: every compliance record generated today under RSA or ECC encryption is potentially exposed to "Harvest Now, Decrypt Later" (HNDL) attacks — a documented, operationally active collection strategy confirmed by NSA, CISA, ENISA, and BSI — and will remain so until quantum computers capable of running Shor's algorithm at scale become available, currently projected between 2030 and 2035. Given mandatory regulatory retention periods of 5–30 years under DORA Art.10, GDPR Art.5(e), FinCEN BSA 31 CFR §103.33, Swiss OR Art.958f, and Solvency II, compliance records created today under classical cryptography will still exist — and may be decryptable — within their own legally mandated retention window. This paper documents the complete architectural response: the deployment of CRYSTALS-Kyber-1024 (NIST FIPS 203, 2024) as the primary cryptographic primitive for all compliance ledger operations in the immo.quick Core Machine Law Engine, combined with: A hybrid encryption architecture providing quantum security with full backward compatibility A Merkle Tree Batching scheme reducing post-quantum storage overhead by 99.99% (from 4.67 PB/year to 0.35 TB/year at Tier-1 clearing volumes) A multi-region HSM key hierarchy (EU/CH/US/UK) with Shamir Secret Sharing (3-of-5) and zero-downtime rotation A Zero-Knowledge Proof integration (Groth16, PLONK, Cairo zk-STARK) that resolves the structural contradiction between GDPR Art.17 erasure rights and immutable ledger requirements — by placing zero personal data on the ledger A crypto-agility policy engine enabling algorithm migration without application code changes or audit trail disruption Complete regulatory compliance mappings to DORA, GDPR, BSI TR-02102-1, and NIST FIPS 203 The immo.quick Core platform is presented as the first operational implementation of this architecture across fourteen regulatory frameworks and five institutional sectors (Real Estate, Banking, Insurance, Government, Cloud/FinTech). This paper is a standalone technical specification and supplements the immo.quick Core architecture series (DOI: 10.5281/zenodo.19301212 through 10.5281/zenodo.19457223). It provides the first focused, formally structured academic documentation of CRYSTALS-Kyber-1024 deployment within a deterministic gate enforcement environment with hardware TEE attestation and bi-temporal legal state management. The central argument: Post-Quantum cryptography is not a feature request for 2030. It is a structural prerequisite for any compliance system intended to produce legally defensible evidence chains beyond the quantum threat horizon. The architecture to achieve this exists, is formally specified, and is operationally deployed.

Open access
Blockchain Technology Applications and Security
Digitalization, Law, and Regulation
Cryptography and Data Security
Original source
Apr 2, 2026·Zenodo (CERN European Organization for Nuclear Research)
0 cites
Age Verification Without Surveillance on AI-Driven Social Media: How Purpose-Bound Cryptography Resolves the Online Safety Paradox

Sangam Das

About this paper This paper argues that the conflict between online protection and privacy is not inevitable. The real problem is that most current systems wrongly treat compliance and identity as the same thing. The proposed VI + CJT framework separates them. It allows platforms to receive only the minimum lawful compliance result they need — for example, whether a user falls below the relevant legal age threshold — without learning the child’s name, date of birth, address, biometric profile, or broader identity. In that sense, the paper’s central theme is age verification without surveillance through purpose-bound cryptographic enforcement. How AI Makes the Problem Worse AI makes the children’s online safety problem more serious in three distinct ways. First, it changes exposure from passive to active. Harmful material is no longer merely available on a platform; recommendation and optimisation systems can identify vulnerable users, rank harmful content more aggressively for them, and progressively amplify it based on engagement signals. In that environment, a child is not simply finding harmful content — the system is learning from the child and serving more of it. Second, AI makes weak age-verification methods more dangerous. A false self-declared age is no longer just a wrong entry in a sign-up form. Once accepted, it becomes operational input for recommendation, advertising, and behavioural optimisation systems, which then treat the child as an adult user profile. This means the error is not static; it is continuously acted upon by AI systems that optimise for attention and engagement rather than child protection. Third, AI encourages platforms to solve the problem through more surveillance. In practice, this often means AI-based age estimation using faces, voices, or behavioural patterns. But this approach creates a new harm while claiming to solve another one: it turns child protection into biometric and behavioural monitoring, and can generate datasets that may later be reused for additional profiling or model training. In other words, AI can make age assurance both more intrusive and less accountable. A further difficulty is that AI systems are often opaque even to their operators. As your draft correctly notes, policy rules alone may not be enough, because platforms may not reliably know how their own recommendation systems are treating minors in practice. This is why the problem is not only one of age verification, but also one of enforceable control over AI behaviour. That is precisely why the VI + CJT model matters. It does not ask AI systems to infer age or interpret law for themselves. Instead, it provides a minimal, authoritative compliance signal and machine-readable constraints that can limit recommendation, advertising, and profiling behaviour toward minors without exposing identity. Current Solutions Self-declaration is easily bypassed. A child can simply enter a false age, and the platform’s AI systems then treat that false declaration as valid input for recommendation, targeting, and optimisation. Identity-linked verification creates major privacy risks. When age assurance depends on sharing civil identity information with commercial platforms, the result is unnecessary exposure of family and child data to entities with strong incentives to collect, retain, and monetise it. AI-based age estimation introduces biometric surveillance. Estimating age from face, voice, or behaviour may appear convenient, but it creates new harms by collecting sensitive personal and biometric data as a side effect of child protection. Current systems collapse compliance into identity. What platforms usually need is not the full identity of the user, but only the legally relevant compliance fact. Existing approaches fail because they demand far more data than is necessary for that purpose. Policy rules alone are not enough in AI-driven environments. Even where legal obligations exist, platforms may not reliably translate them into enforceable constraints on opaque recommendation and engagement systems. As a result, compliance may remain declaratory rather than technically enforced. Proposed Solution Use VI + CJT as a purpose-bound cryptographic layer. The framework converts verified civil identity held by trusted authorities into a minimal compliance credential that reveals only the relevant age-threshold result for the applicable jurisdiction. Avoid disclosure of identity data. The credential contains no name, no full date of birth, no address, and no biometric data. Each credential uses a fresh random identifier, making it unlinkable across sessions. Keep the credential under user control. The credential is stored on the user’s device in secure hardware rather than on platform servers, reducing centralised exposure and retention risks. Use zero-knowledge proof for age compliance. When access is requested, the platform receives only a yes-or-no compliance result, without learning the underlying identity attributes or credential contents. Encode law into machine-readable CJTs. The Compliance Jurisdiction Token expresses the applicable legal rules, including jurisdiction-specific age thresholds and AI-related restrictions such as limits on engagement optimisation, advertising targeting, or behavioural profiling for minors. Constrain platform AI without making it identity-aware. Recommendation engines and other AI systems receive only the compliance signal necessary to adjust behaviour for minors, allowing them to become jurisdiction-aware and age-aware without becoming identity-aware. Replace probabilistic AI age estimation with authoritative attestation. Instead of guessing age through opaque models, the framework provides deterministic, government-signed, legally relevant compliance proof. Enable auditability and cross-border enforcement. Regulators can test whether platforms respond correctly to compliance signals, and the applicable child-protection rule can follow the user across borders through jurisdiction-bound credentials and tokens. Core Message The paper’s core message is simple: platforms do not need to know who a child is in order to know what protections the law requires. By separating compliance from identity, the VI + CJT model offers a path to child safety that is enforceable, privacy-preserving, and better suited to AI-driven digital environments.

Open access
2 source records
Ethics and Social Impacts of AI
Privacy, Security, and Data Protection
Digitalization, Law, and Regulation
Original source
Feb 1, 2026·Zenodo (CERN European Organization for Nuclear Research)
0 cites
Privacy-Enhancing-Technologies für die Informationssicherheit in Edge-Cloud-Anwendungen

Nils Frederic Jahnke, Sarah Schimankowitz

Edge-Cloud-Systeme ermöglichen Anwendungen, die auf Basis von Daten intelligenter Objekte und Infrastrukturen wirtschaftliche Mehrwerte schaffen und gesellschaftliche Herausforderungen adressieren. Dies bedarf häufig eines Teilens von Daten mit Partnern in etablierten Wertschöpfungsnetzwerken oder entlang des Edge-Cloud-Kontinuums. Eine fundamentale Anforderung ist dabei die Sicherstellung des Schutzes sensibler betrieblicher und personenbezogener Informationen. Während die lokale Datenverarbeitung an der Edge ein grundlegendes Maß an Datenschutz und Informationssicherheit ermöglicht, reicht ein ausschließlicher Rückgriff auf diese Maßnahme oftmals nicht aus, um diese Anforderungen bei gleichzeitiger Erzielung der Mehrwerte datengetriebener Anwendungen zu erfüllen. Beispielsweise besteht häufig die Notwendigkeit, schützenswerte Daten an zentraler Stelle, beispielsweise der Cloud, zu aggregieren, um zu reichhaltigen Erkenntnissen zu gelangen oder die Integrität der verwendeten Daten sicherzustellen. An dieser Stelle rücken Privacy-Enhancing-Technologies (PET) in den Fokus, die Mechanismen umfassen, um Datenschutz, Informationssicherheit und Datensouveränität „by-Design“ in Systemarchitekturen zu integrieren. Bei PET handelt es sich um eine Klasse von individuellen Werkzeugen, die jeweils spezifische Informationssicherheitsanforderungen und -risiken in Edge-Cloud-Systemen adressieren können. Für Praktiker ergibt sich die Herausforderung, auf Basis der spezifischen Bedarfe ihrer Anwendungen und der verfügbaren PET-Werkzeuge passende PET-Strategien zu entwickeln, die eine Realisierung der Edge-Cloud-Anwendung unter Berücksichtigung der Anforderungen und Risiken für die Informationssicherheit ermöglichen. Diese Orientierungshilfe unterstützt Praktiker bei der Entwicklung eigener PET-Strategien für Edge-Cloud-Anwendungen. Sie bietet Hilfestellungen bei der Identifikation von Informationssicherheitsanforderungen und -risiken, der Auswahl passender PET-Werkzeuge und deren Integration in das Anwendungsdesign. Zentrales Element der Studie ist hierbei die Analyse von PET-Werkzeugen in Edge-Cloud-Anwendungskontexten. Die Orientierungshilfe zeigt, wie PET-Werkzeuge zur Umsetzung von Informationssicherheit beitragen können, welche Voraussetzungen für ihren Einsatz in spezifischen Szenarien geschaffen werden müssen und welche Implikationen sich aus dem Praxiseinsatz der PET-Werkzeuge ergeben. Dazu beruft sich die Orientierungshilfe auf die Erkenntnisse der Early-Adopter von Edge-Cloud-Systemen und PET aus den Projekten des Technologieprogramms „Edge Datenwirtschaft“ des Bundesministeriums für Forschung, Technologie und Raumfahrt (BMFTR). Die Inhalte dieser Orientierungshilfe adressieren insbesondere Systemarchitektinnen und -architekten und Datenschutzbeauftragte, die Datenverarbeitungsprozesse in Edge-Cloud-Systemen datenschutzkonform gestalten müssen. Ausgehend von der Darstellung möglicher Risiken wie physischen Angriffen und Cyberangriffen, unsicherer Datenhoheit, Insiderbedrohungen und Fehlkonfigurationen sowie Anforderungen wie Datenminimierung, Integrität, Zweckbindung und die Verhinderung von Datenabflüssen „by-Design“ in Edge-Cloud-Anwendungen analysiert diese Orientierungshilfe fünf konkrete PET-Werkzeuge in praxisnahen Anwendungsszenarien: § Hardware-Schlüssel für die sichere Authentifizierung ohne personenbezogene Daten in der Lebensmittelwirtschaft, § Federated-Learning für kollaboratives KI-Training ohne Rohdatenweitergabe in der industriellen Fertigung, § Compute-to-Data zur Ausführung von Analysen in der Umgebung des Dateneigentümers in der industriellen Fertigung, § Zero-Knowledge-Proofs für datenbasierte Nachweise ohne Offenlegung sensibler Daten in der Energiewirtschaft, § Trusted-Execution-Environments für vertrauliche Berechnungen in isolierten Hardware-Umgebungen in der Energiewirtschaft. Zudem präsentiert die Studie vier Handlungsfelder und zugehörige Handlungsempfehlungen für den erfolgreichen Einsatz von PET-Werkzeugen in Edge-Cloud-Anwendungen: 1) Aufbau vertrauenswürdiger Partnerökosysteme und Schaffung notwendiger Anreizmechanismen, 2) Schaffung betrieblicher Voraussetzungen für den PET-Einsatz inklusive Schulung und Akzeptanzförderung, 3) Sicherstellung technischer Validität und Integrationsfähigkeit der PET in den Anwendungskontext, 4) Gewährleistung regulatorischer Konformität der PET-gestützten Edge-Cloud-Anwendung. Im Zuge der steigenden Relevanz von Edge-Cloud-Systemen und dem Teilen von Daten zur Generierung von Datenwertschöpfung bei mindestens gleichbleibenden Anforderungen an Datenschutz und Informationssicherheit wird der Einsatz von PET zu einem entscheidenden Erfolgsfaktor. PET ermöglichen nicht nur die Einhaltung regulatorischer Vorgaben, sondern schaffen die Grundlage für vertrauensbasierte Kooperationen in komplexen Edge-Cloud-Ökosystemen. Unternehmen, die zukünftig gemeinsam datengetriebene Wertschöpfung betreiben wollen, sollten sich aktiv mit PET beschäftigen.

Open access
2 source records
Privacy, Security, and Data Protection
Digitalization, Law, and Regulation
Cloud Data Security Solutions
Original source
Dec 23, 2025·Law Economics and Society
0 cites
The Vanishing Ownership: Reconstructing the First Sale Doctrine and Digital Exhaustion in the Age of Cloud Computing and NFTs

Luohaoran Zhu

In the digital era, consumers increasingly encounter an illusion of ownership when purchasing copyrighted works such as video games, digital music albums, or e-books. Under dominant licensing models exacerbated by cloud computing and subscription services users acquire mere access rights rather than true property interests, rendering their acquisitions vulnerable to platform shutdowns, account terminations, or service discontinuations. This phenomenon marks the “vanishing ownership” of digital content, eroding the traditional balance struck by the First Sale Doctrine in U.S. copyright law and the Exhaustion Principle in EU law. This article examines the failure of these doctrines to adapt to digital distribution, as evidenced by landmark cases. It further explores emerging challenges and opportunities posed by cloud-based services and Non-Fungible Tokens (NFTs), which promise transferable digital ownership but raise unresolved questions about copyright exhaustion, resale rights, and potential disruptions to rightholders’ licensing revenues. Through comparative legal analysis and doctrinal critique, this study argues for reconstructing the First Sale Doctrine and digital exhaustion to restore consumer property rights. It proposes hybrid legislative and technological solutions, including limited exhaustion for permanently downloaded works, mandatory resale mechanisms, and blockchain-enabled forward-and-delete protocols.

Open access
Intellectual Property Law
Copyright and Intellectual Property
Digitalization, Law, and Regulation
Original source
Oct 4, 2025·ENLIGHTEN (Jurnal Bimbingan dan Konseling Islam)
0 cites
Intellectual property law

Amy Thomas, Maria-Jose Schmidt-Kessen, Simon Karlin

This chapter explores the role of intellectual property (IP) in the commercialisation and regulation of sports and eSports, focussing on copyright, trade marks, and image rights. It outlines how these rights enable key stakeholders - such as sports organisers, players and fans - to assert control over various aspects of sporting content and performances. Though comparative analysis of legal frameworks in Germany, the EU, and the UK, the chapter highlights significant jurisdictional differences in the protection and interpretation of these rights, particularly in relation to the use of player likenesses and ownership of performance outputs. The chapter also investigates how new technologies, including generative artificial intelligence (AI) and Non-Fungible Token (NFTs), might complicate rights-based relationships in both fields. A central theme is the imbalance of rights and bargaining power among stakeholders, especially players, whose creative contributions are often excluded from IP protection. In doing so, the chapter raises normative questions and critical reflections on fairness, enforcement, and contractual practices in the regulation of sports and eSports content.

Open access
Digitalization, Law, and Regulation
Digital Games and Media
Law, AI, and Intellectual Property
Original source
May 2, 2025·Studies in computational intelligence
0 cites
Intelligent Product 3.0: Decentralised AI Agents and Web3 Intelligence Standards

Alex Wong, Duncan McFarlane, Charlotte Ellarby, M.B. Lee · 5 authors

Twenty-five years ago, the specification of the Intelligent Product was established, envisaging real-time connectivity that not only enables products to gather accurate data about themselves but also allows them to assess and influence their own destiny. Early work by the Auto-ID project focused on creating a single, open-standard repository for storing and retrieving product information, laying a foundation for scalable connectivity. A decade later, the approach was revisited in light of low-cost RFID systems that promised a low-cost link between physical goods and networked information environments. Since then, advances in blockchain, Web3, and artificial intelligence have introduced unprecedented levels of resilience, consensus, and autonomy. By leveraging decentralised identity, blockchain-based product information and history, and intelligent AI-to-AI collaboration, this paper examines these developments and outlines a new specification for the Intelligent Product 3.0, illustrating how decentralised and AI-driven capabilities facilitate seamless interaction between physical AI and everyday products.

Open access
2 source records
Ethics and Social Impacts of AI
Multi-Agent Systems and Negotiation
Digitalization, Law, and Regulation
Original source
Jan 1, 2025·University of Thessaly Institutional Repository (University of Thessaly)
0 cites
Υποστήριξη αποκεντρωμένης ομόσπονδης μάθησης μέσω Pos Blockchains

Μπάλλα, Αλέξανδρος Κ., Μπάλλα, Αλέξανδρος Κ.

In the case of Federated Learning (FL) there's a problem.Most existing systems require a central coordinator or permissioned ledgers, restricting the transparency of the data and leaving the prevention of Sybil attacks in a grey area.We have addressed these issues by using a permissionless Proof-of-Stake (PoS) blockchain to coordinate FL, and making it difficult for Sybil attacks to be carried out by putting model lists and updates directly onto the blockchain.Large amounts of data are instead stored offchain, using InterPlanetary File System (IPFS) which takes care of the problem of storage space.Our system has a training process that is split into rounds, with clients updating a shared model locally, sending out IPFS content identifiers to the network and a designated 'lister' pooling the updates and publishing the new global model.The idea is that the blockchain would be based on Proof of Stake with longest chain, highest stake finality, but our prototype mimics this with a tiny light-weight proof-of-stake mechanism.

Open access
Blockchain Technology Applications and Security
European Monetary and Fiscal Policies
Digitalization, Law, and Regulation
Original source
Oct 7, 2024·Journal of Technology and Systems
1 cites
Role of Blockchain Technology in Enhancing Data Security in Germany

Felix Meyer

Purpose: To aim of the study was to analyze the role of blockchain technology in enhancing data security. Methodology: This study adopted a desk methodology. A desk study research design is commonly known as secondary data collection. This is basically collecting data from existing resources preferably because of its low cost advantage as compared to a field research. Our current study looked into already published studies and reports as the data was easily accessed through online journals and libraries. Findings: Blockchain technology is increasingly recognized in Germany for its potential to enhance data security across various sectors. Its decentralized and immutable nature significantly reduces the risks of data tampering and unauthorized access, thereby fostering trust among users. In industries such as finance, healthcare, and supply chain management, blockchain provides transparent and secure methods for recording transactions and managing sensitive information. Additionally, German regulatory frameworks are evolving to accommodate blockchain applications, promoting innovation while ensuring compliance with data protection laws like the GDPR. Unique Contribution to Theory, Practice and Policy: Technological acceptance model (TAM), diffusion of innovations (DOI) & resource-based View (RBV) may be used to anchor future studies on the role of blockchain technology in enhancing data security. Organizations should implement pilot projects to assess the effectiveness of blockchain in enhancing data security in their specific contexts. Policymakers should develop clear regulatory frameworks to support the adoption of blockchain technology across sectors.

Open access
Blockchain Technology Applications and Security
Digitalization, Law, and Regulation
Privacy, Security, and Data Protection
Original source
Sep 9, 2024·International Review of Law Computers & Technology
4 cites
Regulatory options for integrating zero-knowledge proofs into the European Digital Identity Wallet

R. Fernández

On 30 April, Regulation (EU) 2024/1183 amending Regulation (EU) 910/2014 as regards establishing the European Digital Identity Framework, known as eIDAS 2.0, was published in the Official Journal of the European Union. This amendment introduces zero-knowledge proof (ZKP) privacy-enhancing technologies to support two key innovations: the European Digital Identity Wallet (EUDIW) and the electronic attestations of attributes ((Q)EAA). In parallel, the European Digital Identity Wallet Architecture and Reference Framework (EUDIW ARF) provide a common set of standards and best practices for the technical implementation of eIDAS 2.0. This paper analyses how the EUDIW can rely on ZKPs since neither the eIDAS 2.0 Regulation nor the EUDIW ARF does so. We propose a software product regime for the cryptographic derivation of data in a ZKP format through three mutually compatible regulatory options: zero-knowledge issuance by default through the EUDIW, through a software product extension of the EUDIW, or a private standalone wallet. These schemes provide the legal basis for the secure use of ZKPs, ensure effective compliance with the GDPR, and contribute to the debate on the value that electronic ledgers introduced by eIDAS 2.0 bring to digital identity.

Open access
Blockchain Technology Applications and Security
Privacy, Security, and Data Protection
Digitalization, Law, and Regulation
Original source
Sep 1, 2024·E-Periodica
0 cites
Der Staat kann Bitcoin nicht stoppen

Julian Liniger

No abstract is available for this record.

Open access
Consumer behavior in food and health
Blockchain Technology Applications and Security
Digitalization, Law, and Regulation
Original source
Jan 1, 2024·MOnAMi (Hochschule Mittweida Hochschulbibliothek)
0 cites
Anonymity on the Bitcoin Network : a comprehensive examination of entity and transaction tracking techniques on the Bitcoin blockchain

Lukas Schöne

Das Ziel dieser Bachelorarbeit ist die Darstellung von Techniken zur Verfolgung von Transaktionen und Entitäten auf der Bitcoin Blockchain. Die zugrundeliegende Forschungsfrage lautet wie folgt: Welche Aussagekraft und Grenzen haben Heuristiken und Analysemethoden zur Nachverfolgung von Bitcointransaktionen und wie wirken sie sich auf deren Anonymität aus? Zur Beantwortung der Forschungsfrage wird eine Literaturrecherche durchgeführt. Die Funktionsweise der Methoden wird dargestellt, Stärken und Schwächen der Methoden werden aufgezeigt und gegebenenfalls Verbesserungsvorschläge gemacht. Es zeigt sich, dass die Anonymität des Bitcoin-Systems aus verschiedenen Richtungen eingeschränkt werden kann. Die vorgestellten Analysemethoden haben jedoch ihre Grenzen und können die Anonymität des Bitcoinsystems nicht endgültig überwinden. Letztendlich bleibt festzuhalten, dass die Anonymität eines Nutzers von seiner Bitcoin-Nutzung und der Nutzung seines Umfelds abhängt. Ein bewusster, anonymer Umgang mit der Kryptowährung ist die Grundlage für eine solide Privatsphäre.

Open access
Blockchain Technology Applications and Security
Digitalization, Law, and Regulation
Digital Platforms and Economics
Original source
Jan 1, 2024·SSRN Electronic Journal
0 cites
Evaluation of the Incompatibility of the Distributed Ledger (DLT) with the General Data Protection Regulation (GDPR): How Can the DLT Decentralisation and Immutability Fit with the GDPR Rules and Personal Data Rights?

Abdullah Husain

Distributed Ledger Technology (DLT) has been contentious since the emergence of blockchain in 2008. Security and compatibility with the personal data rights in the EU General Data Protection Regulation (GDPR) are among the controversies that have erupted. Thus, various studies have concluded that the decentralisation and immutability of DLT conflict with personal data rights. This dissertation illustrates that the DLT can be compatible with the GDPR personal data rights.

Open access
2 source records
Privacy-Preserving Technologies in Data
Privacy, Security, and Data Protection
Digitalization, Law, and Regulation
Original source
Nov 7, 2023·Blockchain and Private International Law
2 cites
Conflict of Laws and Tokens in Swiss Private International Law

Pascal Favrod-Coune, Kévin Belet

Switzerland figures among one of the first jurisdictions to include distributed ledger technologies (DLTs) in its legal framework through the recently adopted federal act commonly referred to as the DLT Act. In order to address the complex issue of determining the law applicable to tokens stored on a DLT, the DLT Act amended on 1 February 2021 the Swiss Private International Law Act (PILA), which now provides for conflict-of-laws rules that notably applies to tokens that embed a claim. This article aims to explain the context in which this amendment took place by providing an overview of the notion of tokens and presenting the main purposes of the DLT Act. It then presents and discusses the solutions chosen by the Swiss lawmaker, which follow the general principles that also generally prevail for other types of rights. As a result, the issuer of a token benefits from considerable freedom to determine the governing law of a tokenised claim. Absent a choice of law, the PILA sets forth subsidiary solutions based on the seat and the habitual residence of the issuer.

Open access
Law, AI, and Intellectual Property
Digitalization, Law, and Regulation
European and International Contract Law
Original source
Nov 7, 2023·İnönü Üniversitesi Hukuk Fakültesi Dergisi
2 cites
MEDENÎ USÛL HUKUKU AÇISINDAN NFT’LERİN DELİL OLARAK DEĞERLENDİRİLMESİ

Mine Akkan, Ekin Cansu KAMACI

Teknolojinin gelişimiyle birlikte kişiler arasındaki etkileşim hızlanmıştır. Özellikle fiziki ortamda yapılabilen hukuki işlemlerin dijitalleştirilmesiyle bu etkileşim saniyeler içerisinde gerçekleştirilebilmektedir. Ancak dijitalleşmeyle beraber yapılan işlemlerin güvenliğine ilişkin tereddütler de oluşmaktadır. Bu tereddütlerin ortaya çıkmasıyla birlikte elektronik ortamdaki belgelerin güvenirliğine ilişkin olarak elektronik imzaya yönelik düzenlemeler yapılmıştır. Bunun sonucunda, güvenli elektronik imzalı olarak düzenlenen belgelerin de el yazısıyla imzalı belgeler gibi güvenilir olabileceği ortaya konulmuştur (EİK m.5/1, TBK m.14/2). Bununla birlikte teknoloji ve dijitalleşme her geçen gün geliştiğinden güvenilir dijitalleşmeye ilişkin olarak blokzincir teknolojisi ortaya çıkmıştır. Bu teknolojinin bir örneğini de NFT’ler (Non-fungible tokens) oluşturmaktadır. NFT’ler değiştirilemeyen dijital varlıklardır. Başka bir ifadeyle NFT’ler gayri maddi varlık olarak nitelendirilmektedir. Bu varlıklarla ilgili telif hakkına, alınıp satılmasına ilişkin bazı uyuşmazlıkların ortaya çıkması söz konusu olabilir. Böyle bir durumda NFT’lerin hukuk yargılaması açısından senet niteliğinde olup olmadığının belirlenmesi önemlidir. Medenî usûl hukuku anlamında NFT’lerin hukuki nitelendirmesinin ispat hukuku açısından değerlendirilmesi gereklidir. Dolayısıyla bu çalışmada, ispat hukuku açısından NFT’lerin hukuki niteliği belirlenmeye çalışılmıştır.

Open access
Blockchain Technology Applications and Security
Digitalization, Law, and Regulation
Legal Issues in Turkey
Original source
Nov 5, 2023·DergiPark (Istanbul University)
1 cites
Distributed Ledgers And Their Implications In Information Technology Law

Necla SÜMER ÖZDEMİR

Electronic communications security has gained a considerable significance in parallel with the increasing usage of the information and communication technologies. Being one of these technologies, distributed ledger technologies (DLTs), more specifically the blockchains, are regarded as a revolution which propose a new era, called “blockchain of things” following the era of “internet of things”. While DLTs promoted the business functionalities and compliance with information security obligations, it has also some vulnerabilities. By the DLTs the cost of intermediaries could easily be eliminated while at the same time assets/transactions are recorded and secured digitally. Nevertheless, this has simultaneously resulted in decentralised power/anarchy. Besides, majority of the studies focus on the contributions of the DLTs. This article aims to concentrate on the security aspect of this technology, which is often disregarded. Thus, after addressing fundamental characteristics of DLTs, it will unfold their tools and advantages in terms of compliance to information security obligations, then, exercise its vulnerabilities and related risks with respect to information security legal frameworks from over the world.

Open access
Privacy, Security, and Data Protection
Digital Platforms and Economics
Digitalization, Law, and Regulation
Original source
Jun 30, 2023·Bratislava Law Review
5 cites
Smart Contract – Problems with Taking Evidence in Polish Civil Proceedings in the Light of European Regulations

Berenika Kaczmarek-Templin

In recent years, we have observed an amazing development of new technologies; many contracts come into effect without paper documents being signed. New possibilities have appeared, for example, the smart contract (also known as the digital contract or blockchain). In some cases, there is a dispute between the participants in the smart contract, e.g., as to the manner of its implementation. A court case might be necessary to resolve the dispute. As in any dispute, evidence proceedings will have to be conducted. The smart contract should appear as a proof. However, due to its unusual nature and complicated status under substantive law, as well as the fact that it is produced by new technological solutions, it is essential to determine its admissibility as evidence. The procedural law regulates in detail only traditional evidence. The smart contract has not been regulated in procedural regulations, therefore, its status needs to be established in the context of the existing documentary evidence. This article aims to contribute to the discussion on the status of smart contracts in civil court proceedings. Primarily, it should be determined whether the smart contract can be considered a document within the meaning of procedural law. In the Polish legal system, the document is defined as an information carrier whose content can be read. Accordingly, the smart contract meets the definition criteria. However, in the absence of provisions governing the manner of taking documentary evidence, it may be difficult to actually take such evidence and establish its value. The article also draws attention to Regulation (EU) No 910/2014 of the European Parliament and of the Council on electronic identification and trust services for electronic transactions in the internal market and repealing Directive 1999/93 / EC. Its art. 46 refers to the legal effectiveness of electronic documents and prohibits discrimination against evidence from such documents, which should undoubtedly contribute to the acceptance of a smart contract as evidence in civil proceedings.

Open access
Blockchain Technology Applications and Security
European and International Contract Law
Digitalization, Law, and Regulation
Original source
May 9, 2023·Zenodo (CERN European Organization for Nuclear Research)
0 cites
Bitcoin - Wie Social Media Privatanlegende in ihrem Handeln beeinflussen

Thierry Berger, Bernhard Schneider

Bitcoin ist, plakativ ausgedrückt, digitales Gold: Das Angebot ist fixiert und somit das härtere monetäre Gut als klassische Fiatwährungen. Der Wert gegenüber dem USD stieg zwischen 2011 und 2021 um durchschnittlich 230 % pro Jahr, was es zur erfolgreichsten Anlageklasse der Welt macht. Erfolg zieht Privatinvestorinnen und -investoren an. Diese informieren sich oftmals über Social-Media-Kanäle wie Twitter über Trends und lassen sich vom herrschenden Sentiment beeinflussen. Die Eintrittsbarrieren sind tief. Jeder hat schnell ein Bitcoin-Wallet erstellt und ist Teil der Bewegung. Wenn ein Preis ohne fundamentale Ursache stark steigt, erhöht sich dadurch der ebenfalls nicht fundamental bedingte Spielraum nach unten. Die hohe Volatilität ist ein Merkmal des noch jungen Marktes. Die Mehrheit der Privatinvestorinnen und -investoren kann mit diesem Druck nicht umgehen. Viele verlassen den Markt bereits nach wenigen Wochen oder Monaten in Panik, wenn ein satter Verlust anstelle eines hohen Gewinns eingetreten ist, um das übriggebliebene Investment vor einem Totalverlust in Sicherheit zu bringen. Mithilfe von Fachpersoneninterviews werden in der vorliegenden Arbeit theoretische Aspekte mit Erfahrungen aus der Praxis ergänzt, um einen ganzheitlichen Blick auf die Wechselwirkung des Verhaltens von Markt und Privatanlegenden zu erhalten. Indem verlässliche Twitter-Accounts mit Mehrwert gesucht werden, sich nicht auf eine einzige Informationsquelle verlassen sowie eine klare und langfristige Strategie verfolgt wird und das Investment auf fundierten Kenntnissen gründet, kann eine Neuinvestition in diesem Markt bestehen, denn der Markt geht mittel- und langfristig nach oben.

Open access
Digitalization, Law, and Regulation
Digital Innovation in Industries
Privacy, Security, and Data Protection
Original source
May 4, 2023·Software and Systems Modeling
15 cites
Automated generation of smart contract code from legal contract specifications with Symboleo2SC

Aidin Rasti, Amal Ahmed Anda, Sofana Alfuhaid, Alireza Parvizimosaed · 8 authors

Complementary materials for the paper that extends the conference paper : "Symboleo2SC: From Legal Contract Specifications to Smart Contracts" <code>symboleo-js-core</code> includes the implementation of the ontology of Symboleo. <code>Symboleo2SC-demo</code> includes the five evaluated Symboleo contracts, their generated smart contracts, and their unit tests.

Open access
3 source records
Blockchain Technology Applications and Security
Auction Theory and Applications
Digitalization, Law, and Regulation
Original source
Mar 1, 2023·Journal of Intellectual Property Law & Practice
0 cites
Round-up of European enforcement case law in 2022

Carina Gommers, Willem Leppink, Marius Schneider

Whilst new challenges awaited us in 2022, with the war in Ukraine raging on and the economic downturn and high inflation, practitioners are still and rightfully so continuing to focus on IP Rights (IPRs). The most recent report on IP-intensive industries has shown again how important IPRs are for the economy and for the job market.1 Specifically regarding hybrid working, hybrid conferences and new technologies continued to present challenges in 2022 and, as far as IP is concerned, a specific focus was on non-fungible tokens and the Metaverse. To be able to embrace the future with its continued challenges, learning from the past is a must and, with that, this article aspires to be a helpful guide. The authors start by summarizing the relevant Court of Justice of the European Union (CJEU) judgments interpreting the Enforcement Directive2 before moving on to CJEU decisions pertaining to substantive IPRs. Part 3 covers the relevant decisions of national courts.

Open access
European Criminal Justice and Data Protection
Legal and Policy Issues
Digitalization, Law, and Regulation
Original source