Metaverse in general holds a potential future for cyberspace. At the beginning of Web 2.0, it was witnessed that people were signing in with various pseudonyms or 'nyms', risking their online identities by increasing presence of fake accounts leading to difficulty in unique identification for different roles. However, in Web 3.0, the metaverse, a user's identity is tied to their original identity, where risking one poses a significant risk to the other. Therefore, this paper proposes a novel authentication system for securing digital assets, online identity, avatars, and accounts called Metasecure where a unique id for every entity or user to develop a human establishment is essential on a digital platform. The proposed passwordless system provides three layers of security using device attestation, facial recognition and use of physical security keys, security keys, or smartcards in accordance to Fast IDentity Online (FIDO2) specifications. It provides SDKs for authentication on any system including VR/XR glasses, thus ensuring seamlessness in accessing services in the Metaverse.
翻译:在Web 2.0开始时,人们看到人们用各种假名或“nyms”签名,通过增加假账户的存在而冒着在线身份的风险,导致不同角色的独特识别困难。然而,在Web 3.0中,元正反,用户的身份与其原始身份挂钩,其中一种风险对他人构成重大风险。因此,本文件提议建立一个新的认证系统,用于确保数字资产、在线身份、avatars和称为Meta Secure(Meta Secure)的账户,因为每个实体或用户在数字平台上必须有一个独特的身份来开发一个人类建筑。提议的无密码系统提供三层安全,使用设备证明、面部识别和使用实体安全钥匙、安全钥匙或智能卡(FIDO2),根据快速识别在线(FIDO2)规格提供SDK(SDK),用于包括VR/XR眼镜在内的任何系统的认证,从而确保在Metevverse获得服务时无缝。