Digital IDs Are More Dangerous Than Thought
wired.com
wired.com
Digital systems should require auth via public-key crypto rather than global IDs but keys can be correlated too. Whenever possible we should build systems with technical and economic incentives to preserve privacy, but I wish we had better ways to do that.
Didn't see that concept mentioned explicitly, but the article stayed pretty non-technical.
Essentially biometrics represent the same kind of thing, although possibly less secure as you definitely cannot hide your biometrics from other people.
The problem with existing IDs, and biometrics especially, is that they cannot be changed (biometrics definitely can't be, at least not without surgery). Part of the problem (and what makes it particularly powerful in the US) is that there are a number of widely spread IDs where simply knowing the number/id is sufficient evidence that you are that person (still bizarre after more than a decade here). In the event of compromise (if it becomes a powerful, that is pretty much guaranteed) you /must/ be able to change it. In the US you are ostensibly able to change your SSN, but if you do you get royally screwed for a very long time...