INVISILINE: Invisible Plausibly-Deniable Storage
Sandeep Kiran Pinjala, Bogdan Carbunar, Anrin Chakraborti, Radu Sion
Abstract
Plausibly-deniable (PD) storage systems allow users to securely hide data and plausibly deny its presence when challenged by adversaries who coerce them to provide encryption keys and passwords. However, PD systems need specialized software that renders them detectable by suspicious adversaries questioning the very use of a PD system. To address this fundamental problem, we introduce and formally define the notion of plausible invisibility, preventing adversaries from determining whether a PD system was used in the first place. We develop INVISILINE, a plausibly invisible system resilient against multi-snapshot adversaries that can access the device multiple times. To remain invisible, INVISILINE uses a data layout and encoding that is compatible with the Linux dmcrypt disk encryption subsystem, and stores hidden data in the initialization vectors used by dm-crypt to encrypt public data. INVISILINE ensures that any disk changes that result from changes to the hidden data between adversary snapshots, can be plausibly explained using changes to public data resulting from regular use of dm-crypt. In the presence of adversaries, INVISILINE enables users to access all and only the public data using only dm-crypt. INVISILINE can securely and invisibly hide 19GB on a 1TB disk with no impact on public data I/O, and an average of 4.5MB/s throughput for writing hidden data.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 25a0dcbb-e1b9-4e2c-8645-0d6bcf4ca6f0Builds on2
Related papers
- Wink: Deniable Secure MessagingAnrin Chakraborti, Darius Suciu, Radu SionUSENIX Security 2023
- DEFTL: Implementing Plausibly Deniable Encryption in Flash Translation LayerShijie Jia, Luning Xia, Bo Chen, Peng LiuCCS 2017 · 44 citations
- Deniable Authentication When Signing Keys LeakSuvradip Chakraborty, Dennis Hofheinz, Ueli Maurer, Guilherme RitoEUROCRYPT 2023 · 10 citations
- Holepunch: Fast, Secure File Deletion with Crash ConsistencyZachary Ratliff, Wittmann Goh, Abe Wieland, James Mickens et al.S&P 2024 · 1 citation
- Timelock Drive: Isolated Time-Based Defense for Storage SystemsJonah Rosenblum, Juechu Dong, Peter Chen, Satish NarayanasamyOSDI 2026
