Finding Safety in Numbers with Secure Allegation Escrows
Venkat Arun, Aniket Kate, Deepak Garg, Peter Druschel, Bobby Bhattacharjee
Abstract
For fear of retribution, the victim of a crime may be willing to report it only if other victims of the same perpetrator also step forward. Common examples include 1) identifying oneself as the victim of sexual harassment, especially by a person in a position of authority or 2) accusing an influential politician, an authoritarian government, or ones own employer of corruption. To handle such situations, legal literature has proposed the concept of an allegation escrow: a neutral third-party that collects allegations anonymously, matches them against each other, and de-anonymizes allegers only after de-anonymity thresholds (in terms of number of co-allegers), pre-specified by the allegers, are reached. An allegation escrow can be realized as a single trusted third party; however, this party must be trusted to keep the identity of the alleger and content of the allegation private. To address this problem, this paper introduces Secure Allegation Escrows (SAE, pronounced "say"). A SAE is a group of parties with independent interests and motives, acting jointly as an escrow for collecting allegations from individuals, matching the allegations, and de-anonymizing the allegations when designated thresholds are reached. By design, SAEs provide a very strong property: No less than a majority of parties constituting a SAE can de-anonymize or disclose the content of an allegation without a sufficient number of matching allegations (even in collusion with any number of other allegers). Once a sufficient number of matching allegations exist, the join escrow discloses the allegation with the allegers' identities. We describe how SAEs can be constructed using a novel authentication protocol and a novel allegation matching and bucketing algorithm, provide formal proofs of the security of our constructions, and evaluate a prototype implementation, demonstrating feasibility in practice.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Cited by top-tier papers2
- PentaGOD: Stepping beyond Traditional GOD with Five PartiesNishat Koti, Varsha Bhat Kukkala, Arpita Patra, Bhavish Raj GopalCCS 2022 · 8 citations
- Secure Account Recovery for a Privacy-Preserving Web ServiceRyan Little, Lucy Qin, Mayank VariaUSENIX Security 2024 · 7 citations
Builds on2
- Cinderella: Turning Shabby X.509 Certificates into Elegant Anonymous Credentials with the Magic of Verifiable ComputationAntoine Delignat-Lavaud, Cédric Fournet, Markulf Kohlweiss, Bryan ParnoS&P 2016 · 83 citations
- Blind Certificate AuthoritiesLiang Wang, Gilad Asharov, Rafael Pass, Thomas Ristenpart et al.S&P 2019 · 16 citations
Related papers
- Shield: Secure Allegation Escrow System with Stronger GuaranteesNishat Koti, Varsha Bhat Kukkala, Arpita Patra, Bhavish Raj GopalWWW 2023 · 1 citation
- I'm In If You're In: Action Escrows as a Design Pattern to Achieve Social Change in Online CommunitiesPranav Khadpe, Lindsay Popowski, Lindy Le, Kyzyl Monteiro et al.CSCW 2026
- Traceable Secret Sharing and ApplicationsVipul Goyal, Yifan Song, Akshayaram SrinivasanCRYPTO 2021 · 29 citations
- Privacy-Preserving BlueprintsMarkulf Kohlweiss, Anna Lysyanskaya, An NguyenEUROCRYPT 2023 · 12 citations
- Conan: Distributed Proofs of Compliance for Anonymous Data CollectionMingxun Zhou, Giulia Fanti, Elaine ShiCCS 2024 · 1 citation
