Janus: Safe Biometric Deduplication for Humanitarian Aid Distribution
Kasra Edalatnejad, Wouter Lueks, Justinas Sukaitis, Vincent Graf Narbel, Massimo Marelli, Carmela Troncoso
Abstract
Humanitarian organizations provide aid to people in need. To use their limited budget efficiently, their distribution processes must ensure that legitimate recipients cannot receive more aid than they are entitled to. Thus, it is essential that recipients can register at most once per aid program.Taking the International Committee of the Red Cross’s aid distribution registration process as a use case, we identify the requirements to detect double registration without creating new risks for aid recipients. We then design Janus, which combines privacy-enhancing technologies with biometrics to prevent double registration in a safe manner. Janus does not create plaintext biometric databases and reveals only one bit of information at registration time (whether the user registering is present in the database or not). We implement and evaluate three instantiations of Janus based on secure multiparty computation (SMC) alone, a hybrid of somewhat homomorphic encryption and SMC, and trusted execution environments. We demonstrate that they support the privacy, accuracy, and performance needs of humanitarian organizations. We compare Janus with existing alternatives and show it is the first system that provides the accuracy our scenario requires while providing strong protection.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 365e1f82-a5c9-49d0-9758-bd7d1f8cbe37Cited by top-tier papers1
Ask how each one uses itBuilds on4
- Meltdown: Reading Kernel Memory from User SpaceMoritz Lipp, Michael Schwarz, Daniel Gruss, Thomas Prescher et al.USENIX Security 2018 · 1,456 citations
- Foreshadow: Extracting the Keys to the Intel SGX Kingdom with Transient Out-of-Order ExecutionJo Van Bulck, Marina Minkin, Ofir Weisse, Daniel Genkin et al.USENIX Security 2018 · 1,175 citations
- On Enforcing the Digital Immunity of a Large Humanitarian OrganizationStevens Le Blond, Alejandro Cuevas, Juan Ramón Troncoso-Pastoriza, Philipp Jovanovic et al.S&P 2018 · 23 citations
- Not Yet Another Digital ID: Privacy-Preserving Humanitarian Aid DistributionBoya Wang, Wouter Lueks, Justinas Sukaitis, Vincent Graf Narbel et al.S&P 2023
Related papers
- MPCAuth: Multi-factor Authentication for Distributed-trust SystemsSijun Tan, Weikeng Chen, Ryan Deng, Raluca Ada PopaS&P 2023
- Secure Distributed Sparse Gaussian Process Models Using Multi-Key Homomorphic EncryptionAdil Nawaz, Guopeng Chen, Muhammad Umair Raza, Zahid Iqbal et al.AAAI 2024 · 2 citations
- Janus: Dual-Server Multi-Round Secure Aggregation with Verifiability for Federated LearningLang Pu, Jingjing Gu, Chao Lin, Xinyi HuangICML 2025
- Birds of a Feather Flock Together: How Set Bias Helps to Deanonymize You via Revealed Intersection SizesXiaojie Guo, Ye Han, Zheli Liu, Ding Wang et al.USENIX Security 2022
- Fast Database Joins and PSI for Secret Shared DataPayman Mohassel, Peter Rindal, Mike RosulekCCS 2020 · 42 citations
