Ghostor: Toward a Secure Data-Sharing System from Decentralized Trust
Yuncong Hu, Sam Kumar, Raluca Ada Popa
Abstract
Data-sharing systems are often used to store sensitive data. Both academia and industry have proposed numerous solutions to protect the user privacy and data integrity from a compromised server. Practical state-of-the-art solutions, however, use weak threat models based on centralized trust-they assume that part of the server will remain uncompromised, or that the adversary will not perform active attacks. We propose Ghostor, a data-sharing system that, using only decentralized trust, (1) hides user identities from the server, and (2) allows users to detect server-side integrity violations. To achieve (1), Ghostor avoids keeping any per-user state at the server, requiring us to redesign the system to avoid common paradigms like per-user authentication and user-specific mailboxes. To achieve (2), Ghostor develops a technique called verifiable anonymous history. Ghostor leverages a blockchain rarely, publishing only a single hash to the blockchain for the entire system once every epoch. We measured that Ghostor incurs a 4-5x throughput overhead compared to an insecure baseline. Although significant, Ghostor's overhead may be worth it for security-and privacy-sensitive applications.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 8104122e-01c9-42d0-9799-ea694e4f12adCited by top-tier papers11
- DORY: An Encrypted Search System with Distributed TrustEmma Dauterman, Eric Feng, Ellen Luo, Raluca Ada Popa et al.OSDI 2020 · 77 citations
- Merkle2: A Low-Latency Transparency Log SystemYuncong Hu, Kian Hooshmand, Harika Kalidhindi, Seung Jin Yang et al.S&P 2021 · 51 citations
- FileDES: A Secure, Scalable and Succinct Decentralized Encrypted Storage NetworkMinghui Xu, Jiahao Zhang, Hechuan Guo, Xiuzhen Cheng et al.INFOCOM 2024 · 21 citations
- Vizard: A Metadata-hiding Data Analytic System with End-to-End Policy ControlsChengjun Cai, Yichen Zang, Cong Wang, Xiaohua Jia et al.CCS 2022 · 12 citations
- MUSES: Efficient Multi-User Searchable Encrypted DatabaseTung Le, Rouzbeh Behnia, Jorge Guajardo, Thang HoangUSENIX Security 2024 · 11 citations
Builds on7
- Foreshadow: Extracting the Keys to the Intel SGX Kingdom with Transient Out-of-Order ExecutionJo Van Bulck, Marina Minkin, Ofir Weisse, Daniel Genkin et al.USENIX Security 2018 · 1,175 citations
- Catena: Efficient Non-equivocation via BitcoinAlin Tomescu, Srinivas DevadasS&P 2017 · 144 citations
- Breaking Web Applications Built On Top of Encrypted DataPaul Grubbs, Richard McPherson, Muhammad Naveed, Thomas Ristenpart et al.CCS 2016 · 106 citations
- TaoStore: Overcoming Asynchronicity in Oblivious Data StorageCetin Sahin, Victor Zakhary, Amr El Abbadi, Huijia Lin et al.S&P 2016 · 98 citations
- On the Practicality of Cryptographically Enforcing Dynamic Access Control Policies in the CloudWilliam C. Garrison III, Adam Shull, Steven A. Myers, Adam J. LeeS&P 2016 · 77 citations
Related papers
- Bringing Decentralized Search to Decentralized ServicesMingyu Li, Jinhao Zhu, Tianxu Zhang, Cheng Tan et al.OSDI 2021 · 28 citations
- Efficient Storage Integrity in Adversarial SettingsQuinn Burke, Ryan Sheatsley, Yohan Beugin, Eric Pauley et al.S&P 2025
- FalconDB: Blockchain-based Collaborative DatabaseYanqing Peng, Min Du, Feifei Li, Raymond Cheng et al.SIGMOD 2020 · 119 citations
- TLS-N: Non-repudiation over TLS Enablign Ubiquitous Content SigningHubert Ritzdorf, Karl Wüst, Arthur Gervais, Guillaume Felley et al.NDSS 2018 · 32 citations
- Consensual and Privacy-Preserving Sharing of Multi-Subject and Interdependent DataAlexandra-Mihaela Olteanu, Kévin Huguenin, Italo Dacosta, Jean-Pierre HubauxNDSS 2018 · 31 citations
