Lune

EUROCRYPT2020Top-tier venue

Private Aggregation from Fewer Anonymous Messages

Badih Ghazi, Pasin Manurangsi, Rasmus Pagh, Ameya Velingker

2020Year
45Citations
22Top-tier citations

Abstract

Consider the setup where n parties are each given an element minimal amsmath wasysym amsfonts amssymb amsbsy mathrsfs upgreek -69pt documentxix_idocumentxi in the finite field minimal amsmath wasysym amsfonts amssymb amsbsy mathrsfs upgreek -69pt documentFq\mathbb {F}_qdocumentFq and the goal is to compute the sum minimal amsmath wasysym amsfonts amssymb amsbsy mathrsfs upgreek -69pt document∑ixi\sum _i x_idocument∑ixi in a secure fashion and with as little communication as possible. We study this problem in the anonymized model of Ishai et al. (FOCS 2006) where each party may broadcast anonymous messages on an insecure channel. We present a new analysis of the one-round “split and mix” protocol of Ishai et al. In order to achieve the same security parameter, our analysis reduces the required number of messages by a minimal amsmath wasysym amsfonts amssymb amsbsy mathrsfs upgreek -69pt documentΘ(log⁡n)\varTheta (\log n)documentΘ(logn) multiplicative factor. We also prove lower bounds showing that the dependence of the number of messages on the domain size, the number of parties, and the security parameter is essentially tight. Using a reduction of Balle et al. (2019), our improved analysis of the protocol of Ishai et al. yields, in the same model, an minimal amsmath wasysym amsfonts amssymb amsbsy mathrsfs upgreek -69pt document(ε,δ)\left( \varepsilon , \delta \right) documentε,δ-differentially private protocol for aggregation that, for any constant minimal amsmath wasysym amsfonts amssymb amsbsy mathrsfs upgreek -69pt documentε>0\varepsilon > 0documentε>0 and any minimal amsmath wasysym amsfonts amssymb amsbsy mathrsfs upgreek -69pt documentδ=1poly(n)\delta = \frac{1}{\text {poly}(n)}documentδ=1poly(n), incurs only a constant error and requires only a constant number of messages per party. Previously, such a protocol was known only for minimal amsmath wasysym amsfonts amssymb amsbsy mathrsfs upgreek -69pt documentΩ(log⁡n)\varOmega (\log n)documentΩ(logn) messages per party.

Ask about this paper

Your agent reads all of it.

Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.

Questions to start from

Your agent calls

Luneget_paper_fulltext

Ask in Lune

Free to start. No credit card required.

Cited by top-tier papers22

Ask how each one uses it

Builds on4

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines