Security Analysis of Privately Verifiable Privacy Pass
Konrad Hanff, Anja Lehmann, Cavit Özbay
摘要
Privacy Pass is an anonymous authentication protocol which was initially designed by Davidson et al. (PETS'18) to reduce the number of CAPTCHAs that TOR users must solve. It issues single-use authentication tokens with anonymous and unlinkable redemption guarantees. The issuer and verifier of the protocol share a symmetric key, and tokens are privately verifiable. The protocol has sparked interest from both academia and industry, which led to an Internet Engineering Task Force (IETF) standard. While Davidson et al. formally analyzed the original protocol, the IETF standard introduces several changes to their protocol. Thus, the standardized version's formal security remains unexamined. We fill this gap by analyzing the IETF standard's privately verifiable Privacy Pass protocol.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper6
- Anonymous Tokens with Private Metadata BitBen Kreuter, Tancrède Lepoint, Michele Orrù, Mariana RaykovaCRYPTO 2020 · 被引用 35 次
- A Fast and Simple Partially Oblivious PRF, with ApplicationsNirvan Tyagi, Sofía Celi, Thomas Ristenpart, Nick Sullivan 等EUROCRYPT 2022 · 被引用 28 次
- The 2Hash OPRF Framework and Efficient Post-quantum InstantiationsWard Beullens, Lucas Dodgson, Sebastian H. Faller, Julia HesseEUROCRYPT 2025 · 被引用 14 次
- Anonymous Tokens with Stronger Metadata Bit Hiding from Algebraic MACsMelissa Chase, F. Betül Durak, Serge VaudenayCRYPTO 2023 · 被引用 12 次
- Non-Transferable Anonymous Tokens by Secret BindingF. Betül Durak, Laurane Marco, Abdullah Talayhan, Serge VaudenayCCS 2024 · 被引用 6 次
相关 Paper
- On the Security of Rate-limited Privacy PassHien Chu, Khue Do, Lucjan HanzlikCCS 2023 · 被引用 4 次
- No Honor Among Crooks: Non-Transferable Anonymous Tokens from BetrayabilityDavid Kretzler, Yong LiS&P 2026
- Anonymous Tokens with Designated-Reader Metadata BitAisha Tu, Meng Jia, Kun He, Jing Chen 等USENIX Security 2026
- Verifying Indistinguishability of Privacy-Preserving ProtocolsKirby Linvill, Gowtham Kaki, Eric WustrowOOPSLA 2023 · 被引用 2 次
- Revisiting Keyed-Verification Anonymous CredentialsMichele OrrùCCS 2025
