Onion Franking: Abuse Reports for Mix-Based Private Messaging
Matthew Gregoire, Margaret Pierce, Saba Eskandarian
摘要
—The fast-paced development and deployment of private messaging applications demands mechanisms to protect against the concomitant potential for abuse. While widely used end-to-end encrypted (E2EE) messaging systems have deployed mechanisms for users to verifiably report abusive messages without compromising the privacy of unreported messages, abuse reporting schemes for systems that additionally protect message metadata are still in their infancy. Existing solutions either focus on a relatively small portion of the design space or incur much higher communication and computation costs than their E2EE brethren. This paper introduces new abuse reporting mechanisms that work for any private messaging system based on onion encryption. This includes low-latency systems that employ heuristic or opportunistic mixing of user traffic, as well as schemes based on mixnets. Along the way, we show that design decisions and abstractions that are well-suited to the E2EE setting may actually impede security and performance improvements in the metadata-hiding setting. We also explore stronger threat models for abuse reporting and moderation not explored in prior work, showing where prior work falls short and how to strengthen both our scheme and others’ – including deployed E2EE messaging platforms – to achieve higher levels of security. We implement a prototype of our scheme and find that it outperforms the best known solutions in this setting by well over an order of magnitude for each step of the message delivery and reporting process, with overheads almost matching those of message franking techniques used by E2EE encrypted messaging apps today.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper1
问问它们各自怎么用它它引用的顶会 Paper9
- The Loopix Anonymity SystemAnia M. Piotrowska, Jamie Hayes, Tariq Elahi, Sebastian Meiser 等USENIX Security 2017 · 被引用 214 次
- XRD: Scalable Messaging System with Cryptographic PrivacyAlbert Kwon, David Lu, Srinivas DevadasNSDI 2020 · 被引用 87 次
- Efficient Schemes for Committing Authenticated EncryptionMihir Bellare, Viet Tung HoangEUROCRYPT 2022 · 被引用 54 次
- Traceback for End-to-End Encrypted MessagingNirvan Tyagi, Ian Miers, Thomas RistenpartCCS 2019 · 被引用 39 次
- Secure Complaint-Enabled Source-Tracking for Encrypted MessagingCharlotte Peale, Saba Eskandarian, Dan BonehCCS 2021 · 被引用 12 次
相关 Paper
- Abuse Reporting for Metadata-Hiding Communication Based on Secret SharingSaba EskandarianUSENIX Security 2024 · 被引用 9 次
- Abuse Reporting and Enforcement for Third Party Moderators in Private MessagingMatthew Gregoire, Jade Keegan, Saba EskandarianCCS 2026
- Boomerang: Metadata-Private Messaging under Hardware TrustPeipei Jiang, Qian Wang, Jianhao Cheng, Cong Wang 等NSDI 2023 · 被引用 13 次
- Private Hierarchical Governance for Encrypted MessagingArmin Namavari, Barry Wang, Sanketh Menda, Ben Nassi 等S&P 2024 · 被引用 1 次
- Abuse Resistant Traceability with Minimal Trust for Encrypted Messaging SystemsZhongming Wang, Tao Xiang, Xiaoguo Li, Guomin Yang 等NDSS 2026
