Beyond Anonymity Sets: A Security Model for Distributed Shuffling in Adversarial Environments
Adrian Cinal, Oliwer Sobolewski, Gabriel Wechta, Filip Zagórski
摘要
Distributed shuffling is a core primitive underlying mix-nets, electronic voting, and, more recently, single secret leader election (SSLE) protocols for proof-of-stake blockchains. In these settings, a collection of resource-constrained parties jointly permutes a list of ciphertexts or commitments in order to conceal the correspondence between inputs and outputs. Existing security analyzes of such protocols typically rely on heuristic anonymity measures or implicitly assume honest behavior; therefore, they fail to capture statistical dependencies that arise when shuffling is partial and some participants are corrupted. In this work, we introduce a new security model for distributed shuffling that explicitly accounts for adversarial corruption and information leakage. Our model allows an adversary to corrupt a subset of shufflers and to track selected elements throughout the execution, and defines anonymity in terms of statistical distance from the uniform distribution over permutations. This yields a quantitative, composable notion of security that subsumes commonly used anonymity-set arguments and aligns with standard cryptographic indistinguishability frameworks. Using this model, we analyze Whisk, the shuffle-based SSLE mechanism proposed for Ethereum. We show that, under realistic protocol parameters and even in the absence of adaptive attacks, the induced distribution over permutations deviates significantly from the uniform distribution. Consequently, the resulting anonymity guaranties are substantially weaker than what is suggested by heuristic analyzes. We show how to modify the scheme parameters to meet the security requirements.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了最后一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper2
相关 Paper
- Mobius: Enabling Byzantine-Resilient Single Secret Leader Election with Uniquely Verifiable StateHanyue Dou, Peifang Ni, Yingzi Gao, Jing XuNDSS 2026
- Shuffling Is Universal: Statistical Additive Randomized Encodings for All FunctionsNir Bitansky, Saroja Erabelli, Rachit Garg, Yuval IshaiSTOC 2026 · 被引用 2 次
- FLock: Robust and Privacy-Preserving Federated Learning based on Practical Blockchain State ChannelsRuonan Chen, Ye Dong, Yizhong Liu, Tingyu Fan 等WWW 2025 · 被引用 6 次
- Computationally Secure Aggregation and Private Information Retrieval in the Shuffle ModelAdrià Gascón, Yuval Ishai, Mahimna Kelkar, Baiyu Li 等CCS 2024 · 被引用 4 次
- Private Proof-of-Stake Blockchains using Differentially-Private Stake DistortionChenghong Wang, David Pujol, Kartik Nayak, Ashwin MachanavajjhalaUSENIX Security 2023
