Ghostor: Toward a Secure Data-Sharing System from Decentralized Trust
Yuncong Hu, Sam Kumar, Raluca Ada Popa
摘要
Data-sharing systems are often used to store sensitive data. Both academia and industry have proposed numerous solutions to protect the user privacy and data integrity from a compromised server. Practical state-of-the-art solutions, however, use weak threat models based on centralized trust-they assume that part of the server will remain uncompromised, or that the adversary will not perform active attacks. We propose Ghostor, a data-sharing system that, using only decentralized trust, (1) hides user identities from the server, and (2) allows users to detect server-side integrity violations. To achieve (1), Ghostor avoids keeping any per-user state at the server, requiring us to redesign the system to avoid common paradigms like per-user authentication and user-specific mailboxes. To achieve (2), Ghostor develops a technique called verifiable anonymous history. Ghostor leverages a blockchain rarely, publishing only a single hash to the blockchain for the entire system once every epoch. We measured that Ghostor incurs a 4-5x throughput overhead compared to an insecure baseline. Although significant, Ghostor's overhead may be worth it for security-and privacy-sensitive applications.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper11
- DORY: An Encrypted Search System with Distributed TrustEmma Dauterman, Eric Feng, Ellen Luo, Raluca Ada Popa 等OSDI 2020 · 被引用 77 次
- Merkle2: A Low-Latency Transparency Log SystemYuncong Hu, Kian Hooshmand, Harika Kalidhindi, Seung Jin Yang 等S&P 2021 · 被引用 51 次
- FileDES: A Secure, Scalable and Succinct Decentralized Encrypted Storage NetworkMinghui Xu, Jiahao Zhang, Hechuan Guo, Xiuzhen Cheng 等INFOCOM 2024 · 被引用 21 次
- Vizard: A Metadata-hiding Data Analytic System with End-to-End Policy ControlsChengjun Cai, Yichen Zang, Cong Wang, Xiaohua Jia 等CCS 2022 · 被引用 12 次
- MUSES: Efficient Multi-User Searchable Encrypted DatabaseTung Le, Rouzbeh Behnia, Jorge Guajardo, Thang HoangUSENIX Security 2024 · 被引用 11 次
它引用的顶会 Paper7
- Foreshadow: Extracting the Keys to the Intel SGX Kingdom with Transient Out-of-Order ExecutionJo Van Bulck, Marina Minkin, Ofir Weisse, Daniel Genkin 等USENIX Security 2018 · 被引用 1,175 次
- Catena: Efficient Non-equivocation via BitcoinAlin Tomescu, Srinivas DevadasS&P 2017 · 被引用 144 次
- Breaking Web Applications Built On Top of Encrypted DataPaul Grubbs, Richard McPherson, Muhammad Naveed, Thomas Ristenpart 等CCS 2016 · 被引用 106 次
- TaoStore: Overcoming Asynchronicity in Oblivious Data StorageCetin Sahin, Victor Zakhary, Amr El Abbadi, Huijia Lin 等S&P 2016 · 被引用 98 次
- On the Practicality of Cryptographically Enforcing Dynamic Access Control Policies in the CloudWilliam C. Garrison III, Adam Shull, Steven A. Myers, Adam J. LeeS&P 2016 · 被引用 77 次
相关 Paper
- Bringing Decentralized Search to Decentralized ServicesMingyu Li, Jinhao Zhu, Tianxu Zhang, Cheng Tan 等OSDI 2021 · 被引用 28 次
- Efficient Storage Integrity in Adversarial SettingsQuinn Burke, Ryan Sheatsley, Yohan Beugin, Eric Pauley 等S&P 2025
- FalconDB: Blockchain-based Collaborative DatabaseYanqing Peng, Min Du, Feifei Li, Raymond Cheng 等SIGMOD 2020 · 被引用 119 次
- TLS-N: Non-repudiation over TLS Enablign Ubiquitous Content SigningHubert Ritzdorf, Karl Wüst, Arthur Gervais, Guillaume Felley 等NDSS 2018 · 被引用 32 次
- Consensual and Privacy-Preserving Sharing of Multi-Subject and Interdependent DataAlexandra-Mihaela Olteanu, Kévin Huguenin, Italo Dacosta, Jean-Pierre HubauxNDSS 2018 · 被引用 31 次
