Breaking and (Partially) Fixing Provably Secure Onion Routing
Christiane Kuhn, Martin Beck, Thorsten Strufe
摘要
After several years of research on onion routing, Camenisch and Lysyanskaya, in an attempt at rigorous analysis, defined an ideal functionality in the universal composability model, together with properties that protocols have to meet to achieve provable security. A whole family of systems based their security proofs on this work. However, analyzing HORNET and Sphinx, two instances from this family, we show that this proof strategy is broken. We discover a previously unknown vulnerability that breaks anonymity completely, and explain a known one. Both should not exist if privacy is proven correctly. In this work, we analyze and fix the proof strategy used for this family of systems. After proving the efficacy of the ideal functionality, we show how the original properties are flawed and suggest improved, effective properties in their place. Finally, we discover another common mistake in the proofs. We demonstrate how to avoid it by showing our improved properties for one protocol, thus partially fixing the family of provably secure onion routing protocols. ‡ This work in parts was carried out while affiliated with TU Dresden. 1 according to https://metrics.torproject.org/userstats-relay-country.html 2 Understanding of OR varied in the field. To be compliant with the terms of [8], we understand OR in this work as a free-route Chaumian MixNet [10] without requiring that messages are delayed. This conforms with the understanding of [21] and [16] except that circuits are excluded.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper3
- Express: Lowering the Cost of Metadata-hiding Communication with Cryptographic PrivacySaba Eskandarian, Henry Corrigan-Gibbs, Matei Zaharia, Dan BonehUSENIX Security 2021 · 被引用 98 次
- Rollercoaster: An Efficient Group-Multicast Scheme for Mix NetworksDaniel Hugenroth, Martin Kleppmann, Alastair R. BeresfordUSENIX Security 2021 · 被引用 5 次
- Walking Onions: Scaling Anonymity Networks while Protecting UsersChelsea Komlo, Nick Mathewson, Ian GoldbergUSENIX Security 2020
相关 Paper
- Minimal and Fastest Anonymous Communication against Colluding Passive AdversariesYutaro Yoshinaka, Junji Takemasa, Yuki Koizumi, Toru HasegawaINFOCOM 2025
- Shaken, not Stirred - Automated Discovery of Subtle Attacks on Protocols using Mix-NetsJannik Dreier, Pascal Lafourcade, Dhekra MahmoudUSENIX Security 2024 · 被引用 2 次
- How Do Tor Users Interact With Onion Services?Philipp Winter, Anne Edmundson, Laura M. Roberts, Agnieszka Dutkowska-Zuk 等USENIX Security 2018 · 被引用 42 次
- Large-scale Evaluation of Malicious Tor Hidden Service Directory DiscoveryChunmian Wang, Zhen Ling, Wenjia Wu, Qi Chen 等INFOCOM 2022 · 被引用 10 次
- OptiMix: Scalable and Distributed Approaches for Latency Optimization in Modern MixnetsMahdi RahimiNDSS 2026 · 被引用 3 次
