loading...
 This Article 
   
 Share 
   
 Bibliographic References 
   
 Add to: 
 
Digg
Furl
Spurl
Blink
Simpy
Google
Del.icio.us
Y!MyWeb
 
 Search 
   
2006 IEEE Symposium on Security and Privacy (S&P'06)
Deterring Voluntary Trace Disclosure in Re-encryption Mix Networks
Berkeley/Oakland, California
May 21-May 24
ISBN: 0-7695-2574-1
XiaoFeng Wang, Indiana University
Markus Jakobsson, Indiana University
Alex Tsow, Indiana University
An all too real threat to the privacy offered by a mix network is that individual mix administrators may volunteer partial tracing information to a coercer. While this threat can never be eliminated - coerced mix servers could simply be forced to reveal all their secret data - we can deter administrators from succumbing to coercive attacks by raising the stakes. We introduce the notion of a trace-deterring mix permutation to guarantee privacy, and show how it ensures that a collateral key (used for an arbitrary purpose) be automatically revealed given any end-to-end trace from input to output elements. However, no keying material is revealed to a party who simply knows what input element corresponds to what output element. Our techniques are sufficiently efficient to be deployed in large-scale elections, thereby providing a sort of publicly verifiable privacy guarantee. Their impact on the size of the anonymity set - while quantifiable - are not of practical concern.
Citation:
Philippe Golle, XiaoFeng Wang, Markus Jakobsson, Alex Tsow, "Deterring Voluntary Trace Disclosure in Re-encryption Mix Networks," sp, pp.121-131, 2006 IEEE Symposium on Security and Privacy (S&P'06), 2006
Usage of this product signifies your acceptance of the Terms of Use.