论文标题

网状消息的强烈匿名性

Strong Anonymity for Mesh Messaging

论文作者

Perry, Neil, Spang, Bruce, Eskandarian, Saba, Boneh, Dan

论文摘要

在政府破坏了互联网连接之后,全球抗议者使用了由蓝牙通信的智能手机组成的网络网络建立的消息系统。不幸的是,现有系统已被证明是不安全的。最令人担忧的是,没有充分隐藏元数据。无线通信(例如蓝牙)本质上是一种广播媒介,这一事实更加复杂。在本文中,我们提出了一种新的威胁模型,该模型在这种情况下捕获了抗议者的安全要求。然后,我们提供了满足所需安全性属性的解决方案,将所有相关的元数据隐藏起来,缩放到适度尺寸的抗议活动并支持小组消息传递。这是通过以限制重复消息开销的方式广播所有消息来实现的,确保密文不会泄漏元数据,并限制通过观察用户行为可以学到的知识。我们还建立了系统模型,并对其进行数字评估以支持我们的索赔并分析其支持的用户。最后,我们讨论了进一步的扩展,这些扩展可以消除扩展中潜在的瓶颈并支持更多用户。

Messaging systems built on mesh networks consisting of smartphones communicating over Bluetooth have been used by protesters around the world after governments have disrupted Internet connectivity. Unfortunately, existing systems have been shown to be insecure; most concerningly by not adequately hiding metadata. This is further complicated by the fact that wireless communication such as Bluetooth is inherently a broadcasting medium. In this paper, we present a new threat model that captures the security requirements of protesters in this setting. We then provide a solution that satisfies the required security properties, hides all relevant metadata, scales to moderately sized protests, and supports group messaging. This is achieved by broadcasting all messages in a way that limits the overhead of duplicate messages, ensuring that ciphertexts do not leak metadata, and limiting what can be learned by observing user behavior. We also build a model of our system and numerically evaluate it to support our claims and analyze how many users it supports. Finally, we discuss further extensions that remove potential bottlenecks in scaling and support substantially more users.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源