论文标题

即时消息传递隧道之外的元数据隐私

Metadata Privacy Beyond Tunneling for Instant Messaging

论文作者

Nelson, Boel, Pagnin, Elena, Askarov, Aslan

论文摘要

传输层数据无意间泄漏元数据 - 例如谁与谁通信。尽管存在强大运输层隐私的工具,但它们具有采用障碍,包括与移动设备不相容的性能开销。我们认为,通过更改$ \ textit {All Traffic} $的元数据隐私的目标,我们可以为运输层隐私的务实方法打开一个新的设计空间。作为朝这个方向迈出的第一步,我们建议使用信息流控制中的技术,并提出了一种有原则的方法,以构建具有元数据隐私的系统模型,以$ \ textit {some} $,可拒绝,流量。我们证明,否认的流量实现了针对强大对手的元数据隐私 - 这构成了信息流控制和我们知识的匿名交流的首次桥接。此外,我们表明,可以通过为$ \ textit {可拒绝的即时消息} $(牛仔布)设计新的协议来扩展现有的最新协议以支持元数据隐私,这是信号协议的变体。为了显示我们方法的功效,我们在未修改的信号之上实施并评估了概念验证的即时消息传递系统运行牛仔布。我们从经验上表明,信号上的牛仔布可以维持未修改的信号流量的低延迟,而不会破坏现有功能,同时支持拒绝信号流量。

Transport layer data leaks metadata unintentionally -- such as who communicates with whom. While tools for strong transport layer privacy exist, they have adoption obstacles, including performance overheads incompatible with mobile devices. We posit that by changing the objective of metadata privacy for $\textit{all traffic}$, we can open up a new design space for pragmatic approaches to transport layer privacy. As a first step in this direction, we propose using techniques from information flow control and present a principled approach to constructing formal models of systems with metadata privacy for $\textit{some}$, deniable, traffic. We prove that deniable traffic achieves metadata privacy against strong adversaries -- this constitutes the first bridging of information flow control and anonymous communication to our knowledge. Additionally, we show that existing state-of-the-art protocols can be extended to support metadata privacy, by designing a novel protocol for $\textit{deniable instant messaging}$ (DenIM), which is a variant of the Signal protocol. To show the efficacy of our approach, we implement and evaluate a proof-of-concept instant messaging system running DenIM on top of unmodified Signal. We empirically show that the DenIM on Signal can maintain low-latency for unmodified Signal traffic without breaking existing features, while at the same time supporting deniable Signal traffic.

扫码加入交流群

加入微信交流群

微信交流群二维码

扫码加入学术交流群,获取更多资源