作者
Paul Grubbs, Kevin Sekniqi, Vincent Bindschaedler, Muhammad Naveed, Thomas Ristenpart
发表日期
2017/5/22
研讨会论文
2017 IEEE symposium on security and privacy (SP)
页码范围
655-672
出版商
IEEE
简介
Order-preserving encryption and its generalization order-revealing encryption (OPE/ORE) allow sorting, performing range queries, and filtering data - all while only having access to ciphertexts. But OPE and ORE ciphertexts necessarily leak information about plaintexts, and what level of security they provide in practice has been unclear. In this work, we introduce new leakage-abuse attacks that recover plaintexts from OPE/ORE-encrypted databases. Underlying our new attacks is a framework in which we cast the adversary's challenge as a non-crossing bipartite matching problem. This allows easy tailoring of attacks to a specific scheme's leakage profile. In a case study of customer records, we show attacks that recover 99% of first names, 97% of last names, and 90% of birthdates held in a database, despite all values being encrypted with the OPE scheme most widely used in practice. We also show the first attack …
引用总数
20162017201820192020202120222023202432131385238321917
学术搜索中的文章
P Grubbs, K Sekniqi, V Bindschaedler, M Naveed… - 2017 IEEE symposium on security and privacy (SP), 2017