Instant messaging has become one of the most used methods of communication online, which has attracted significant attention to its underlying cryptographic protocols and security guarantees. Techniques to increase privacy such as End-to-End Encryption and pseudonyms have been introduced. However, online spaces such as messaging groups still require moderation to prevent misbehaving users from participating in them, particularly in anonymous contexts.. In Anonymous Blocklisting (AB) schemes, users must prove during authentication that none of their previous pseudonyms has been blocked, preventing misbehaving users from creating new pseudonyms. In this work we propose an alternative \textit{Federated Anonymous Blocklisting} (FAB) in which the centralised Service Provider is replaced by small distributed Realms, each with its own blocklist. Realms can establish trust relationships between each other, such that when users authenticate to a realm, they must prove that they are not banned in any of its trusted realms. We provide an implementation of our proposed scheme; unlike existing AB constructions, the performance of ours does not depend on the current size of the blocklist nor requires processing new additions to the blocklist. We also demonstrate its applicability to real-world messaging groups by integrating our FAB scheme into the Messaging Layer Security protocol.


翻译:即时消息传递已成为在线通信中最常用的方法之一,这使其底层加密协议与安全保障受到广泛关注。诸如端到端加密和假名等增强隐私的技术已被引入。然而,消息群组等在线空间仍需进行管理,以防止行为不当的用户参与其中,尤其是在匿名环境中。在匿名封禁方案中,用户必须在身份验证时证明其所有先前使用的假名均未被封禁,从而阻止行为不当的用户创建新的假名。在本研究中,我们提出了一种替代方案——联邦匿名封禁,其中集中式服务提供商被替换为小型分布式领域,每个领域拥有独立的封禁列表。领域之间可建立信任关系,使得用户向某一领域进行身份验证时,必须证明其在该领域所有受信任的领域中均未被封禁。我们提供了所提方案的实现;与现有匿名封禁架构不同,本方案的性能不依赖于当前封禁列表的规模,也无需处理封禁列表的新增条目。通过将联邦匿名封禁方案集成至消息层安全协议,我们还论证了其在现实世界消息群组中的适用性。

0
下载
关闭预览

相关内容

【WWW2024】基于提示增强的联邦内容表征学习的跨域推荐
专知会员服务
19+阅读 · 2024年1月29日
通信网络中大型语言模型的后门攻击的综述
专知会员服务
30+阅读 · 2023年9月5日
IJCAI2022 | 求同存异:多行为推荐的自监督图神经网络
专知会员服务
19+阅读 · 2022年6月19日
专知会员服务
12+阅读 · 2021年9月10日
专知会员服务
15+阅读 · 2021年7月21日
Kali Linux 渗透测试:密码攻击
计算机与网络安全
18+阅读 · 2019年5月13日
被动DNS,一个被忽视的安全利器
运维帮
11+阅读 · 2019年3月8日
Spooftooph - 用于欺骗或克隆蓝牙设备的自动工具
黑白之道
17+阅读 · 2019年2月27日
IPSec | IKE密钥交换原理
计算机与网络安全
18+阅读 · 2018年12月23日
使用tinc构建full mesh结构的VPN
运维帮
68+阅读 · 2018年12月1日
NetworkMiner - 网络取证分析工具
黑白之道
16+阅读 · 2018年6月29日
LibRec 每周算法:LDA主题模型
LibRec智能推荐
29+阅读 · 2017年12月4日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
2+阅读 · 2015年12月31日
国家自然科学基金
4+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2015年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
1+阅读 · 2014年12月31日
Arxiv
18+阅读 · 2024年12月27日
Arxiv
176+阅读 · 2023年4月20日
A Survey of Large Language Models
Arxiv
501+阅读 · 2023年3月31日
Arxiv
27+阅读 · 2023年3月17日
Arxiv
10+阅读 · 2022年3月14日
VIP会员
最新内容
美空军新型反无人机部队初探
专知会员服务
3+阅读 · 今天5:45
《防空交战流程的概率建模研究》
专知会员服务
6+阅读 · 今天5:04
ICML 2026 教程 | 数值优化理论还重要吗?
专知会员服务
4+阅读 · 7月26日
ICM 2026 | 陶哲轩:人工智能时代的数学
专知会员服务
7+阅读 · 7月26日
《反无人机交战场景下的战斗归零研究》
专知会员服务
7+阅读 · 7月26日
博士论文 | 用代码结构感知方法推进代码大模型
相关资讯
Kali Linux 渗透测试:密码攻击
计算机与网络安全
18+阅读 · 2019年5月13日
被动DNS,一个被忽视的安全利器
运维帮
11+阅读 · 2019年3月8日
Spooftooph - 用于欺骗或克隆蓝牙设备的自动工具
黑白之道
17+阅读 · 2019年2月27日
IPSec | IKE密钥交换原理
计算机与网络安全
18+阅读 · 2018年12月23日
使用tinc构建full mesh结构的VPN
运维帮
68+阅读 · 2018年12月1日
NetworkMiner - 网络取证分析工具
黑白之道
16+阅读 · 2018年6月29日
LibRec 每周算法:LDA主题模型
LibRec智能推荐
29+阅读 · 2017年12月4日
相关基金
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
2+阅读 · 2015年12月31日
国家自然科学基金
4+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2015年12月31日
国家自然科学基金
1+阅读 · 2015年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
0+阅读 · 2014年12月31日
国家自然科学基金
1+阅读 · 2014年12月31日
Top
微信扫码咨询专知VIP会员