The present paper presents a comprehensive analysis of potential information leakage in distance evaluation, with a specific emphasis on threshold-based obfuscated distance (i.e. Fuzzy Matcher). It includes detailed descriptions of various situations related to potential information leakage and specific attention is given to their consequences on security. Generic attacks corresponding to each scenario are outlined, and their complexities are assessed. The main contribution of this work lies in providing an upper bound on the security of a fuzzy matcher in scenarios where there is additional information leakage from the matcher, providing a straightforward understanding of the maximum level of achievable security and its potential implications for data privacy and security.
翻译:本文对距离评估中潜在的信息泄露进行了全面分析,特别关注基于阈值的混淆距离(即模糊匹配器)。文中详细描述了与潜在信息泄露相关的多种情形,并着重探讨了这些情形对安全性的影响。针对每种场景概述了通用攻击方法,并评估了其复杂性。本研究的主要贡献在于:在模糊匹配器存在额外信息泄露的场景中,为其安全性提供了上界,从而直观地揭示了可达到的最高安全水平及其对数据隐私与安全的潜在影响。