Attacks on a Privacy-Preserving Publish-Subscribe System and a Ride-Hailing Service

05/10/2021
by   Srinivas Vivek, et al.
0

A privacy-preserving Context-Aware Publish-Subscribe System (CA-PSS) enables an intermediary (broker) to match the content from a publisher and the subscription by a subscriber based on the current context while preserving confidentiality of the subscriptions and notifications. While a privacy-preserving Ride-Hailing Service (RHS) enables an intermediary (service provider) to match a ride request with a taxi driver in a privacy-friendly manner. In this work, we attack a privacy-preserving CA-PSS proposed by Nabeel et al. (2013), where we show that any entity in the system including the broker can learn the confidential subscriptions of the subscribers. We also attack a privacy-preserving RHS called lpRide proposed by Yu et al. (2019), where we show that any rider/driver can efficiently recover the secret keys of all other riders and drivers. Also, we show that any rider/driver will be able to learn the location of any rider. The attacks are based on our cryptanalysis of the modified Paillier cryptosystem proposed by Nabeel et al. that forms a building block for both the above protocols.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
12/13/2021

Comments on "A Privacy-Preserving Online Ride-Hailing System Without Involving a Third Trusted Server"

Recently, Xie et al. (IEEE Transactions on Information Forensics and Sec...
research
11/09/2021

Cryptanalysis of the Privacy-Preserving Ride-Hailing Service TRACE

In a typical ride-hailing service, the service provider (RS) matches a c...
research
06/20/2020

Rethinking Privacy Preserving Deep Learning: How to Evaluate and Thwart Privacy Attacks

This paper investigates capabilities of Privacy-Preserving Deep Learning...
research
06/11/2019

A Comment on Privacy-Preserving Scalar Product Protocols as proposed in "SPOC"

Privacy-preserving scalar product (PPSP) protocols are an important buil...
research
10/05/2018

On Collaborative Predictive Blacklisting

Collaborative predictive blacklisting (CPB) allows to forecast future at...
research
08/23/2023

DSSP: A Distributed, SLO-aware, Sensing-domain-privacy-Preserving Architecture for Sensing-as-a-Service

In this paper, we propose DSSP, a Distributed, SLO-aware, Sensing-domain...
research
10/24/2022

Driver Locations Harvesting Attack on pRide

Privacy preservation in Ride-Hailing Services (RHS) is intended to prote...

Please sign up or login with your details

Forgot password? Click here to reset