Judge, Jury Encryptioner: Exceptional Access with a Fixed Social Cost

12/11/2019
by   Sacha Servan-Schreiber, et al.
0

We present Judge, Jury and Encryptioner (JJE) an exceptional access scheme for unlocking devices that does not give unilateral power to any single authority and places final approval to unlock in the hands of peer devices. Our scheme, JJE, distributes maintenance of the protocol across a network of "custodians" such as courts, government agencies, civil rights watchdogs and academic institutions. Unlock requests, however, can only be approved by a randomly selected set of unlock delegates, consisting of other peer devices that must be physically located to gain access. This requires that law enforcement expend both human and monetary resources and pay a "fixed social cost" in order to find and request the participation of law abiding citizens in the unlock process. Compared to other proposed exceptional access schemes, we believe that JJE mitigates the risk of mass surveillance, law enforcement abuse, and vulnerability to unlawful attackers. We aim to raise the bar set by government sponsored "backdoors" which can be used to covertly unlock any device deemed suspicious by law enforcement. While we propose a concrete construction, our primary goal with JJE is to spur discussion on ethical exceptional access schemes that balance privacy of individuals and law enforcement desires. Our scheme transparently reveals the use of exceptional access to device owners, and to the public, in a way that is clear what are the trade offs in security and privacy. In order to unlock devices, governments must pay a fixed social cost that, we believe, can be an effective deterrent to mass surveillance and abuse.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
12/02/2019

GDPArrrrr: Using Privacy Laws to Steal Identities

The General Data Protection Regulation (GDPR) has become a touchstone mo...
research
05/26/2021

Data Security on Mobile Devices: Current State of the Art, Open Problems, and Proposed Solutions

In this work we present definitive evidence, analysis, and (where needed...
research
10/14/2021

Bugs in our Pockets: The Risks of Client-Side Scanning

Our increasing reliance on digital technology for personal, economic, an...
research
02/05/2021

AI Can Stop Mass Shootings, and More

We propose to build directly upon our longstanding, prior r d in AI/ma...
research
12/12/2022

Wikipedia's Balancing Act: A Tool for Collective Intelligence or Mass Surveillance?

Wikipedia has evolved beyond its original function as an online encyclop...
research
05/03/2022

Os Dados dos Brasileiros sob Risco na Era da Inteligência Artificial?

Advances in image processing and analysis as well as machine learning te...
research
01/14/2022

Code-based Signatures from New Proofs of Knowledge for the Syndrome Decoding Problem

In this paper, we study code-based signatures constructed from Proof of ...

Please sign up or login with your details

Forgot password? Click here to reset