Preventing Attacks on Anonymous Data Collection

12/19/2018
by   Alex Catarineu, et al.
0

Anonymous data collection systems allow users to contribute the data necessary to build services and applications while preserving their privacy. Anonymity, however, can be abused by malicious agents aiming to subvert or to sabotage the data collection, for instance by injecting fabricated data. In this paper we propose an efficient mechanism to rate-limit an attacker without compromising the privacy and anonymity of the users contributing data. The proposed system builds on top of Direct Anonymous Attestation, a proven cryptographic primitive. We describe how a set of rate-limiting rules can be formalized to define a normative space in which messages sent by an attacker can be linked, and consequently, dropped. We present all components needed to build and deploy such protection on existing data collection systems with little overhead. Empirical evaluation yields performance up to 125 and 140 messages per second for senders and the collector respectively on nominal hardware. Latency of communication is bound to 4 seconds in the 95th percentile when using Tor as network layer.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
11/27/2018

3PS - Online Privacy through Group Identities

Limiting online data collection to the minimum required for specific pur...
research
01/03/2020

Privacy in Data Service Composition

In modern information systems different information features, about the ...
research
01/15/2019

On (The Lack Of) Location Privacy in Crowdsourcing Applications

Crowdsourcing enables application developers to benefit from large and d...
research
01/15/2019

Why Johnny Can't Develop Mobile Crowdsourcing Applications with Location Privacy

Mobile crowdsourcing (MCS) relies on users' devices as sensors to perfor...
research
07/16/2021

Learning to Limit Data Collection via Scaling Laws: Data Minimization Compliance in Practice

Data minimization is a legal obligation defined in the European Union's ...
research
03/10/2022

Facilitating Federated Genomic Data Analysis by Identifying Record Correlations while Ensuring Privacy

With the reduction of sequencing costs and the pervasiveness of computin...
research
06/30/2022

Privacy-Preserving Spam-Protected Gossip-Based Routing

WAKU-RLN-RELAY is an anonymous peer-to-peer gossip-based routing protoco...

Please sign up or login with your details

Forgot password? Click here to reset