Privacy-preserving Credit Scoring via Functional Encryption

09/22/2021
by   Lorenzo Andolfo, et al.
0

The majority of financial organizations managing confidential data are aware of security threats and leverage widely accepted solutions (e.g., storage encryption, transport-level encryption, intrusion detection systems) to prevent or detect attacks. Yet these hardening measures do little to face even worse threats posed on data-in-use. Solutions such as Homomorphic Encryption (HE) and hardware-assisted Trusted Execution Environment (TEE) are nowadays among the preferred approaches for mitigating this type of threat. However, given the high-performance overhead of HE, financial institutions – whose processing rate requirements are stringent – are more oriented towards TEE-based solutions. The X-Margin Inc. company, for example, offers secure financial computations by combining the Intel SGX TEE technology and HE-based Zero-Knowledge Proofs, which shield customers' data-in-use even against malicious insiders, i.e., users having privileged access to the system. Despite such a solution offers strong security guarantees, it is constrained by having to trust Intel and by the SGX hardware extension availability. In this paper, we evaluate a new frontier for X-Margin, i.e., performing privacy-preserving credit risk scoring via an emerging cryptographic scheme: Functional Encryption (FE), which allows a user to only learn a function of the encrypted data. We describe how the X-Margin application can benefit from this innovative approach and – most importantly – evaluate its performance impact.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
11/12/2022

Privacy-Preserving Credit Card Fraud Detection using Homomorphic Encryption

Credit card fraud is a problem continuously faced by financial instituti...
research
12/23/2021

SoK: Privacy-preserving Deep Learning with Homomorphic Encryption

Outsourced computation for neural networks allows users access to state ...
research
06/27/2021

An efficient and secure scheme of verifiable computation for Intel SGX

Cloud computing offers resource-constrained users big-volume data storag...
research
03/09/2020

Secure Cloud Storage with Client-Side Encryption Using a Trusted Execution Environment

With the evolution of computer systems, the amount of sensitive data to ...
research
10/03/2018

SecGrid: A Secure and Efficient SGX-enabled Smart Grid System with Rich Functionalities

Smart grid adopts two-way communication and rich functionalities to gain...
research
10/27/2020

2FE: Two-Factor Encryption for Cloud Storage

Encrypted cloud storage services are steadily increasing in popularity, ...
research
11/07/2017

StealthDB: a Scalable Encrypted Database with Full SQL Query Support

Encrypted database systems provide a great method for protecting sensiti...

Please sign up or login with your details

Forgot password? Click here to reset