跳到主要导航 跳到搜索 跳到主要内容

Lightweight Authentication of Web Data via Garble-Then-Prove

  • Xiang Xie*
  • , Kang Yang
  • , Xiao Wang
  • , Yu Yu
  • *此作品的通讯作者
  • PADO Labs
  • State Key Laboratory of Cryptology
  • Northwestern University
  • Shanghai Jiao Tong University

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

Transport Layer Security (TLS) establishes an authenticated and confidential channel to deliver data for almost all Internet applications. A recent work (Zhang et al., CCS'20) proposed a protocol to prove the TLS payload to a third party, without any modification of TLS servers, while ensuring the privacy and originality of the data in the presence of malicious adversaries. However, it required maliciously secure Two-Party Computation (2PC) for generic circuits, leading to significant computational and communication overhead. This paper proposes the garble-then-prove technique to achieve the same security requirement without using any heavy mechanism like generic malicious 2PC. Our end-to-end implementation shows 14× improvement in communication and an order of magnitude improvement in computation over the state-of-the-art protocol. We also show worldwide performance when using our protocol to authenticate payload data from Coinbase and Twitter APIs. Finally, we propose an efficient gadget to privately convert the above authenticated TLS payload to additively homomorphic commitments so that the properties of the payload can be proven efficiently using zkSNARKs.

源语言英语
主期刊名Proceedings of the 33rd USENIX Security Symposium
出版商USENIX Association
1957-1974
页数18
ISBN(电子版)9781939133441
出版状态已出版 - 2024
已对外发布
活动33rd USENIX Security Symposium, USENIX Security 2024 - Philadelphia, 美国
期限: 14 8月 202416 8月 2024

出版系列

姓名Proceedings of the 33rd USENIX Security Symposium

会议

会议33rd USENIX Security Symposium, USENIX Security 2024
国家/地区美国
Philadelphia
时期14/08/2416/08/24

指纹

探究 'Lightweight Authentication of Web Data via Garble-Then-Prove' 的科研主题。它们共同构成独一无二的指纹。

引用此