学位论文详细信息
A security evaluation of the salsa anonymous communication system
anonymity;information-leaks;Selective denial-of-service attacks;peer-to-peer
Mittal, Prateek ; Borisov ; Nikita
关键词: anonymity;    information-leaks;    Selective denial-of-service attacks;    peer-to-peer;   
Others  :  https://www.ideals.illinois.edu/bitstream/handle/2142/16135/Mittal_Prateek.pdf?sequence=1&isAllowed=y
美国|英语
来源: The Illinois Digital Environment for Access to Learning and Scholarship
PDF
【 摘 要 】

We evaluate a state of the art P2P anonymous communication system, Salsa. Salsa is based on a distributed hash table, and uses secure lookups to locate relays for anonymous communication. To analyze user anonymity in Salsa, we first build an analytic model for the lookup security in Salsa, and model its path building mechanism as a stochastic activity network in the M\"{o}bius framework. Next, we analyze information leaks in the lookup mechanisms of Salsa and show how these leaks can be used to compromise anonymity. We show that the techniques that are used to combat active attacks on the lookup mechanism dramatically increase information leaks and increase the efficacy of passive attacks. Thus there is a tradeoff between active and passive attacks. We find that, by combining both passive and active attacks, anonymity can be compromised much more effectively than previously thought.We also show that Salsa is vulnerable to a selective DoS attack, where an adversary denies service whenever he/she is unable to compromise user anonymity. This attack is devastating for user anonymity in Salsa, rendering the system insecure for most proposed uses. Finally, we perform a first step towards an entropy based evaluation of Salsa, instead of consideringthe binary metric of path compromise, which results in an even lower user anonymity. Our study therefore motivates the search for new approaches to P2P anonymous communication.

【 预 览 】
附件列表
Files Size Format View
A security evaluation of the salsa anonymous communication system 393KB PDF download
  文献评价指标  
  下载次数:11次 浏览次数:13次