10
A Framework for Distributed Anonymous Data Collection and Feedback Max Timchenko Ari Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)

A Framework for Distributed Anonymous Data Collection and Feedback Max TimchenkoAri Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)

Embed Size (px)

Citation preview

Page 1: A Framework for Distributed Anonymous Data Collection and Feedback Max TimchenkoAri Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)

A Framework forDistributedAnonymous

Data Collectionand Feedback

Max Timchenko Ari Trachtenberg

Poster:

• ACM Systor 2015

• IEEE S&P 2015 (Oakland)

Page 2: A Framework for Distributed Anonymous Data Collection and Feedback Max TimchenkoAri Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)
Page 3: A Framework for Distributed Anonymous Data Collection and Feedback Max TimchenkoAri Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)
Page 4: A Framework for Distributed Anonymous Data Collection and Feedback Max TimchenkoAri Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)

Modified Microsoft crash reporter message window showing potential forabuse of diagnostic data sent in plaintext. SPIEGEL ONLINE

Page 5: A Framework for Distributed Anonymous Data Collection and Feedback Max TimchenkoAri Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)
Page 6: A Framework for Distributed Anonymous Data Collection and Feedback Max TimchenkoAri Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)

Our system

Page 7: A Framework for Distributed Anonymous Data Collection and Feedback Max TimchenkoAri Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)

Example use cases

• Malware detection from DNS queries

• Software popularity

• Traffic information

Wikipedia

... like waze

Page 8: A Framework for Distributed Anonymous Data Collection and Feedback Max TimchenkoAri Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)

Analysis

Time for submission of report – queuing analysis.

(sec

)

Page 9: A Framework for Distributed Anonymous Data Collection and Feedback Max TimchenkoAri Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)

Guarantees

Anonymity:against Eve• Cannot distinguish two reports• Can count reports per relay

• does not know where they originated

against relay compromise• Cannot recover plaintext• Can alter relay probabilities

• does not know for whom

against core compromise• See plaintext for one epoch

• Does not see originator• Cannot correlate against other epochs

Page 10: A Framework for Distributed Anonymous Data Collection and Feedback Max TimchenkoAri Trachtenberg Poster: ACM Systor 2015 IEEE S&P 2015 (Oakland)

Guarantees

Disruption:

Validity of feedback: