Collaborative Research: SaTC: CORE: Medium: Hybridizing Trusted Execution Environments and Secure Multiparty Computation
协作研究:SaTC:核心:中:混合可信执行环境和安全多方计算
基本信息
- 批准号:2112751
- 负责人:
- 金额:$ 40万
- 依托单位:
- 依托单位国家:美国
- 项目类别:Standard Grant
- 财政年份:2021
- 资助国家:美国
- 起止时间:2021-10-01 至 2024-09-30
- 项目状态:已结题
- 来源:
- 关键词:
项目摘要
As sensitive digital information proliferates and concerns grow about its improper use by enterprises and governments, two major technical approaches have arisen to address the challenges of secure computation. Trusted execution environments (TEEs) and secure multiparty computation (MPC) both aim to make computation trustworthy in two senses: They ensure the integrity, i.e., correctness, of the computation, and they provide confidentiality for the data over which they compute. The two approaches differ starkly, however, in their security models and performance. TEEs rely on the properties of hardware for their security assurance. They offer high performance, in some cases close to native CPU speeds, but have proven vulnerable to a number of serious side-channel attacks. Conversely, MPC relies on a committee of cooperating nodes, with strong cryptographic security guarantees given an honest quorum. Its performance, however, is inadequate for regular use with conventional applications. The novelty of this project is to provide a general exploration of secure protocol design through a synthesis of TEEs and MPC that takes advantage of their respective strengths and weaknesses. The impacts of this project will include the design of new protocols that can be used in corporate and government use of sensitive consumer data, while mitigating the risk of data breaches or policy violations. It will also advance the usefulness of TEE-based computing which has been an industry recognized need.Mathematically modelling and devising principled, empirically grounded protocol designs for a combination of TEEs and MPC poses a range of technical research challenges. This project starts from a new protocol framework, "Knights and Knaves" (KN framework), that applies TEEs so as to limit the impact of TEE compromise and leverage MPC to achieve stronger systemic security. This project will explore techniques for rapid detection and broad notification of TEE compromise, constraining the impact of such compromise in relying applications, and enabling failover where needed to MPC. It will also explore ways that TEEs can conversely harden and improve the performance of MPC deployments. Finally, the project considers ways to scale the KN framework through the classic technique of sharding, with new techniques for concealing shard boundaries. The project builds on investigators’ prior experience in the Universal Composability (UC) framework as a basis for rigorous security modeling, and additionally uses a decentralized identity platform called CanDID as a testbed.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
随着敏感数字信息的激增以及企业和政府对其不当使用的担忧日益增长,出现了两种主要的技术方法来解决安全计算的挑战。可信执行环境(tee)和安全多方计算(MPC)都旨在从两个方面使计算可信:它们确保计算的完整性,即正确性,并为它们所计算的数据提供机密性。然而,这两种方法在安全模型和性能方面存在明显差异。tee依赖于硬件的属性来保证其安全性。它们提供高性能,在某些情况下接近本机CPU速度,但已被证明容易受到许多严重的侧信道攻击。相反,MPC依赖于合作节点委员会,具有强大的加密安全保证,并提供诚实的法定人数。然而,它的性能对于常规应用来说是不够的。这个项目的新颖之处在于,通过综合tee和MPC,利用它们各自的优缺点,提供了对安全协议设计的一般探索。该项目的影响将包括设计可用于企业和政府使用敏感消费者数据的新协议,同时降低数据泄露或违反政策的风险。它还将提高基于tee的计算的实用性,这已经是业界公认的需求。数学建模和设计原则,经验为基础的协议设计的tee和MPC的组合提出了一系列的技术研究挑战。本项目从一个新的协议框架“骑士与骑士”(KN框架)开始,通过应用TEE来限制TEE妥协的影响,并利用MPC来实现更强的系统安全性。该项目将探索快速检测和广泛通知TEE泄漏的技术,限制此类泄漏对依赖应用程序的影响,并在需要时启用MPC故障转移。它还将探索tee反过来加强和提高MPC部署性能的方法。最后,该项目考虑了通过经典的分片技术扩展KN框架的方法,并使用隐藏分片边界的新技术。该项目以研究人员之前在通用可组合性(UC)框架方面的经验为基础,作为严格的安全建模的基础,并且还使用了一个名为CanDID的分散身份平台作为测试平台。该奖项反映了美国国家科学基金会的法定使命,并通过使用基金会的知识价值和更广泛的影响审查标准进行评估,被认为值得支持。
项目成果
期刊论文数量(0)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
数据更新时间:{{ journalArticles.updateTime }}
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
数据更新时间:{{ journalArticles.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ monograph.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ sciAawards.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ conferencePapers.updateTime }}
{{ item.title }}
- 作者:
{{ item.author }}
数据更新时间:{{ patent.updateTime }}
Ari Juels其他文献
Verifying Outsourced Replicated Data in Cloud Computing Storage Systems
验证云计算存储系统中的外包复制数据
- DOI:
10.5120/17382-7921 - 发表时间:
2014 - 期刊:
- 影响因子:0
- 作者:
Ayad F. Barsoum;M. Hasan;Marcos K. Aguilera;R. Janakiraman;Lihao Xu;G. Ateniese;R. Burns;R. Curtmola;J. Herring;L. Kissner;Z. Peterson;R. D. Pietro;L. V. Mancini;Paulo S. L. M. Barreto;Ayad F. Barsoum;Kevin D. Bowers;Ari Juels - 通讯作者:
Ari Juels
2023 DAO Decentralization: Voting-Bloc Entropy, Bribery, and Dark DAOs
2023 DAO 去中心化:投票集团熵、贿赂和黑暗 DAO
- DOI:
- 发表时间:
- 期刊:
- 影响因子:0
- 作者:
James Austgen;Andr´es F´abrega;Sarah Allen;Kushal Babel;Mahimna Kelkar;Ari Juels;Cornell Tech - 通讯作者:
Cornell Tech
Lanturn: Measuring Economic Security of Smart Contracts Through Adaptive Learning
Lanturn:通过自适应学习衡量智能合约的经济安全性
- DOI:
10.1145/3576915.3623204 - 发表时间:
2023 - 期刊:
- 影响因子:0
- 作者:
Kushal Babel;Mojan Javaheripi;Yan Ji;Mahimna Kelkar;F. Koushanfar;Ari Juels - 通讯作者:
Ari Juels
Ari Juels的其他文献
{{
item.title }}
{{ item.translation_title }}
- DOI:
{{ item.doi }} - 发表时间:
{{ item.publish_year }} - 期刊:
- 影响因子:{{ item.factor }}
- 作者:
{{ item.authors }} - 通讯作者:
{{ item.author }}
{{ truncateString('Ari Juels', 18)}}的其他基金
NSF-BSF: SaTC: CORE: Small: Blockchain Fairness
NSF-BSF:SaTC:核心:小型:区块链公平性
- 批准号:
1933655 - 财政年份:2019
- 资助金额:
$ 40万 - 项目类别:
Standard Grant
SaTC: CORE: Medium: Proactive and Reactive Mechanisms for Safer Smart Contracts
SaTC:核心:中:更安全的智能合约的主动和反应机制
- 批准号:
1704615 - 财政年份:2017
- 资助金额:
$ 40万 - 项目类别:
Continuing Grant
TTP: Medium: Democratizing Secure Password Management
TTP:中:安全密码管理民主化
- 批准号:
1564102 - 财政年份:2016
- 资助金额:
$ 40万 - 项目类别:
Standard Grant
TWC: Medium: Collaborative: Distribution-Sensitive Cryptography
TWC:媒介:协作:分布敏感密码学
- 批准号:
1514163 - 财政年份:2015
- 资助金额:
$ 40万 - 项目类别:
Standard Grant
相似国自然基金
Research on Quantum Field Theory without a Lagrangian Description
- 批准号:24ZR1403900
- 批准年份:2024
- 资助金额:0.0 万元
- 项目类别:省市级项目
Cell Research
- 批准号:31224802
- 批准年份:2012
- 资助金额:24.0 万元
- 项目类别:专项基金项目
Cell Research
- 批准号:31024804
- 批准年份:2010
- 资助金额:24.0 万元
- 项目类别:专项基金项目
Cell Research (细胞研究)
- 批准号:30824808
- 批准年份:2008
- 资助金额:24.0 万元
- 项目类别:专项基金项目
Research on the Rapid Growth Mechanism of KDP Crystal
- 批准号:10774081
- 批准年份:2007
- 资助金额:45.0 万元
- 项目类别:面上项目
相似海外基金
Collaborative Research: SaTC: CORE: Medium: Using Intelligent Conversational Agents to Empower Adolescents to be Resilient Against Cybergrooming
合作研究:SaTC:核心:中:使用智能会话代理使青少年能够抵御网络诱骗
- 批准号:
2330940 - 财政年份:2024
- 资助金额:
$ 40万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
- 批准号:
2317232 - 财政年份:2024
- 资助金额:
$ 40万 - 项目类别:
Continuing Grant
Collaborative Research: NSF-BSF: SaTC: CORE: Small: Detecting malware with machine learning models efficiently and reliably
协作研究:NSF-BSF:SaTC:核心:小型:利用机器学习模型高效可靠地检测恶意软件
- 批准号:
2338301 - 财政年份:2024
- 资助金额:
$ 40万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Differentially Private SQL with flexible privacy modeling, machine-checked system design, and accuracy optimization
协作研究:SaTC:核心:中:具有灵活隐私建模、机器检查系统设计和准确性优化的差异化私有 SQL
- 批准号:
2317233 - 财政年份:2024
- 资助金额:
$ 40万 - 项目类别:
Continuing Grant
Collaborative Research: NSF-BSF: SaTC: CORE: Small: Detecting malware with machine learning models efficiently and reliably
协作研究:NSF-BSF:SaTC:核心:小型:利用机器学习模型高效可靠地检测恶意软件
- 批准号:
2338302 - 财政年份:2024
- 资助金额:
$ 40万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Medium: Using Intelligent Conversational Agents to Empower Adolescents to be Resilient Against Cybergrooming
合作研究:SaTC:核心:中:使用智能会话代理使青少年能够抵御网络诱骗
- 批准号:
2330941 - 财政年份:2024
- 资助金额:
$ 40万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Small: Towards Secure and Trustworthy Tree Models
协作研究:SaTC:核心:小型:迈向安全可信的树模型
- 批准号:
2413046 - 财政年份:2024
- 资助金额:
$ 40万 - 项目类别:
Standard Grant
Collaborative Research: SaTC: EDU: RoCCeM: Bringing Robotics, Cybersecurity and Computer Science to the Middled School Classroom
合作研究:SaTC:EDU:RoCCeM:将机器人、网络安全和计算机科学带入中学课堂
- 批准号:
2312057 - 财政年份:2023
- 资助金额:
$ 40万 - 项目类别:
Standard Grant
Collaborative Research: SaTC: CORE: Small: Investigation of Naming Space Hijacking Threat and Its Defense
协作研究:SaTC:核心:小型:命名空间劫持威胁及其防御的调查
- 批准号:
2317830 - 财政年份:2023
- 资助金额:
$ 40万 - 项目类别:
Continuing Grant
Collaborative Research: SaTC: CORE: Small: Towards a Privacy-Preserving Framework for Research on Private, Encrypted Social Networks
协作研究:SaTC:核心:小型:针对私有加密社交网络研究的隐私保护框架
- 批准号:
2318843 - 财政年份:2023
- 资助金额:
$ 40万 - 项目类别:
Continuing Grant