Published June 20, 2024 | Version v1

File-Injection Attacks on Searchable Encryption, Based on Binomial Structures

  • 1. ROR icon Delft University of Technology

Description

One distinguishable feature of file-inject attacks on searchable encryption schemes is the 100% query recovery rate, i.e., confirming the corresponding keyword for each query. The main efficiency consideration of file-injection attacks is the number of injected files. In the work of Zhang et al. (USENIX 2016), |log2⁡|K|| injected files are required, each of which contains |K|/2 keywords for the keyword set K. Based on the construction of the uniform (s,n)-set, Wang et al. need fewer injected files when considering the threshold countermeasure. In this work, we propose a new attack that further reduces the number of injected files where Wang et al. need up to 38% more injections to achieve the same results. The attack is based on an increment (s,n)-set, which is also defined in this paper.

Files

File-Injection Attacks on Searchable Encryption, Based on Binomial Structures.pdf

Additional details

Funding

European Commission
TENSOR - Reliable biomeTric tEchNologies to asSist Police authorities in cOmbating terrorism and oRganized crime 101073920
European Commission
TANGO - Digital Technologies ActiNg as a Gatekeeper to information and data flOws 101070052
European Commission
REWIRE - REWiring the ComposItional Security VeRification and AssurancE of Systems of Systems Lifecycle 101070627
European Commission
MLSysOps - Machine Learning for Autonomic System Operation in the Heterogeneous Edge-Cloud Continuum 101092912

References

  • Blackstone, L., Kamara, S., Moataz, T.: Revisiting leakage abuse attacks. In: NDSS 2020. The Internet Society (2020). https://doi.org/10.14722/ndss.2020.23103
  • Bost, R., Minaud, B., Ohrimenko, O.: Forward and backward private searchable encryption from constrained cryptographic primitives. In: Thuraisingham, B., Evans, D., Malkin, T., Xu, D. (eds.) CCS 2017. pp. 1465–1482. ACM (2017). https://doi.org/10.1145/3133956.3133980
  • Cash, D., Grubbs, P., Perry, J., Ristenpart, T.: Leakage-abuse attacks against searchable encryption. In: CCS 2015. p. 668–679. Association for Computing Machinery (2015). https://doi.org/10.1145/2810103.2813700
  • Cash, D., Tessaro, S.: The locality of searchable symmetric encryption. In: Nguyen, P.Q., Oswald, E. (eds.) EUROCRYPT 2014. LNCS, vol. 8441, pp. 351–368. Springer (2014). https://doi.org/10.1007/978-3-642-55220-5_20
  • Chamani, J.G., Papadopoulos, D., Papamanthou, C., Jalili, R.: New constructions for forward and backward private symmetric searchable encryption. In: Lie, D., Mannan, M., Backes, M., Wang, X. (eds.) CCS 2018. pp. 1038–1055. ACM (2018). https://doi.org/10.1145/3243734.3243833
  • Chen, T., Xu, P., Picek, S., Luo, B., Susilo, W., Jin, H., Liang, K.: The power of bamboo: On the post-compromise security for searchable symmetric encryption. In: 30th Annual Network and Distributed System Security Symposium, NDSS 2023, San Diego, California, USA, February 27 - March 3, 2023. The Internet Society (2023), https://www.ndss-symposium.org/ndss-paper/the-power-of-bamboo-on-the-post-compromise-security-for-searchable-symmetric-encryption/
  • Damie, M., Hahn, F., Peter, A.: A highly accurate query-recovery attack against searchable encryption using non-indexed documents. In: Bailey, M.D., Greenstadt, R. (eds.) USENIX 2021. pp. 143–160. USENIX Association (2021)
  • Enron Corporation: Enron email dataset (2004), http://www.cs.cmu.edu/~enron/
  • Ho, B., Chen, H., Shi, Z., Liang, K.: Similar data is powerful: Enhancing inference attacks on SSE with volume leakages. IACR Cryptol. ePrint Arch. p. 516 (2024), https://eprint.iacr.org/2024/516
  • Islam, M.S., Kuzu, M., Kantarcioglu, M.: Access pattern disclosure on searchable encryption: Ramification, attack and mitigation. In: NDSS 2012. The Internet Society (2012)
  • Kamara, S., Moataz, T.: Boolean searchable symmetric encryption with worstcase sub-linear complexity. In: Coron, J., Nielsen, J.B. (eds.) EUROCRYPT 2017, Part III. LNCS, vol. 10212, pp. 94–124 (2017). https://doi.org/10.1007/978-3-319-56617-7_4
  • Langhout, T., Chen, H., Liang, K.: File-injection attacks on searchable encryption, bases on binomial structures. IACR Cryptol. ePrint Arch. (2024), https://eprint.iacr.org/2024/1000
  • . Liu, C., Zhu, L., Wang, M., an Tan, Y.: Search pattern leakage in searchable encryption: Attacks and new construction. Information Sciences 265, 176–188 (2014). https://doi.org/10.1016/j.ins.2013.11.021
  • Liu, D., Wang, W., Xu, P., Yang, L.T., Luo, B., Liang, K.: d-dse: Distinct dynamic searchable encryption resisting volume leakage in encrypted databases. In: Balzarotti, D., Xu, W. (eds.) 33rd USENIX Security Symposium, USENIX Security 2024, Philadelphia, PA, USA, August 14-16, 2024. USENIX Association (2024), https://www.usenix.org/conference/usenixsecurity24/presentation/liu-dongli
  • Liu, R., Cao, Z.F.: Two new methods of distributive management of cryptographic key. pp. 10–14. J. Commun., 8 (1987)
  • . Naveed, M.: The fallacy of composition of oblivious ram and searchable encryption. IACR Cryptol. ePrint Arch. 2015, 668 (2015), https://api.semanticscholar.org/CorpusID:11042885
  • Nie, H., Wang, W., Xu, P., Zhang, X., Yang, L.T., Liang, K.: Query recovery from easy to hard: Jigsaw attack against SSE. In: Balzarotti, D., Xu, W. (eds.) 33rd USENIX Security Symposium, USENIX Security 2024, Philadelphia, PA, USA, August 14-16, 2024. USENIX Association (2024), https://www.usenix.org/conference/usenixsecurity24/presentation/nie
  • Ning, J., Huang, X., Poh, G.S., Yuan, J., Li, Y., Weng, J., Deng, R.H.: LEAP: leakage-abuse attack on efficiently deployable, efficiently searchable encryption with partially known dataset. In: Kim, Y., Kim, J., Vigna, G., Shi, E. (eds.) CCS 2021. pp. 2307–2320. ACM (2021). https://doi.org/10.1145/3460120.3484540
  • Oya, S., Kerschbaum, F.: Hiding the access pattern is not enough: Exploiting search pattern leakage in searchable encryption. In: Bailey, M.D., Greenstadt, R. (eds.) USENIX 2021. pp. 127–142. USENIX Association (2021)
  • Patel, S., Persiano, G., Yeo, K.: Symmetric searchable encryption with sharing and unsharing. In: L´opez, J., Zhou, J., Soriano, M. (eds.) ESORICS 2018, Part II. LNCS, vol. 11099, pp. 207–227. Springer (2018). https://doi.org/10.1007/978- 3-319-98989-1_11
  • Poddar, R., Wang, S., Lu, J., Popa, R.A.: Practical volume-based attacks on encrypted databases. In: IEEE European Symposium on Security and Privacy, EuroS&P 2020. pp. 354–369. IEEE (2020). https://doi.org/10.1109/EUROSP48549.2020.00030
  • Pouliot, D., Wright, C.V.: The shadow nemesis: Inference attacks on efficiently deployable, efficiently searchable encryption. In: Weippl, E.R., Katzenbeisser, S., Kruegel, C., Myers, A.C., Halevi, S. (eds.) CCS 2016. pp. 1341–1352. ACM (2016). https://doi.org/10.1145/2976749.2978401
  • Song, D.X., Wagner, D.A., Perrig, A.: Practical techniques for searches on encrypted data. In: 2000 IEEE Symposium on Security and Privacy. pp. 44–55. IEEE Computer Society (2000). https://doi.org/10.1109/SECPRI.2000.848445
  • Sun, S., Yuan, X., Liu, J.K., Steinfeld, R., Sakzad, A., Vo, V., Nepal, S.: Practical backward-secure searchable encryption from symmetric puncturable encryption. In: Lie, D., Mannan, M., Backes, M., Wang, X. (eds.) CCS 2018. pp. 763–780. ACM (2018). https://doi.org/10.1145/3243734.3243782
  • Wang, G., Cao, Z., Dong, X.: Improved file-injection attacks on searchable encryption using finite set theory. Comput. J. 64(8), 1264–1276 (2021). https://doi.org/10.1093/COMJNL/BXAA161
  • Zhang, M., Shi, Z., Chen, H., Liang, K.: Inject less, recover more: Unlocking the potential of document recovery in injection attacks against SSE. IACR Cryptol. ePrint Arch. p. 515 (2024), https://eprint.iacr.org/2024/515
  • Zhang, X., Wang, W., Xu, P., Yang, L.T., Liang, K.: High recovery with fewer injections: Practical binary volumetric injection attacks against dynamic searchable encryption. In: Calandrino, J.A., Troncoso, C. (eds.) USENIX Security 2023. pp. 5953–5970. USENIX Association (2023)
  • Zhang, Y., Katz, J., Papamanthou, C.: All your queries are belong to us: The power of file-injection attacks on searchable encryption. In: Holz, T., Savage, S. (eds.) USENIX Security 2016. pp. 707–720. USENIX Association (2016)