Top Banner
Publius A Robust, Tamper Evident, Censorship Resistant WWW Based Publishing System Marc Waldman NYU – CS Dept. Lorrie Cranor AT&T Research Aviel Rubin AT&T Research
31

Publius A Robust, Tamper Evident, Censorship Resistant WWW Based Publishing System

Dec 30, 2015

Download

Documents

gage-newman

Publius A Robust, Tamper Evident, Censorship Resistant WWW Based Publishing System. Lorrie Cranor AT&T Research. Aviel Rubin AT&T Research. Marc Waldman NYU – CS Dept. Publius. Pen name used by authors of Federalist Papers - PowerPoint PPT Presentation
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Publius A Robust, Tamper Evident,

Censorship Resistant WWW Based Publishing System

Marc WaldmanNYU – CS Dept.

Lorrie CranorAT&T Research

Aviel RubinAT&T Research

Page 2: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Publius Pen name used by authors of Federalist Papers Federalist Papers influential in convincing NY

state voters to ratify US constitution.

Page 3: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Why Publish Anonymously? Political Dissent

“Whistleblowing”

Radical Ideas

Human Rights Reports

Page 4: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Publius Design Goals

Censorship Resistant Tamper Evident Source Anonymous Updateable Host Content Deniability Persistent Extensible Freely Available

Page 5: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Related Work

Connection Based Anonymity

Hide identity of requestor

Location or Author Based Anonymity

Hide identity of author or WWW server

Page 6: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Connection Based Anonymity Anonymizer

HTTP proxy

URL rewrite

Proxymate

Formerly LPWA

HTTP Proxy

Pseudonym generation

www.anonymizer.com

www.proxymate.com

Page 7: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Connection Based Anonymity

Onion RouterMix NetworkHTTP Proxy Developed

CrowdsHTTP request via CrowdDynamic Path generation

www.onion-router.net

www.research.att.com/projects/crowds

Page 8: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Onion 1

Onion 2

Onion 3

Onion 4

“Hello World”

Onion Routing

Page 9: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Connection Based Anonymity

Freedom

Similar to Onion Routing

Implemented at transport layer

Nym creation – allows multiple pseudonyms

Supports HTTP, NNTP, POP3, Telnet , etc.

http://www.freedom.net

Page 10: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Location Based Anonymity Rewebber (aka Janus) www.rewebber.de

Author & Connection Based ToolHTTP ProxyURL Rewrite using public key crypto

U=http://www.cs.nyu.edu/~waldman/publius.html

Ek (M)=Encrypt message M with public key k

http://www.rewebber.com/surf-encrypted/Ek(U)

Page 11: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Location Based Anonymity

Taz & Rewebber

Computers with public/private key pair

Each runs HTTP proxy server

Encryption similar to onion-routing

TAZ servers translate name.taz to address

Down server = document irretrievable

www.firstserver.com:100/STOPREADINGTHISANDPAYATTENTIONTOTHESPEAKER

Page 12: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Eternity Service

Ross Anderson (Univ. of Cambridge) Network of servers – resists DOS attacks Fee based Files cannot be removed or updated Digital Libraries

Page 13: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Eternity Systems

Usenet Eternity

Scaled Down Eternity System

Usenet is storage medium

Formatting using PGP, SHA1

Send to alt.anonymous.messages

Server caches and performs updates

Connect via WWW browser

Page 14: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Eternity Inspired Systems Freenet

“Adaptive Network”Local caching

Anonymous query, retrieval

IntermemorySelf-replicating persistant RAMDonate hard disk space

Page 15: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

File Sharing Systems

Napster

Peer-to-peer file sharing

Peers can capture IP address or peer

Gnutella

Anonymous query

Peer to peer file transfer, IP capture

Page 16: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Publius Overview

Publius Content – Static content (HTML, images, PDF, etc) with desired properties.

Publishers – Post Publius content Servers – Host Publius content Retrievers – Browse Publius content

Page 17: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Publius Servers

whitehouse.gov

library.fr

publius.uk

www.redcross.org

www.nyu.edu

Publius Server Table

publius.uk

www.nyu.edu

library.fr

whitehouse.gov

www.redcross.org

Page 18: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Publish OperationD = Document To Publish K=Key

Shamir Secret Sharing

ShareShare11 ShareShare22 ShareShare33

K

ShareShare44

MD5 ( D . Sharei ) / Mod 5 = Index Into Server Table

Index 0 = www.redcross.org Index 3 = www.nyu.edu

Store D encrypted under K, and one Share on Server

Page 19: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Publish Overview Servers available to store content Encrypt document with secret key K Secret split key K into (m,k) shares (Shamir) Store encrypted document and share on m servers Form URL cryptographically tied to document Distribute URL – Publius URL http://!publius!/

1e6adsg673h0=hgj7889340=yareyoureadingthis=12asbnm8945

Page 20: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Retrieve Overview

Break apart URL to discover document locations

Retrieve encrypted document and share from k locations

Reassemble Key K from shares Decrypt retrieved document Check for tampering View in WWW browser

Page 21: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Retrieve Operationhttp://!publius!/MD5(D.Share1 )MD5 (D.Share2)…

http://!publius!/unReaDableUrL

Index = MD5(D.Share1) Mod Table_Size

From www.redcross.org Get Encrypted File, Share

Key = combine Shares

D = Decrypt File with Key

Tamper Check = MD5(D.Share1) = value in URL

Page 22: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Tradeoffs N = # servers with Content & Share K = # Shares needed to reconstruct the Key Higher N

Greater availability

Harder to censor Higher K

Decreased performance

Greater tamper protection

Possibly Easier To Censor

Page 23: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Update and Delete Operations Update – “update” file, MD5(password.IP)

Delete – MD5(password .IP)

Threats – Place update file on server Brute force to delete files

URL contains update bit - Don’t accept updates

Publish Option – No Delete or Update

Page 24: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Mutually Hyperlinked Content

Publish B, Modify A, Publish A

Publish B First – Invalid A LinkPublish A First – Invalid B Link

Problem: Content cryptographically tied to URL

Page 25: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Hyperlinked Content Solution

Publish A, B

Modify A, B

Republish A,B

Update A,B

Hyperlink

HyperlinkHyperlink

Update

Update

Page 26: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

User Interface

InternetPublius Proxy

Browser Based GUI

http://!publius!/URL http://!publius!/PUBLISH

http://!publius!/UPDATE http://!publius!/DELETE

Store MIME type in first three bytes of fileSend correct Content-Type to browser

Page 27: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Threats & Limitations

• Share Deletion or Corruption • Update File Deletion or Corruption • Denial of Service Attacks

• Threats to Publisher Anonymity

• “Rubber-Hose Cryptanalysis”

Page 28: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Live Trial (8/7/2000)

• 3 Week Server Recruitment Period

• 100 Volunteers, Test Script distributed

• 53 successfully installed test script

• 44 successfully installed.

• Proxy - server version of client, 9 volunteers Must trust proxy – see file, password for Publish Sees URL for retrieve

• Over 550 client requests

Page 29: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Contributions & Availability

• Automatic Tamper Checking Mechanism

• Update / Delete Method

• Publishing Mutually Hyperlinked Content

• 1500 Lines of Perl

• Uses Crypto++ 3.2 – Crypto Library (C++)

Page 30: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Future Work

Remove dependence on server list

- URL encodes locations, tamper check Split content

- Krawczyk – Information Dispersal CPU payment scheme (Dwork, Naor) Automatic replication across servers

- Intermemory model

Page 31: Publius A Robust, Tamper Evident, Censorship Resistant  WWW Based Publishing System

Publius WWW Site

Source Code & Technical Paper

http://cs.nyu.edu/waldman/publius