论文标题
DP-PSI:私人和安全的集体交叉点
DP-PSI: Private and Secure Set Intersection
论文作者
论文摘要
对安全2方面计算进行分类的一种私人集交叉点(PSI)的方法是,相交是(a)向双方揭示还是(b)在双方隐藏,而仅匹配有效载荷的计算功能才显示出来。两者都旨在提供加密安全性,同时避免揭露对方的无与伦比的元素。但是,在一个实际情况下,它们可能不足以实现安全性和隐私性:当需要十字路口并且必须出于法律,道德和竞争性原因而考虑通过该功能输出泄漏的信息。例如,两个政党(例如广告商和广告供应商)持有PSI计算的用户集,以在联合营销应用程序中向广告供应商揭示普通用户。除了标准PSI所需的安全保证以确保无与伦比的元素所需的安全保证外,即使元素/用户是否属于另一方,均不允许“单一”,即使共同广告需要共同用户。这是一个令人着迷的问题,没有PSI技术提供解决方案。 In light of this shortcoming, we compose differential privacy (DP) and S2PC to provide the best of both worlds and propose differentially-private PSI (DP-PSI), a new privacy model that shares PSI's strong security protection while adhering to the GDPR's recent formalization of the notion of excluding "signaling out" attacks by each party except with very low probability.
One way to classify private set intersection (PSI) for secure 2-party computation is whether the intersection is (a) revealed to both parties or (b) hidden from both parties while only the computing function of the matched payload is exposed. Both aim to provide cryptographic security while avoiding exposing the unmatched elements of the other. They may, however, be insufficient to achieve security and privacy in one practical scenario: when the intersection is required and the information leaked through the function's output must be considered for legal, ethical, and competitive reasons. Two parties, such as the advertiser and the ads supplier, hold sets of users for PSI computation, for example, to reveal common users to the ads supplier in joint marketing applications. In addition to the security guarantees required by standard PSIs to secure unmatched elements, neither party is allowed to "single out" whether an element/user belongs to the other party or not, even though common users are required for joint advertising. This is a fascinating problem for which none of the PSI techniques have provided a solution. In light of this shortcoming, we compose differential privacy (DP) and S2PC to provide the best of both worlds and propose differentially-private PSI (DP-PSI), a new privacy model that shares PSI's strong security protection while adhering to the GDPR's recent formalization of the notion of excluding "signaling out" attacks by each party except with very low probability.