Skip to main navigation Skip to search Skip to main content

Boomerang: Metadata-Private Messaging under Hardware Trust

Research output: Chapters, Conference Papers, Creative and Literary WorksRGC 32 - Refereed conference paper (with host publication)peer-review

Abstract

In end-to-end encrypted (E2EE) messaging systems, protecting communication metadata, such as who is communicating with whom, at what time, etc., remains a challenging problem. Existing designs mostly fall into the balancing act among security, performance, and trust assumptions: 1) designs with cryptographic security often use hefty operations, incurring performance roadblocks and expensive operational costs for large-scale deployment; 2) more performant systems often follow a weaker security guarantee, like differential privacy, and generally demand more trust from the involved servers. So far, there has been no dominant solution. In this paper, we take a different technical route from prior art, and propose Boomerang, an alternative metadata-private messaging system leveraging the readily available trust assumption on secure enclaves (as those emerging in the cloud). Through a number of carefully tailored oblivious techniques on message shuffling, workload distribution, and proactive patching of the communication pattern, Boomerang brings together low latency, horizontal scalability, and cryptographic security, without prohibitive extra cost. With 32 machines, Boomerang achieves 99th percentile latency of 7.76 seconds for 220 clients. We hope Boomerang offers attractive alternative options to the current landscape of metadata-private messaging designs. © 2023 by The USENIX Association.

Original languageEnglish
Title of host publicationProceedings of the 20th USENIX Symposium on Networked Systems Design and Implementation (NSDI ’23)
PublisherUSENIX Association
Pages877-899
Number of pages23
ISBN (Print)9781939133335
Publication statusPublished - Apr 2023
Event20th USENIX Symposium on Networked Systems Design and Implementation (NSDI ’23) - Boston, United States
Duration: 17 Apr 202319 Apr 2023
https://www.usenix.org/conference/nsdi23
https://www.usenix.org/conference/nsdi23/technical-sessions

Publication series

NameProceedings of the USENIX Symposium on Networked Systems Design and Implementation, NSDI

Conference

Conference20th USENIX Symposium on Networked Systems Design and Implementation (NSDI ’23)
PlaceUnited States
CityBoston
Period17/04/2319/04/23
Internet address

Bibliographical note

Research Unit(s) information for this publication is provided by the author(s) concerned.

Funding

We thank the anonymous reviewers and our shepherd, Dr. Jay Lorch, for their helpful and valuable feedback, and Tencent Yunding lab for providing the Intel SGX cluster and generous technical support. This work was partially supported by the NSFC under Grants U20B2049, U21B2018, 62202228, and 62032021, the HK RGC under Grants N_CityU139/21, RFS2122-1S04, C2004-21GF, R1012-21, and R6021-20F, and the Natural Science Foundation of Jiangsu Province under Grant BK20210330.

RGC Funding Information

  • RGC-funded

Fingerprint

Dive into the research topics of 'Boomerang: Metadata-Private Messaging under Hardware Trust'. Together they form a unique fingerprint.

Cite this