Aug 2026· IACR Cryptology ePrint Archive· Vol 2026, pp. 1600· 0 citations· 51 references
Computer Science
TL;DR
Paras, the first two-server protocol for private histogram computation that achieves robustness against collusion between a malicious server and arbitrarily many malicious clients is presented, and is shown to be highly efficient and scalable.
Abstract
Private histogram computation is a fundamental building block for many data analytics tasks, enabling frequency analysis without revealing individual inputs. Existing protocols achieving robustness against malicious clients and servers typically require three servers with limited adversarial tolerance, restricting practicality.
In this work, we present Paras, the first two-server protocol for private histogram computation that achieves robustness against collusion between a malicious server and arbitrarily many malicious clients. Paras builds upon distributed point function-based approaches and introduces novel consistency checks leveraging vector oblivious linear evaluation (VOLE) to enforce both input correctness and output integrity. To realize these checks, we design two new cryptographic primitives: (1) aBV, an authenticated bit verification protocol that ensures VOLE committed shares correspond to valid bits, and (2) adIPA, an authenticated double inner product argument that enables secure consistency checks across two different VOLE sessions. These primitives may be of independent interest for other secure computation tasks.
We show that Paras is highly efficient and scalable: clients incur minimal cost independent of domain size, while servers achieve low per-client runtime, communication, and storage even at scale. For example, with 8192 clients over a domain of 128 inputs, each server requires only 14 ms runtime and 24 KB communication per client.
It is proved that TriVer satisfies client data privacy, aggregation correctness, and aggregation-result non-forgeability in the Random Oracle Model under ECDLP hardness, HPRF pseudorandomness, and hash collision resistance, against a fully malicious server that may collude with a subset of aggregators and clients.
Guang-Ye Zhu, Liqiang Wu, Weidong Du· Journal of King Saud Univers...· 0 citations
This work proposes a fault-tolerant PIR protocol based on a newly designed (t,p)-threshold distributed point function (FT-DPF), and proves that the stateless protocol guarantees (t−1)-computational privacy under the semi-honest model.
Dazeng Yuan, Xi-Heng Liu, Bin Liu· Entropy· 0 citations
A privacy model for searchable symmetric encryption protocols that makes adversarial power a central parameter and induces four privacy levels giving rise to a privacy lattice is proposed, enabling reasoning about how privacy guarantees change under different adversarial capabilities.
Manuela Horduna· International Conference on...· 0 citations
A novel VMKSE scheme (VMKSE-BFF) is presented by adopting BFF, which can simultaneously support verifiability of and secure data sharing in a multi-user setting and a comparison with the existing VMKSE schemes is provided.
Yandong Su, Bing-Hang Wang, Yan-Jie Xiang et al.· Mathematics· 0 citations
Leveraging TFSS, ThORY achieves leakage-free keyword search and document identifier retrieval under a (t,p)-threshold model, hiding access, search, and volume patterns against any adversary corrupting fewer than t servers.
C. Kumar, Sikhar Patranabis, Debdeep Mukhopadhyay· IACR Communications in Crypt...· 0 citations
An automated formal verification study of the Secure Aggregation protocol using ProVerif is presented, demonstrating how automated formal verification can support trustworthy and verifiable federated learning software systems.
Yuping Yan, Zi-Cen Zhao, Ming Fei et al.· International Conference on...· 0 citations
We use cookies to run the site and, with your consent, for analytics and to show ads.
See our Cookie Policy.