ParTEETor: A System for Partial Deployments of TEEs within Tor

Rachel King, Quinn Burke, Yohan Beugin, Blaine Hoak, Kunyang Li, Eric Pauley, Ryan Sheatsley, Patrick McDaniel

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

The Tor anonymity network allows users such as political activists and those under repressive governments to protect their privacy when communicating over the internet. At the same time, Tor has been demonstrated to be vulnerable to several classes of deanonymizing attacks that expose user behavior and identities. Prior work has shown that these threats can be mitigated by leveraging trusted execution environments (TEEs). However, previous proposals assume that all relays in the network will be TEE-based - -which as a practical matter is unrealistic. In this work, we introduce ParTEETor, a Tor-variant system, which leverages partial deployments of TEEs to thwart extend the relay selection algorithm to address the classes of attacks by enforcing a specific TEE circuit configuration. We evaluate ParTEETor for performance and privacy. Our evaluation demonstrates that at even a small TEE penetration (e.g., 10% of relays are TEE-based), users can reach performance of Tor today while enforcing a security policy to guarantee protection from at least two classes of attacks. Overall, we find that partial deployments of TEEs can substantially improve the security of Tor, without a significant impact on performance or privacy.

Original languageEnglish (US)
Title of host publicationWPES 2024 - Proceedings of the 23rd Workshop on Privacy in the Electronic Society
PublisherAssociation for Computing Machinery, Inc
Pages40-46
Number of pages7
ISBN (Electronic)9798400712395
DOIs
StatePublished - Nov 21 2024
Event23rd Workshop on Privacy in the Electronic Society, WPES 2024 - Salt Lake City, United States
Duration: Oct 14 2024Oct 18 2024

Publication series

NameWPES 2024 - Proceedings of the 23rd Workshop on Privacy in the Electronic Society

Conference

Conference23rd Workshop on Privacy in the Electronic Society, WPES 2024
Country/TerritoryUnited States
CitySalt Lake City
Period10/14/2410/18/24

All Science Journal Classification (ASJC) codes

  • Software

Fingerprint

Dive into the research topics of 'ParTEETor: A System for Partial Deployments of TEEs within Tor'. Together they form a unique fingerprint.

Cite this