[ZISC Lunch Seminar] Less is More: a Versatile Anonymity System based on Intel SGX

Thu 30Mar2017

Chen Chen, ETH Zurich

From 12.00 until 13.30

At CNB/F/110 (Lunch) + CNB/F/100.9 (Seminar), ETH Zurich

Universitätstrasse 6, 8092 Zurich


Current security systems such as Tor make use of cryptographic approaches to
achieve their properties -- however, common cryptographic approaches do not
provide any guarantees of the code that has executed. Thanks to the commodity
Intel SGX execution environment, which offers a remotely verifiable isolated
execution environment called enclave, we can achieve strong security
properties for designing secure distributed systems.


In this paper, we propose ARIES, a secure and efficient anonymous communication
system that uses SGX. ARIES establishes an overlay connecting pairwise-verified
enclaves, creating a network of trustworthy entities. Such a trust-based overlay
essentially allows ARIES to avoid using layered encryption/decryption (used in
other anonymous communication systems) and incorporate new applications:
explicit Congestion Control, incentivizing participants, content-based
censorship, etc. In this paper, we present the design and implementation of

