On Tue, Sep 9, 2014 at 9:56 PM, Brendan McMillion <
[email protected]> wrote:

> You can post the index and the encrypted corpus on your Twitter, if you
> please.  It doesn't matter.
>

That's all and good, but exactly *how* are the contents of the index hidden
from the attacker?

As a counterexample, let's say we're masking the contents of the index
using a deterministic encryption scheme like SIV. An attacker can send you
a message containing the word "target" 1000 times, then observe when one of
the index's counters changes by ~1000. The ciphertext associated with the
counter that increments is likely to be our target word.

How are these sorts of attacks prevented?

-- 
Tony Arcieri
_______________________________________________
Messaging mailing list
[email protected]
https://moderncrypto.org/mailman/listinfo/messaging

Reply via email to