ObliviAd: Provably Secure and Practical Online Behavioral Advertising

被引:55
|
作者
Backes, Michael
Kate, Aniket
Maffei, Matteo
Pecina, Kim
机构
关键词
PERFORMANCE;
D O I
10.1109/SP.2012.25
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Online behavioral advertising (OBA) involves the tracking of web users' online activities in order to deliver tailored advertisements. OBA has become a rapidly increasing source of revenue for a number of web services, and it is typically conducted by third-party data analytics firms such as brokers, which track user behaviors across web-sessions using mechanisms such as persistent cookies. This practice raises significant privacy concerns among users and privacy advocates alike. Therefore, the task of designing OBA systems that do not reveal user profiles to third parties has been receiving growing interest from the research community. Nevertheless, existing solutions are not ideal for privacy preserving OBA: some of them do not provide adequate privacy to users or adequate targeting information to brokers, while others require trusted third parties that are difficult to realize. In this paper, we propose ObliviAd,(1) a provably secure architecture for privacy preserving OBA. The distinguishing features of our approach are the usage of secure hardware-based private information retrieval for distributing advertisements and high-latency mixing of electronic tokens for billing advertisers without disclosing any information about client profiles to brokers. ObliviAd does not assume any trusted party and provides brokers an economical alternative that preserves the privacy of users without hampering the precision of ads selection. We present the first formal security definitions for OBA systems (namely, profile privacy, profile unlinkability, and billing correctness) and conduct a formal security analysis of ObliviAd using ProVerif, an automated cryptographic protocol verifier, establishing the aforementioned security properties against a strong adversarial model. Finally, we demonstrated the practicality of our approach with an experimental evaluation.
引用
收藏
页码:257 / 271
页数:15
相关论文
共 50 条
  • [31] Efficient and provably secure attribute-based online/offline encryption schemes
    Ma, Hai-Ying, 1600, Editorial Board of Journal on Communications (35):
  • [32] Data-driven digital advertising: benefits and risks of online behavioral advertising
    Aiolfi, Simone
    Bellini, Silvia
    Pellegrini, Davide
    INTERNATIONAL JOURNAL OF RETAIL & DISTRIBUTION MANAGEMENT, 2021, 49 (07) : 1089 - 1110
  • [33] Provably secure and practical quantum key distribution over 307 km of optical fibre
    Korzh, Boris
    Lim, Charles Ci Wen
    Houlmann, Raphael
    Gisin, Nicolas
    Li, Ming Jun
    Nolan, Daniel
    Sanguinetti, Bruno
    Thew, Rob
    Zbinden, Hugo
    NATURE PHOTONICS, 2015, 9 (03) : 163 - 168
  • [34] A practical public key cryptosystem provably secure against adaptive chosen ciphertext attack
    Cramer, R
    Shoup, V
    ADVANCES IN CRYPTOLOGY - CRYPTO'98, 1998, 1462 : 13 - 25
  • [35] Online Behavioral Advertising: A Literature Review and Research Agenda
    Boerman, Sophie C.
    Kruikemeier, Sanne
    Borgesius, Frederik J. Zuiderveen
    JOURNAL OF ADVERTISING, 2017, 46 (03) : 363 - 376
  • [36] Can Users Control Online Behavioral Advertising Effectively?
    Cranor, Lorrie Faith
    IEEE SECURITY & PRIVACY, 2012, 10 (02) : 93 - 96
  • [37] Exploring how consumers cope with online behavioral advertising
    Ham, Chang-Dae
    INTERNATIONAL JOURNAL OF ADVERTISING, 2017, 36 (04) : 632 - 658
  • [38] AN ECONOMIC ANALYSIS OF ONLINE ADVERTISING USING BEHAVIORAL TARGETING
    Chen, Jianqing
    Stallaert, Jan
    MIS QUARTERLY, 2014, 38 (02) : 429 - +
  • [39] Secure untrusted binaries - Provably!
    Winwood, S
    Chakravarty, MMT
    FORMAL ASPECTS IN SECURITY AND TRUST, 2006, 3866 : 171 - 186
  • [40] An architecture for provably secure computation
    Ajtai, M
    Dwork, C
    Stockmeyer, L
    LATIN 2006: THEORETICAL INFORMATICS, 2006, 3887 : 56 - 67