"What the heck is secure computing?"
What is “secure computing”? Why should it be important to me? Now that it is important to me, how can I use secure computing for my work? This presentation will give an overview of the two main types of secure computing. We explain the fundamental ideas behind the technology and point out important details. We also present ideas on how this technology can be used for new applications, and last but not least, we answer your questions.
Speaker:
Matthias Gusenbauer,
Talk language: English
About the Speaker:
*********************
I am a researcher at SBA Research in Vienna, Austria. My research focuses on bridging people and technology to solve issues in security and privacy. In order to accomplish this I focus on usable security and privacy with an interest in applied cryptography.
I have been a research fellow at the National Institute of Informatics (NII) in Tokyo to work on visualizing network traces. During a second stay with the NII as part of Echizen Laboratory I worked on visualizing the Bitcoin blockchain. Now I continue to work in the domain of usable security, cryptography and privacy.
Transcript: New from BookNet Canada for 2024: BNC BiblioShare - Tech Forum 2024
SBA Live Academy, What the heck is secure computing
1. Klassifikation: Öffentlich
Welcome
to the SBA LiveAcademy
#bleibdaheim #remotelearning
Today: What the Heck is Secure Computing?
by Matthias Gusenbauer
You are automatically muted by entry, please use the chat for interacting with us.
This talk will be recorded as soon as the presentation starts!
Recording will end BEFORE the Q&A Session starts.
3. Klassifikation: Öffentlich 3
Whatis Secure Computing?
• Compute on encrypted data
o Secure Multiparty Computation (MPC)
– Jointly compute on private data
– "Data sharing without sharing data"
o Fully Homomorphic Encryption (FHE)
– Compute on ciphertext
– Outsource computation without losing privacy
SBA Research gGmbH, 2020
4. Klassifikation: Öffentlich 4
MPC vs FHE
+ - Basis
MPC
• Faster
• More tool choice
• More
communication
• Secret sharing
• Oblivioustransfer
FHE
• Less
communication
• Slower
• Less tool choice
• Mathematical
properties of
ciphertext
SBA Research gGmbH, 2020
5. Klassifikation: Öffentlich 5
MPC Example
• Average salary of Academy participants
• Only learn output (nothing else)
• Secret sharing
o Additive Secret Sharing
SBA Research gGmbH, 2020
13. Klassifikation: Öffentlich 13
MPC Use Cases
• Privacy
o Machine learning
o Credit score computation
o Combining health data
• Security
o System resiliency
o Remove single point of failure (e.g. key splitting)
o Protection of assets
SBA Research gGmbH, 2020
14. Klassifikation: Öffentlich 14
ImportantConsiderations
• 2PC or MPC?
• Honest or dishonest majority?
• Semi-honest or malicious security?
• Cryptography knowledge in house?
o Some pitfalls (inadvertent leakage, performance)
• Open to work with research code?
o Proprietary platforms (tech support)
o Open source tools (more choices)
SBA Research gGmbH, 2020
15. Klassifikation: Öffentlich 15
Existing Tools
• Proprietary
o Unbound
o Cybernetica (Sharemind)
• Open source
o JIFF
o Scale-Mamba
o …
SBA Research gGmbH, 2020
16. Klassifikation: Öffentlich 16
My 3 Key Take-Aways
1. Secure Computation is possible (MPC)
2. MPC replaces trusted third parties
3. MPC can enable new business cases and
increase my security
SBA Research gGmbH, 2020
17. Klassifikation: Öffentlich 17
My Study
• MPC adoption and lack thereof
• 30-45 minute interview (recorded – 20 EUR
Amazon voucher)
• Strict protection of participants' privacy
• https://de.surveymonkey.com/r/PCB29X9 (or
send me an email)
SBA Research gGmbH, 2020
19. Klassifikation: Öffentlich 19
ProfessionalServices
Penetration Testing
Architecture Reviews
Security Audit
Security Trainings
Incident Response Readiness
ISMS & ISO 27001 Consulting
Bridging Science and Industry
Applied Research
Industrial Security| IIoT Security|
Mathematics for SecurityResearch |
Machine Learning| Blockchain | Network
Security| Sustainable Software Systems |
Usable Security
SBAResearch
Knowledge Transfer
SBA Live Academy | sec4dev | Trainings |
Events | Teaching | sbaPRIME
Contact us: anfragen@sba-research.org
20. Klassifikation: Öffentlich 20
References
• Character images "Shadow Tactics – Blades of the
Shogun
• MPC overview paper "SoK: General Purpose
Compilers for Secure Multi-Party Computation"
by Hastings et al.
• Unbound - https://www.unboundtech.com/
• Sharemind - https://sharemind.cyber.ee/
SBA Research gGmbH, 2020
21. Klassifikation: Öffentlich 21
#bleibdaheim #remotelearning
Coming up @ SBA Live Academy
Datum einfügen, 13.00 Uhr, live:
„Talk Titel einfügen“
by „Speaker einfügen“
Join our MeetUp Group!
https://www.meetup.com/Security-Meetup-by-SBA-Research/
Insert here a picture related
to the next talk, if you don‘t
get / find one use the
Academy Picture