Erjun Zhou;Jing Chen;Kun He;Meng Jia;Ruiying Du;Mei Wang;Yunyu Yao
{"title":"FACT: Sealed-Bid Auction With Full Privacy via Threshold Fully Homomorphic Encryption","authors":"Erjun Zhou;Jing Chen;Kun He;Meng Jia;Ruiying Du;Mei Wang;Yunyu Yao","doi":"10.1109/TSC.2024.3439995","DOIUrl":null,"url":null,"abstract":"Sealed-bid auction is a common mechanism for selling and buying commodities. However, existing auction schemes to protect bids require at least squared computation and communication complexity for the bidders or rely on trusted auctioneers or third parties. To address the above problems, we propose a secure and efficient sealed-bid auction framework, called FACT. We design a lightweight threshold fully homomorphic encryption scheme as the building block. Our framework does not rely on any trusted auctioneer and fulfills a stronger security guarantee, called full privacy, i.e., only the seller and the winning bidder can determine the auction result. While our framework applies to first-price sealed-bid, it can easily be extended to support second-price sealed-bid (i.e., Vickrey auction) with the same security guaranteed. Our framework also supports the dynamic joining and exiting of sellers and bidders. Meanwhile, our framework reduces the bidders’ overhead and the number of interactions to a constant level. We formally prove the security of our framework in the semi-honest adversary model. We implement FACT and run experiments comparing its performance against existing schemes. We find that our framework not only achieves a stronger security guarantee but also shows significant performance improvement compared to existing schemes.","PeriodicalId":13255,"journal":{"name":"IEEE Transactions on Services Computing","volume":"17 6","pages":"3627-3639"},"PeriodicalIF":5.8000,"publicationDate":"2024-08-07","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"IEEE Transactions on Services Computing","FirstCategoryId":"94","ListUrlMain":"https://ieeexplore.ieee.org/document/10629060/","RegionNum":2,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"COMPUTER SCIENCE, INFORMATION SYSTEMS","Score":null,"Total":0}
引用次数: 0
Abstract
Sealed-bid auction is a common mechanism for selling and buying commodities. However, existing auction schemes to protect bids require at least squared computation and communication complexity for the bidders or rely on trusted auctioneers or third parties. To address the above problems, we propose a secure and efficient sealed-bid auction framework, called FACT. We design a lightweight threshold fully homomorphic encryption scheme as the building block. Our framework does not rely on any trusted auctioneer and fulfills a stronger security guarantee, called full privacy, i.e., only the seller and the winning bidder can determine the auction result. While our framework applies to first-price sealed-bid, it can easily be extended to support second-price sealed-bid (i.e., Vickrey auction) with the same security guaranteed. Our framework also supports the dynamic joining and exiting of sellers and bidders. Meanwhile, our framework reduces the bidders’ overhead and the number of interactions to a constant level. We formally prove the security of our framework in the semi-honest adversary model. We implement FACT and run experiments comparing its performance against existing schemes. We find that our framework not only achieves a stronger security guarantee but also shows significant performance improvement compared to existing schemes.
期刊介绍:
IEEE Transactions on Services Computing encompasses the computing and software aspects of the science and technology of services innovation research and development. It places emphasis on algorithmic, mathematical, statistical, and computational methods central to services computing. Topics covered include Service Oriented Architecture, Web Services, Business Process Integration, Solution Performance Management, and Services Operations and Management. The transactions address mathematical foundations, security, privacy, agreement, contract, discovery, negotiation, collaboration, and quality of service for web services. It also covers areas like composite web service creation, business and scientific applications, standards, utility models, business process modeling, integration, collaboration, and more in the realm of Services Computing.