Non-interactive distributed encryption: a new primitive for revocable privacy

Published: 17 October 2011 Publication History


In this paper we introduce and instantiate a new cryptographic primitive, called non-interactive distributed encryption, that allows a receiver to decrypt a ciphertext only if a minimum number of different senders encrypt the same plaintext. The new functionality can be seen as the dual of the functionality provided by threshold cryptosystems. It is shown that this primitive can be used to solve real-world problems balancing security and privacy needs. In particular it is used to solve the canvas cutters problem (introduced below), that might be of independent interest.


Published In

WPES '11: Proceedings of the 10th annual ACM workshop on Privacy in the electronic society
October 2011
192 pages
Published: 17 October 2011


  distributed encryption
  privacy
  threshold cryptosystems


Cited By

View all
  • (2019)Cryptography for #MeTooProceedings on Privacy Enhancing Technologies10.2478/popets-2019-00542019:3(409-429)Online publication date: 12-Jul-2019
  • (2019)Two-Client and Multi-client Functional Encryption for Set IntersectionInformation Security and Privacy10.1007/978-3-030-21548-4_6(97-115)Online publication date: 3-Jul-2019
  • (2016)Revocable Privacy: Principles, Use Cases, and TechnologiesPrivacy Technologies and Policy10.1007/978-3-319-31456-3_7(124-143)Online publication date: 10-Mar-2016
  • (2015)Privately (and Unlinkably) Exchanging Messages Using a Public Bulletin BoardProceedings of the 14th ACM Workshop on Privacy in the Electronic Society10.1145/2808138.2808142(85-94)Online publication date: 12-Oct-2015
  • (2014)Forward-Secure Distributed EncryptionPrivacy Enhancing Technologies10.1007/978-3-319-08506-7_7(123-142)Online publication date: 2014

