{"id":"https://openalex.org/W4416549279","doi":"https://doi.org/10.1145/3719027.3765075","title":"Peekaboo, I See Your Queries: Passive Attacks Against DSSE Via Intermittent Observations","display_name":"Peekaboo, I See Your Queries: Passive Attacks Against DSSE Via Intermittent Observations","publication_year":2025,"publication_date":"2025-11-19","ids":{"openalex":"https://openalex.org/W4416549279","doi":"https://doi.org/10.1145/3719027.3765075"},"language":null,"primary_location":{"id":"doi:10.1145/3719027.3765075","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3719027.3765075","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2025 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5092911097","display_name":"Hao Nie","orcid":"https://orcid.org/0009-0009-9961-5817"},"institutions":[{"id":"https://openalex.org/I47720641","display_name":"Huazhong University of Science and Technology","ror":"https://ror.org/00p991c53","country_code":"CN","type":"education","lineage":["https://openalex.org/I47720641"]}],"countries":["CN"],"is_corresponding":true,"raw_author_name":"Hao Nie","raw_affiliation_strings":["Huazhong University of Science and Technology, Wuhan, Hubei, China"],"affiliations":[{"raw_affiliation_string":"Huazhong University of Science and Technology, Wuhan, Hubei, China","institution_ids":["https://openalex.org/I47720641"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5100392305","display_name":"Wei Wang","orcid":"https://orcid.org/0000-0003-4457-6709"},"institutions":[{"id":"https://openalex.org/I47720641","display_name":"Huazhong University of Science and Technology","ror":"https://ror.org/00p991c53","country_code":"CN","type":"education","lineage":["https://openalex.org/I47720641"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wei Wang","raw_affiliation_strings":["Huazhong University of Science and Technology, Wuhan, Hubei, China"],"affiliations":[{"raw_affiliation_string":"Huazhong University of Science and Technology, Wuhan, Hubei, China","institution_ids":["https://openalex.org/I47720641"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5001599037","display_name":"Peng Xu","orcid":"https://orcid.org/0000-0003-4268-4976"},"institutions":[{"id":"https://openalex.org/I47720641","display_name":"Huazhong University of Science and Technology","ror":"https://ror.org/00p991c53","country_code":"CN","type":"education","lineage":["https://openalex.org/I47720641"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Peng Xu","raw_affiliation_strings":["Huazhong University of Science and Technology, Wuhan, Hubei, China"],"affiliations":[{"raw_affiliation_string":"Huazhong University of Science and Technology, Wuhan, Hubei, China","institution_ids":["https://openalex.org/I47720641"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5113271918","display_name":"Wei Chen","orcid":"https://orcid.org/0009-0005-8983-9375"},"institutions":[{"id":"https://openalex.org/I47720641","display_name":"Huazhong University of Science and Technology","ror":"https://ror.org/00p991c53","country_code":"CN","type":"education","lineage":["https://openalex.org/I47720641"]}],"countries":["CN"],"is_corresponding":false,"raw_author_name":"Wei Chen","raw_affiliation_strings":["Huazhong University of Science and Technology, Wuhan, Hubei, China"],"affiliations":[{"raw_affiliation_string":"Huazhong University of Science and Technology, Wuhan, Hubei, China","institution_ids":["https://openalex.org/I47720641"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5049154222","display_name":"Laurence T. Yang","orcid":"https://orcid.org/0000-0002-7986-4244"},"institutions":[{"id":"https://openalex.org/I197191942","display_name":"St. Francis Xavier University","ror":"https://ror.org/01wcaxs37","country_code":"CA","type":"education","lineage":["https://openalex.org/I197191942"]}],"countries":["CA"],"is_corresponding":false,"raw_author_name":"Laurence T. Yang","raw_affiliation_strings":["St. Francis Xavier University, Antigonish, Nova Scotia, Canada"],"affiliations":[{"raw_affiliation_string":"St. Francis Xavier University, Antigonish, Nova Scotia, Canada","institution_ids":["https://openalex.org/I197191942"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5063847107","display_name":"Mauro Conti","orcid":"https://orcid.org/0000-0002-3612-1934"},"institutions":[{"id":"https://openalex.org/I4210095181","display_name":"\u00d6rebro County Council","ror":"https://ror.org/00maqj547","country_code":"SE","type":"government","lineage":["https://openalex.org/I4210095181"]},{"id":"https://openalex.org/I26437253","display_name":"\u00d6rebro University","ror":"https://ror.org/05kytsw45","country_code":"SE","type":"education","lineage":["https://openalex.org/I26437253"]}],"countries":["SE"],"is_corresponding":false,"raw_author_name":"Mauro Conti","raw_affiliation_strings":["University of Padua, Padua, Veneto, Italy and \u00d6rebro University, \u00d6rebro, \u00d6rebro County, Sweden"],"affiliations":[{"raw_affiliation_string":"University of Padua, Padua, Veneto, Italy and \u00d6rebro University, \u00d6rebro, \u00d6rebro County, Sweden","institution_ids":["https://openalex.org/I26437253","https://openalex.org/I4210095181"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5001485404","display_name":"Kaitai Liang","orcid":"https://orcid.org/0000-0003-0262-7678"},"institutions":[{"id":"https://openalex.org/I16231767","display_name":"Turku University of Applied Sciences","ror":"https://ror.org/04s0yt949","country_code":"FI","type":"education","lineage":["https://openalex.org/I16231767"]}],"countries":["FI"],"is_corresponding":false,"raw_author_name":"Kaitai Liang","raw_affiliation_strings":["TU Delft, Delft, South Holland, Netherlands and University of Turku, Turku, Southwest Finland, Finland"],"affiliations":[{"raw_affiliation_string":"TU Delft, Delft, South Holland, Netherlands and University of Turku, Turku, Southwest Finland, Finland","institution_ids":["https://openalex.org/I16231767"]}]}],"institutions":[],"countries_distinct_count":4,"institutions_distinct_count":7,"corresponding_author_ids":["https://openalex.org/A5092911097"],"corresponding_institution_ids":["https://openalex.org/I47720641"],"apc_list":null,"apc_paid":null,"fwci":0.0,"has_fulltext":false,"cited_by_count":0,"citation_normalized_percentile":{"value":0.20122357,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":null,"biblio":{"volume":null,"issue":null,"first_page":"2429","last_page":"2443"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.920199990272522,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.920199990272522,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.0575999990105629,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10764","display_name":"Privacy-Preserving Technologies in Data","score":0.002400000113993883,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/encryption","display_name":"Encryption","score":0.6905999779701233},{"id":"https://openalex.org/keywords/padding","display_name":"Padding","score":0.546999990940094},{"id":"https://openalex.org/keywords/inverted-index","display_name":"Inverted index","score":0.5343999862670898},{"id":"https://openalex.org/keywords/information-leakage","display_name":"Information leakage","score":0.512499988079071},{"id":"https://openalex.org/keywords/leakage","display_name":"Leakage (economics)","score":0.4291999936103821},{"id":"https://openalex.org/keywords/symmetric-key-algorithm","display_name":"Symmetric-key algorithm","score":0.4043000042438507},{"id":"https://openalex.org/keywords/brute-force-attack","display_name":"Brute-force attack","score":0.3894999921321869},{"id":"https://openalex.org/keywords/cryptography","display_name":"Cryptography","score":0.33899998664855957}],"concepts":[{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.741599977016449},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.6905999779701233},{"id":"https://openalex.org/C124101348","wikidata":"https://www.wikidata.org/wiki/Q172491","display_name":"Data mining","level":1,"score":0.5649999976158142},{"id":"https://openalex.org/C165435473","wikidata":"https://www.wikidata.org/wiki/Q1509884","display_name":"Padding","level":2,"score":0.546999990940094},{"id":"https://openalex.org/C130590232","wikidata":"https://www.wikidata.org/wiki/Q1671754","display_name":"Inverted index","level":3,"score":0.5343999862670898},{"id":"https://openalex.org/C2779201187","wikidata":"https://www.wikidata.org/wiki/Q2775060","display_name":"Information leakage","level":2,"score":0.512499988079071},{"id":"https://openalex.org/C2777042071","wikidata":"https://www.wikidata.org/wiki/Q6509304","display_name":"Leakage (economics)","level":2,"score":0.4291999936103821},{"id":"https://openalex.org/C65302260","wikidata":"https://www.wikidata.org/wiki/Q327675","display_name":"Symmetric-key algorithm","level":4,"score":0.4043000042438507},{"id":"https://openalex.org/C207468940","wikidata":"https://www.wikidata.org/wiki/Q869370","display_name":"Brute-force attack","level":3,"score":0.3894999921321869},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.33899998664855957},{"id":"https://openalex.org/C38369872","wikidata":"https://www.wikidata.org/wiki/Q7445009","display_name":"Security analysis","level":2,"score":0.30630001425743103},{"id":"https://openalex.org/C77088390","wikidata":"https://www.wikidata.org/wiki/Q8513","display_name":"Database","level":1,"score":0.30250000953674316},{"id":"https://openalex.org/C2164484","wikidata":"https://www.wikidata.org/wiki/Q5170150","display_name":"Core (optical fiber)","level":2,"score":0.3005000054836273},{"id":"https://openalex.org/C199672914","wikidata":"https://www.wikidata.org/wiki/Q4241353","display_name":"Hot spot (computer programming)","level":2,"score":0.2921999990940094},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.2849999964237213},{"id":"https://openalex.org/C105339364","wikidata":"https://www.wikidata.org/wiki/Q2297740","display_name":"Software deployment","level":2,"score":0.27790001034736633},{"id":"https://openalex.org/C2780741293","wikidata":"https://www.wikidata.org/wiki/Q4818019","display_name":"Attack patterns","level":3,"score":0.2761000096797943},{"id":"https://openalex.org/C5655090","wikidata":"https://www.wikidata.org/wiki/Q192588","display_name":"Relational database","level":2,"score":0.27070000767707825},{"id":"https://openalex.org/C2779405079","wikidata":"https://www.wikidata.org/wiki/Q356040","display_name":"Jigsaw","level":2,"score":0.26460000872612},{"id":"https://openalex.org/C2777382242","wikidata":"https://www.wikidata.org/wiki/Q6017816","display_name":"Index (typography)","level":2,"score":0.2632000148296356},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.25920000672340393},{"id":"https://openalex.org/C79403827","wikidata":"https://www.wikidata.org/wiki/Q3988","display_name":"Real-time computing","level":1,"score":0.2590999901294708},{"id":"https://openalex.org/C23123220","wikidata":"https://www.wikidata.org/wiki/Q816826","display_name":"Information retrieval","level":1,"score":0.25619998574256897},{"id":"https://openalex.org/C106516650","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm design","level":2,"score":0.2554999887943268},{"id":"https://openalex.org/C140547941","wikidata":"https://www.wikidata.org/wiki/Q7797194","display_name":"Threat model","level":2,"score":0.2517000138759613}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3719027.3765075","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3719027.3765075","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2025 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":28,"referenced_works":["https://openalex.org/W2011212169","https://openalex.org/W2033165262","https://openalex.org/W2033403400","https://openalex.org/W2133003537","https://openalex.org/W2146828512","https://openalex.org/W2147929033","https://openalex.org/W2152516507","https://openalex.org/W2535294034","https://openalex.org/W2539385377","https://openalex.org/W2765463836","https://openalex.org/W2792158747","https://openalex.org/W2795038002","https://openalex.org/W2891020614","https://openalex.org/W2891250116","https://openalex.org/W2990722039","https://openalex.org/W3005475813","https://openalex.org/W3156415726","https://openalex.org/W3212636046","https://openalex.org/W3213572057","https://openalex.org/W4214848001","https://openalex.org/W4235169531","https://openalex.org/W4384519212","https://openalex.org/W4385080249","https://openalex.org/W4386754075","https://openalex.org/W4387857582","https://openalex.org/W4390604269","https://openalex.org/W4399477697","https://openalex.org/W7080133943"],"related_works":[],"abstract_inverted_index":{"Dynamic":[0],"Searchable":[1],"Symmetric":[2],"Encryption":[3],"(DSSE)":[4],"allows":[5],"secure":[6],"searches":[7],"over":[8,78],"a":[9,40,49],"dynamic":[10],"encrypted":[11],"database":[12],"but":[13,133],"suffers":[14],"from":[15],"inherent":[16],"information":[17],"leakage.":[18,74],"Existing":[19],"passive":[20],"attacks":[21],"against":[22,142,148],"DSSE":[23],"rely":[24],"on":[25,60],"persistent":[26],"leakage":[27,31],"monitoring":[28],"to":[29,89],"infer":[30],"patterns,":[32],"whereas":[33],"this":[34],"work":[35],"targets":[36],"intermittent":[37],"observation":[38,125],"-":[39,48,54],"more":[41],"practical":[42],"threat":[43],"model.":[44],"We":[45,75],"propose":[46],"Peekaboo":[47,77],"new":[50],"universal":[51],"attack":[52],"framework":[53],"and":[55,65,72,85,95,112,127,146],"the":[56,62,79,128],"core":[57],"design":[58,102],"relies":[59],"inferring":[61],"search":[63,109],"pattern":[64,110],"further":[66],"combining":[67],"it":[68,135],"with":[69,124,139],"auxiliary":[70],"knowledge":[71],"other":[73],"instantiate":[76],"SOTA":[80,137],"attacks,":[81],"Sap":[82],"(USENIX'":[83,87],"21)":[84],"Jigsaw":[86],"24),":[88],"derive":[90],"their":[91],"''+''":[92],"variants":[93],"(Sap+":[94],"Jigsaw+).":[96],"Extensive":[97],"experiments":[98],"demonstrate":[99],"that":[100],"our":[101],"achieves":[103],">0.9":[104],"adjusted":[105],"rand":[106],"index":[107],"for":[108],"recovery":[111],"\u223c90%":[113],"query":[114],"accuracy":[115,122,141],"vs.":[116],"FMA's":[117],"\u223c30%":[118],"(CCS'":[119],"23).":[120],"Peekaboo's":[121],"scales":[123],"rounds":[126],"number":[129],"of":[130],"observed":[131],"queries":[132],"also":[134],"resists":[136],"countermeasures,":[138],">40%":[140],"file":[143],"size":[144],"padding":[145],">80%":[147],"obfuscation.":[149]},"counts_by_year":[],"updated_date":"2026-03-07T16:01:11.037858","created_date":"2025-11-23T00:00:00"}
