3 ms·
It is less secure than your standard symmetric encryption. I guess they would use deterministic encryption in which 2 entries with same email address will have
by hapiri 4y ago
It is less secure than your standard symmetric encryption. I guess they would use deterministic encryption in which 2 entries with same email address will have the same record string ( this leaks information to attacker ). Prefix search & sort can be achieved by using order preserving encryption. Not really sure about sub-string though.
- throwaway2016a 4y agoI've researched order preserving encryption before but the tradeoffs (mainly that the attacker can tell the order and use that to narrow the search space) always seemed like high risk.
- sangel 4y agoHigh risk compared to what? The alternative is absolutely no privacy (status quo) or no/limited functionality (not very useful). Seems like strictly better than having no privacy.
- bawolff 4y agoUsing fake encryption is much riskier than no encryption, because if you think you are safe you will do unsafe things with your data. If you know you are unsafe then you will take appropriate precautions.
- throwaway2016a 4y agoDepending on your compliance needs and the sensitivity of your data, "limited functionality" may be a reasonable tradeoff, though.