Research

Privacy and systems

Research in encrypted data processing, cryptographic authorization, distributed systems, data ownership, and low-power networks.

TimeCrypt system overview

TimeCrypt

Cloud analytics over sensitive time-series data creates a tension between utility and confidentiality. TimeCrypt provides scalable, real-time analytics over encrypted streams with cryptographic access control and verifiable queries.

Droplet decentralized authorization overview

Droplet

Sharing IoT data should not require a trusted intermediary. Droplet combines encrypted streams with decentralized authorization to provide fine-grained, resilient access control across trust domains.

Pilatus encrypted data-sharing overview

Pilatus

Cloud-backed mobile and IoT applications need selective sharing without surrendering confidentiality. Pilatus combines partially homomorphic encryption, re-encryption, revocation, and in-place key updates in a practical data-protection platform.

Talos encrypted data-processing overview

Talos

Encrypted cloud storage is most useful when applications can still query it. Talos brings encrypted query processing to constrained IoT devices through practical cryptographic schemes and hardware-aware optimization.

Proximity-based authentication attacker model

Proximity-based authentication

Co-located devices need a fast way to reject remote impostors. This work uses ambient radio signals to infer proximity in-band with commodity low-power wireless hardware.

Wireless interference mitigation overview

Low-power wireless coexistence

Heterogeneous radios in unlicensed spectrum interfere in uncertain ways. This research developed cognitive systems that detect cross-technology interference and apply effective countermeasures.