International Association for Cryptologic Research

International Association
for Cryptologic Research


Pancake: Frequency Smoothing for Encrypted Data Stores

Paul Grubbs
Anurag Khandelwal
Marie-Sarah Lacharité
Lloyd Brown
Lucy Li
Rachit Agarwal
Thomas Ristenpart
Search ePrint
Search Google
Abstract: In this talk I will present the design, analysis, and implementation of Pancake, the first system to protect key-value stores from access pattern leakage attacks with small constant factor bandwidth overhead. First, I will outline our new formal security model, and explain why it captures realistic attacks. Then, I will describe our frequency smoothing mechanism, which provably transforms plaintext accesses into uniformly-distributed encrypted accesses. Finally, I will explain the implementation and evaluation of the Pancake system itself. We integrated Pancake into three key-value stores used in production clusters, and demonstrated its practicality: on standard benchmarks, PANCAKE achieves 229× better throughput than non-recursive Path ORAM - within 3-6× of insecure baselines for these key-value stores.
  title={Pancake: Frequency Smoothing for Encrypted Data Stores},
  note={Video at \url{}},
  howpublished={Talk given at RWC 2021},
  author={Paul Grubbs and Anurag Khandelwal and Marie-Sarah Lacharité and Lloyd Brown and Lucy Li and Rachit Agarwal and Thomas Ristenpart},