{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,20]],"date-time":"2026-07-20T14:16:09Z","timestamp":1784556969471,"version":"3.55.0"},"reference-count":81,"publisher":"Association for Computing Machinery (ACM)","issue":"11","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["Proc. VLDB Endow."],"published-print":{"date-parts":[[2019,7]]},"abstract":"<jats:p>In recent years, encrypted databases have emerged as a promising direction that provides data confidentiality without sacrificing functionality: queries are executed on encrypted data. However, many practical proposals rely on a set of weak encryption schemes that have been shown to leak sensitive data. In this paper, we propose Arx, a practical and functionally rich database system that encrypts the data only with semantically secure encryption schemes. We show that Arx supports real applications such as ShareLaTeX with a modest performance overhead.<\/jats:p>","DOI":"10.14778\/3342263.3342641","type":"journal-article","created":{"date-parts":[[2019,9,18]],"date-time":"2019-09-18T18:36:11Z","timestamp":1568831771000},"page":"1664-1678","source":"Crossref","is-referenced-by-count":58,"title":["Arx"],"prefix":"10.14778","volume":"12","author":[{"given":"Rishabh","family":"Poddar","sequence":"first","affiliation":[{"name":"UC Berkeley"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Tobias","family":"Boelter","sequence":"additional","affiliation":[{"name":"UC Berkeley"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Raluca Ada","family":"Popa","sequence":"additional","affiliation":[{"name":"UC Berkeley"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2019,7]]},"reference":[{"key":"e_1_2_1_1_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICDE.2009.151"},{"key":"e_1_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/1007568.1007632"},{"key":"e_1_2_1_3_1","first-page":"809","volume":"13","author":"Ang G. W.","year":"2012","unstructured":"G. W. Ang , J. H. Woelfel , and T. P. Woloszyn . System and Method of Sort-Order Preserving Tokenization. US Patent Application 13\/450 , 809 , 2012 . G. W. Ang, J. H. Woelfel, and T. P. Woloszyn. System and Method of Sort-Order Preserving Tokenization. US Patent Application 13\/450,809, 2012.","journal-title":"System and Method of Sort-Order Preserving Tokenization. US Patent Application"},{"key":"e_1_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.1109\/SFCS.1989.63531"},{"key":"e_1_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1109\/FPL.2013.6645524"},{"key":"e_1_2_1_6_1","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516724"},{"key":"e_1_2_1_7_1","volume-title":"2018 Data Breaches - The Worst So Far","author":"Bearak S.","year":"2018","unstructured":"S. Bearak . 2018 Data Breaches - The Worst So Far , 2018 . https:\/\/www.identityforce.com\/blog\/2018-data-breaches. S. Bearak. 2018 Data Breaches - The Worst So Far, 2018. https:\/\/www.identityforce.com\/blog\/2018-data-breaches."},{"key":"e_1_2_1_8_1","doi-asserted-by":"publisher","DOI":"10.5555\/3088723.3088749"},{"key":"e_1_2_1_9_1","doi-asserted-by":"publisher","DOI":"10.5555\/2033036.2033080"},{"key":"e_1_2_1_10_1","volume-title":"Proc. EUROCRYPT","author":"Boneh D.","year":"2014","unstructured":"D. Boneh , K. Lewi , M. Raykova , A. Sahai , M. Zhandry , and J. Zimmerman . Semantically Secure Order-Revealing Encryption: Multi-input Functional Encryption Without Obfuscation . In Proc. EUROCRYPT , 2014 . D. Boneh, K. Lewi, M. Raykova, A. Sahai, M. Zhandry, and J. Zimmerman. Semantically Secure Order-Revealing Encryption: Multi-input Functional Encryption Without Obfuscation. In Proc. EUROCRYPT, 2014."},{"key":"e_1_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/2636328"},{"key":"e_1_2_1_12_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978303"},{"key":"e_1_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3133980"},{"key":"e_1_2_1_14_1","unstructured":"Budget Manager. https:\/\/goo.gl\/chFmct.  Budget Manager. https:\/\/goo.gl\/chFmct."},{"key":"e_1_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813700"},{"key":"e_1_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2014.23264"},{"key":"e_1_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-40041-4_20"},{"key":"e_1_2_1_18_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-52993-5_24"},{"key":"e_1_2_1_19_1","unstructured":"Chino.io: Security and Privacy for Health Data in the EU. https:\/\/chino.io\/.  Chino.io: Security and Privacy for Health Data in the EU. https:\/\/chino.io\/."},{"key":"e_1_2_1_20_1","unstructured":"CipherCloud. CASB+ Platform. http:\/\/www.ciphercloud.com.  CipherCloud. CASB+ Platform. http:\/\/www.ciphercloud.com."},{"key":"e_1_2_1_21_1","unstructured":"CipherCloud. Tokenization. http:\/\/www.ciphercloud.com\/tokenization.  CipherCloud. Tokenization. http:\/\/www.ciphercloud.com\/tokenization."},{"key":"e_1_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1145\/1807128.1807152"},{"key":"e_1_2_1_23_1","author":"Crooks N.","year":"2018","unstructured":"N. Crooks , M. Burke , E. Cecchetti , S. Harel , R. Agarwal , and L. Alvisi . Obladi: Oblivious Serializable Transactions in the Cloud. In Proc. OSDI , 2018 . N. Crooks, M. Burke, E. Cecchetti, S. Harel, R. Agarwal, and L. Alvisi. Obladi: Oblivious Serializable Transactions in the Cloud. In Proc. OSDI, 2018.","journal-title":"Obladi: Oblivious Serializable Transactions in the Cloud. In Proc. OSDI"},{"key":"e_1_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1145\/1180405.1180417"},{"key":"e_1_2_1_25_1","volume-title":"2017 Data Breaches","author":"Daitch H.","year":"2017","unstructured":"H. Daitch . 2017 Data Breaches , 2017 . https:\/\/www.identityforce.com\/blog\/2017-data-breaches. H. Daitch. 2017 Data Breaches, 2017. https:\/\/www.identityforce.com\/blog\/2017-data-breaches."},{"key":"e_1_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978379"},{"key":"e_1_2_1_27_1","volume-title":"ZeroDB white paper. arXiv:1602.07168","author":"Egorov M.","year":"2016","unstructured":"M. Egorov and M. Wilkison . ZeroDB white paper. arXiv:1602.07168 , 2016 . M. Egorov and M. Wilkison. ZeroDB white paper. arXiv:1602.07168, 2016."},{"key":"e_1_2_1_28_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-319-24177-7_7"},{"key":"e_1_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1109\/FOCS.2015.22"},{"key":"e_1_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1145\/28395.28420"},{"key":"e_1_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-02927-1_41"},{"key":"e_1_2_1_33_1","unstructured":"Google. Encrypted BigQuery client. https:\/\/github.com\/google\/encrypted-bigquery-client.  Google. Encrypted BigQuery client. https:\/\/github.com\/google\/encrypted-bigquery-client."},{"key":"e_1_2_1_34_1","volume-title":"Sicherheit","author":"Grofig P.","year":"2014","unstructured":"P. Grofig , M. Haerterich , I. Hang , F. Kerschbaum , M. Kohler , A. Schaad , A. Schroepfer , and W. Tighzert . Experiences and observations on the industrial implementation of a system to search over outsourced encrypted data . In Sicherheit , 2014 . P. Grofig, M. Haerterich, I. Hang, F. Kerschbaum, M. Kohler, A. Schaad, A. Schroepfer, and W. Tighzert. Experiences and observations on the industrial implementation of a system to search over outsourced encrypted data. In Sicherheit, 2014."},{"key":"e_1_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2019.00030"},{"key":"e_1_2_1_36_1","doi-asserted-by":"publisher","DOI":"10.1145\/3102980.3103007"},{"key":"e_1_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1145\/2660267.2660326"},{"key":"e_1_2_1_39_1","unstructured":"iQrypt: Encrypt and query your database. http:\/\/iqrypt.com\/.  iQrypt: Encrypt and query your database. http:\/\/iqrypt.com\/."},{"key":"e_1_2_1_40_1","author":"Kadhem H.","year":"2010","unstructured":"H. Kadhem , T. Amagasa , and H. Kitagawa . MV-OPES: Multivalued-Order Preserving Encryption Scheme: A Novel Scheme for Encrypting Integer Value to Many Different Values. IEICE Trans. Info. & Sys. , 2010 . H. Kadhem, T. Amagasa, and H. Kitagawa. MV-OPES: Multivalued-Order Preserving Encryption Scheme: A Novel Scheme for Encrypting Integer Value to Many Different Values. IEICE Trans. Info. & Sys., 2010.","journal-title":"IEICE Trans. Info. & Sys."},{"key":"e_1_2_1_42_1","doi-asserted-by":"publisher","DOI":"10.1145\/2382196.2382298"},{"key":"e_1_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2016.58"},{"key":"e_1_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978386"},{"key":"e_1_2_1_45_1","volume-title":"Computing on Masked Data: A High Performance Method for Improving Big Data Veracity. arXiv:1406.5751","author":"Kepner J.","year":"2014","unstructured":"J. Kepner , V. Gadepally , P. Michaleas , N. Schear , M. Varia , A. Yerukhimovich , and R. K. Cunningham . Computing on Masked Data: A High Performance Method for Improving Big Data Veracity. arXiv:1406.5751 , 2014 . J. Kepner, V. Gadepally, P. Michaleas, N. Schear, M. Varia, A. Yerukhimovich, and R. K. Cunningham. Computing on Masked Data: A High Performance Method for Improving Big Data Veracity. arXiv:1406.5751, 2014."},{"key":"e_1_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-45472-5_15"},{"key":"e_1_2_1_48_1","volume-title":"Improved Reconstruction Attacks on Encrypted Data Using Range Query Leakage","author":"Lacharit\u00e9 M.-S.","year":"2018","unstructured":"M.-S. Lacharit\u00e9 , B. Minaud , and K. G. Paterson . Improved Reconstruction Attacks on Encrypted Data Using Range Query Leakage , 2018 . M.-S. Lacharit\u00e9, B. Minaud, and K. G. Paterson. Improved Reconstruction Attacks on Encrypted Data Using Range Query Leakage, 2018."},{"key":"e_1_2_1_49_1","volume-title":"Proc. SIGCOMM","author":"Lan C.","year":"2015","unstructured":"C. Lan , J. Sherry , , R. A. Popa , S. Ratnasamy , and Z. Liu . Embark: Securely Outsourcing Middleboxes to the Cloud . In Proc. SIGCOMM , 2015 . C. Lan, J. Sherry, , R. A. Popa, S. Ratnasamy, and Z. Liu. Embark: Securely Outsourcing Middleboxes to the Cloud. In Proc. SIGCOMM, 2015."},{"key":"e_1_2_1_50_1","volume-title":"Proc. USENIX Security","author":"Lau B.","year":"2014","unstructured":"B. Lau , S. P. Chung , C. Song , Y. Jang , W. Lee , and A. Boldyreva . Mimesis Aegis: A Mimicry Privacy Shield-A System's Approach to Data Privacy on Public Cloud . In Proc. USENIX Security , 2014 . B. Lau, S. P. Chung, C. Song, Y. Jang, W. Lee, and A. Boldyreva. Mimesis Aegis: A Mimicry Privacy Shield-A System's Approach to Data Privacy on Public Cloud. In Proc. USENIX Security, 2014."},{"key":"e_1_2_1_51_1","unstructured":"Leanote. https:\/\/leanote.com\/.  Leanote. https:\/\/leanote.com\/."},{"key":"e_1_2_1_52_1","author":"Lee S.","year":"2009","unstructured":"S. Lee , T.-J. Park , D. Lee , T. Nam , and S. Kim . Chaotic Order Preserving Encryption for Efficient and Secure Queries on Databases. IEICE Trans. Info. & Sys. , 2009 . S. Lee, T.-J. Park, D. Lee, T. Nam, and S. Kim. Chaotic Order Preserving Encryption for Efficient and Secure Queries on Databases. IEICE Trans. Info. & Sys., 2009.","journal-title":"IEICE Trans. Info. & Sys."},{"key":"e_1_2_1_53_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978376"},{"key":"e_1_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.1145\/1880022.1880026"},{"key":"e_1_2_1_55_1","doi-asserted-by":"publisher","DOI":"10.1109\/CLOUD.2012.65"},{"key":"e_1_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1002\/cpe.2992"},{"key":"e_1_2_1_58_1","unstructured":"Microsoft SQL Server. Always Encrypted Database Engine. https:\/\/goo.gl\/51LwQ9.  Microsoft SQL Server. Always Encrypted Database Engine. https:\/\/goo.gl\/51LwQ9."},{"key":"e_1_2_1_59_1","doi-asserted-by":"publisher","DOI":"10.1145\/380752.380844"},{"key":"e_1_2_1_61_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813651"},{"key":"e_1_2_1_62_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.47"},{"key":"e_1_2_1_63_1","unstructured":"NodeBB. https:\/\/nodebb.org\/.  NodeBB. https:\/\/nodebb.org\/."},{"key":"e_1_2_1_64_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-41383-4_10"},{"key":"e_1_2_1_65_1","volume-title":"Proc. DBSec","author":"\u00d6zsoyoglu G.","year":"2003","unstructured":"G. \u00d6zsoyoglu , D. A. Singer , and S. S. Chung . Anti-Tamper Databases: Querying Encrypted Databases . In Proc. DBSec , 2003 . G. \u00d6zsoyoglu, D. A. Singer, and S. S. Chung. Anti-Tamper Databases: Querying Encrypted Databases. In Proc. DBSec, 2003."},{"key":"e_1_2_1_66_1","doi-asserted-by":"publisher","DOI":"10.5555\/1756123.1756146"},{"key":"e_1_2_1_67_1","volume-title":"Proc. OSDI","author":"Papadimitriou A.","year":"2016","unstructured":"A. Papadimitriou , R. Bhagwan , N. Chandran , R. Ramjee , A. Haeberlen , H. Singh , A. Modi , and S. Badrinarayanan . Big Data Analytics over Encrypted Datasets with Seabed . In Proc. OSDI , 2016 . A. Papadimitriou, R. Bhagwan, N. Chandran, R. Ramjee, A. Haeberlen, H. Singh, A. Modi, and S. Badrinarayanan. Big Data Analytics over Encrypted Datasets with Seabed. In Proc. OSDI, 2016."},{"key":"e_1_2_1_68_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2014.30"},{"key":"e_1_2_1_69_1","unstructured":"PencilBlue. https:\/\/goo.gl\/SS4biS.  PencilBlue. https:\/\/goo.gl\/SS4biS."},{"key":"e_1_2_1_70_1","volume-title":"MIT","author":"Popa R. A.","year":"2014","unstructured":"R. A. Popa . Building Practical Systems that Compute on Encrypted Data. PhD thesis , MIT , 2014 . R. A. Popa. Building Practical Systems that Compute on Encrypted Data. PhD thesis, MIT, 2014."},{"key":"e_1_2_1_71_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2013.38"},{"key":"e_1_2_1_72_1","doi-asserted-by":"publisher","DOI":"10.1145\/2043556.2043566"},{"key":"e_1_2_1_73_1","unstructured":"F. Y. Rashid. Salesforce.com Acquires SaaS Encryption Provider Navajo Systems 2011. https:\/\/goo.gl\/MKiF2b.  F. Y. Rashid. Salesforce.com Acquires SaaS Encryption Provider Navajo Systems 2011. https:\/\/goo.gl\/MKiF2b."},{"key":"e_1_2_1_74_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2013.28"},{"key":"e_1_2_1_75_1","unstructured":"Redux. https:\/\/goo.gl\/AWZy6z.  Redux. https:\/\/goo.gl\/AWZy6z."},{"key":"e_1_2_1_76_1","unstructured":"Selenium. http:\/\/www.seleniumhq.org\/.  Selenium. http:\/\/www.seleniumhq.org\/."},{"key":"e_1_2_1_77_1","unstructured":"ShareLaTeX. https:\/\/www.sharelatex.com\/.  ShareLaTeX. https:\/\/www.sharelatex.com\/."},{"key":"e_1_2_1_78_1","unstructured":"Skyhigh. Skyhigh Security Cloud. https:\/\/www.skyhighnetworks.com\/.  Skyhigh. Skyhigh Security Cloud. https:\/\/www.skyhighnetworks.com\/."},{"key":"e_1_2_1_79_1","volume-title":"Proc. IEEE S&P","author":"Song D. X.","year":"2000","unstructured":"D. X. Song , D. Wagner , and A. Perrig . Practical Techniques for Searches on Encrypted Data . In Proc. IEEE S&P , 2000 . D. X. Song, D. Wagner, and A. Perrig. Practical Techniques for Searches on Encrypted Data. In Proc. IEEE S&P, 2000."},{"key":"e_1_2_1_80_1","doi-asserted-by":"publisher","DOI":"10.14722\/ndss.2014.23298"},{"key":"e_1_2_1_81_1","doi-asserted-by":"publisher","DOI":"10.1145\/2508859.2516660"},{"key":"e_1_2_1_82_1","unstructured":"TPC-C Transation Processing Benchmark. http:\/\/www.tpc.org\/tpcc\/.  TPC-C Transation Processing Benchmark. http:\/\/www.tpc.org\/tpcc\/."},{"key":"e_1_2_1_83_1","doi-asserted-by":"publisher","DOI":"10.14778\/2535573.2488336"},{"key":"e_1_2_1_84_1","unstructured":"UNCAP\n  : Ubiquitous iNteropable Care for Ageing People. http:\/\/www.uncap.eu\/.  UNCAP: Ubiquitous iNteropable Care for Ageing People. http:\/\/www.uncap.eu\/."},{"key":"e_1_2_1_86_1","doi-asserted-by":"publisher","DOI":"10.1109\/SFCS.1986.25"},{"key":"e_1_2_1_87_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-27890-7_7"},{"key":"e_1_2_1_88_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813711"}],"container-title":["Proceedings of the VLDB Endowment"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.14778\/3342263.3342641","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,12,28]],"date-time":"2022-12-28T09:54:30Z","timestamp":1672221270000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.14778\/3342263.3342641"}},"subtitle":["an encrypted database using semantically secure encryption"],"short-title":[],"issued":{"date-parts":[[2019,7]]},"references-count":81,"journal-issue":{"issue":"11","published-print":{"date-parts":[[2019,7]]}},"alternative-id":["10.14778\/3342263.3342641"],"URL":"https:\/\/doi.org\/10.14778\/3342263.3342641","relation":{},"ISSN":["2150-8097"],"issn-type":[{"value":"2150-8097","type":"print"}],"subject":[],"published":{"date-parts":[[2019,7]]}}}