{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,15]],"date-time":"2026-07-15T22:30:09Z","timestamp":1784154609698,"version":"3.55.0"},"reference-count":56,"publisher":"Association for Computing Machinery (ACM)","issue":"12","content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":["Proc. VLDB Endow."],"published-print":{"date-parts":[[2024,8]]},"abstract":"<jats:p>In the business scenarios at Ant Group, there is a rising demand for collaborative data analysis among multiple institutions, which can promote health insurance, financial services, risk control, and others. However, the increasing concern about privacy issues has led to data silos. Secure Multi-Party Computation (MPC) provides an effective solution for collaborative data analysis, which can utilize data value while ensuring data security. Nevertheless, the performance bottlenecks of MPC and the strong demand for scalability pose great challenges to secure collaborative data analysis frameworks.<\/jats:p>\n          <jats:p>In this paper, we build a secure collaborative data analysis system SCQL with a general purpose. We design more efficient MPC protocols and relational operators to meet the demand for scalability. In terms of system design, we aim to implement a system with security, usability, and efficiency.<\/jats:p>\n          <jats:p>\n            We conduct extensive experiments on SCQL to validate our optimization improvements: (1) Our optimized secure sort protocol sorts one million 64-bit data in only 4.5 minutes, 126\u00d7 faster than EMP (9.4 hours). (2) The end-to-end execution time of the typical vertical scenario query is reduced by 1991\u00d7 from the state-of-the-art semi-honest collaborative analysis framework Secrecy (rewritten with Additive Secret Sharing protocol), with appropriate security tradeoffs. (3) We test the system in the WAN setting with\n            <jats:italic>input size<\/jats:italic>\n            = 10\n            <jats:sup>7<\/jats:sup>\n            to demonstrate the scalability. We have successfully deployed SCQL to address problems in real-world business scenarios at Ant Group.\n          <\/jats:p>","DOI":"10.14778\/3685800.3685821","type":"journal-article","created":{"date-parts":[[2024,11,8]],"date-time":"2024-11-08T17:25:21Z","timestamp":1731086721000},"page":"3987-4000","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":7,"title":["SecretFlow-SCQL: A Secure Collaborative Query Platform"],"prefix":"10.14778","volume":"17","author":[{"given":"Wenjing","family":"Fang","sequence":"first","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Shunde","family":"Cao","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Guojin","family":"Hua","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Junming","family":"Ma","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yongqiang","family":"Yu","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Qunshan","family":"Huang","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jun","family":"Feng","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Jin","family":"Tan","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Xiaopeng","family":"Zan","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Pu","family":"Duan","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Yang","family":"Yang","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Li","family":"Wang","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ke","family":"Zhang","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Lei","family":"Wang","sequence":"additional","affiliation":[{"name":"Ant Group"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2024,11,8]]},"reference":[{"key":"e_1_2_1_1_1","volume-title":"General Data Protection Regulation (GDPR). https:\/\/gdpr-info.eu\/. Accessed","year":"2010","unstructured":"[n.d.]. General Data Protection Regulation (GDPR). https:\/\/gdpr-info.eu\/. Accessed April 4, 2010."},{"key":"e_1_2_1_2_1","doi-asserted-by":"publisher","DOI":"10.1145\/1468075.1468121"},{"key":"e_1_2_1_3_1","doi-asserted-by":"publisher","DOI":"10.14778\/3055330.3055334"},{"key":"e_1_2_1_4_1","doi-asserted-by":"publisher","DOI":"10.14778\/3291264.3291274"},{"key":"e_1_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.14778\/3407790.3407854"},{"key":"e_1_2_1_6_1","volume-title":"Annual International Cryptology Conference. Springer, 420--432","author":"Beaver Donald","year":"1991","unstructured":"Donald Beaver. 1991. Efficient multiparty protocols using circuit randomization. In Annual International Cryptology Conference. Springer, 420--432."},{"key":"e_1_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-540-74143-5_30"},{"key":"e_1_2_1_8_1","doi-asserted-by":"publisher","unstructured":"Alexandra Boldyreva Nathan Chenette Younho Lee and Adam O'Neill. 2009. Order-Preserving Symmetric Encryption. 224--241. 10.1007\/978-3-642-01001-9_13","DOI":"10.1007\/978-3-642-01001-9_13"},{"key":"e_1_2_1_9_1","doi-asserted-by":"publisher","unstructured":"Alexandra Boldyreva Nathan Chenette and Adam O'Neill. 2011. Order-preserving encryption revisited: improved security analysis and alternative solutions. 578--595. 10.1007\/978-3-642-22792-9_33","DOI":"10.1007\/978-3-642-22792-9_33"},{"key":"e_1_2_1_10_1","volume-title":"11th USENIX Workshop on Offensive Technologies (WOOT 17)","author":"Brasser Ferdinand","year":"2017","unstructured":"Ferdinand Brasser, Urs M\u00fcller, Alexandra Dmitrienko, Kari Kostiainen, Srdjan Capkun, and Ahmad-Reza Sadeghi. 2017. Software grand exposure:{SGX} cache attacks are practical. In 11th USENIX Workshop on Offensive Technologies (WOOT 17)."},{"key":"e_1_2_1_11_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813700"},{"key":"e_1_2_1_12_1","volume-title":"An efficient secure three-party sorting protocol with an honest majority. Cryptology ePrint Archive","author":"Chida Koji","year":"2019","unstructured":"Koji Chida, Koki Hamada, Dai Ikarashi, Ryo Kikuchi, Naoto Kiribuchi, and Benny Pinkas. 2019. An efficient secure three-party sorting protocol with an honest majority. Cryptology ePrint Archive (2019)."},{"key":"e_1_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.3233\/jcs-2011-0426"},{"key":"e_1_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1145\/3342195.3387552"},{"key":"e_1_2_1_15_1","doi-asserted-by":"crossref","unstructured":"Daniel Demmler Thomas Schneider and Michael Zohner. 2015. ABY-A framework for efficient mixed-protocol secure two-party computation.. In NDSS.","DOI":"10.14722\/ndss.2015.23113"},{"key":"e_1_2_1_16_1","volume-title":"An introduction to secret-sharing-based secure multiparty computation. Cryptology ePrint Archive","author":"Escudero Daniel","year":"2022","unstructured":"Daniel Escudero. 2022. An introduction to secret-sharing-based secure multiparty computation. Cryptology ePrint Archive (2022)."},{"key":"e_1_2_1_17_1","doi-asserted-by":"publisher","DOI":"10.14778\/3364324.3364331"},{"key":"e_1_2_1_18_1","doi-asserted-by":"publisher","unstructured":"David Evans Vladimir Kolesnikov and Mike Rosulek. 2018. A Pragmatic Introduction to Secure Multi-Party Computation. 10.1561\/9781680835090","DOI":"10.1561\/9781680835090"},{"key":"e_1_2_1_19_1","doi-asserted-by":"publisher","DOI":"10.1145\/3459637.3482361"},{"key":"e_1_2_1_20_1","doi-asserted-by":"publisher","DOI":"10.1145\/3514221.3526127"},{"key":"e_1_2_1_21_1","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536440"},{"key":"e_1_2_1_22_1","doi-asserted-by":"publisher","DOI":"10.1007\/s00446-002-0077-1"},{"key":"e_1_2_1_24_1","doi-asserted-by":"publisher","DOI":"10.1109\/ICDE53745.2022.00176"},{"key":"e_1_2_1_25_1","doi-asserted-by":"publisher","DOI":"10.1145\/3133956.3134030"},{"key":"e_1_2_1_26_1","doi-asserted-by":"publisher","DOI":"10.14778\/2824032.2824090"},{"key":"e_1_2_1_27_1","doi-asserted-by":"publisher","DOI":"10.1145\/336992.337012"},{"key":"e_1_2_1_28_1","volume-title":"2020 IEEE European Symposium on Security and Privacy (EuroS&P). 370--389","author":"Ion Mihaela","year":"2020","unstructured":"Mihaela Ion, Benjamin Kreuter, Erhan Nergiz, Sarvar Patel, Mariana Raykova, Shobhit Saxena, Karn Seth, David Shanahan, and Moti Yung. 2020. Private Intersection-Sum Protocols with Applications to Attributing Aggregate Ad Conversions. In 2020 IEEE European Symposium on Security and Privacy (EuroS&P). 370--389. https:\/\/eprint.iacr.org\/2019\/723.pdf"},{"key":"e_1_2_1_29_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-36594-2_34"},{"key":"e_1_2_1_30_1","volume-title":"Attack and Mitigation. Network and Distributed System Security Symposium, Network and Distributed System Security Symposium (Jan","author":"Islam MohammadSaiful","year":"2012","unstructured":"MohammadSaiful Islam, Mehmet Kuzu, and Murat Kantarcioglu. 2012. Access Pattern disclosure on Searchable Encryption: Ramification, Attack and Mitigation. Network and Distributed System Security Symposium, Network and Distributed System Security Symposium (Jan 2012)."},{"key":"e_1_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1093\/bioinformatics\/btt066"},{"key":"e_1_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/2976749.2978386"},{"key":"e_1_2_1_33_1","volume-title":"26th USENIX Security Symposium (USENIX Security 17)","author":"Lee Sangho","year":"2017","unstructured":"Sangho Lee, Ming-Wei Shih, Prasun Gera, Taesoo Kim, Hyesoon Kim, and Marcus Peinado. 2017. Inferring fine-grained control flow inside {SGX} enclaves with branch shadowing. In 26th USENIX Security Symposium (USENIX Security 17). 557--574."},{"key":"e_1_2_1_34_1","volume-title":"20th USENIX Symposium on Networked Systems Design and Implementation (NSDI 23)","author":"Liagouris John","year":"2023","unstructured":"John Liagouris, Vasiliki Kalavri, Muhammad Faisal, and Mayank Varia. 2023. {SECRECY}: Secure collaborative analytics in untrusted clouds. In 20th USENIX Symposium on Networked Systems Design and Implementation (NSDI 23). 1031--1056."},{"key":"e_1_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1109\/TrustCom50675.2020.00098"},{"key":"e_1_2_1_36_1","unstructured":"Junming Ma Yancheng Zheng Jun Feng Derun Zhao Haoqi Wu Wenjing Fang Jin Tan Chaofan Yu Benyu Zhang and Lei Wang. [n.d.]. SecretFlow-SPU: A Performant and User-Friendly Framework for Privacy-Preserving Machine Learning. ([n. d.])."},{"key":"e_1_2_1_37_1","doi-asserted-by":"publisher","DOI":"10.1145\/3243734.3243760"},{"key":"e_1_2_1_38_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2017.12"},{"key":"e_1_2_1_39_1","volume-title":"10th USENIX Symposium on Operating Systems Design and Implementation (OSDI 12)","author":"Narayan Arjun","year":"2012","unstructured":"Arjun Narayan and Andreas Haeberlen. 2012. DJoin: Differentially Private Join Queries over Distributed Databases. In 10th USENIX Symposium on Operating Systems Design and Implementation (OSDI 12). USENIX Association, Hollywood, CA, 149--162. https:\/\/www.usenix.org\/conference\/osdi12\/technical-sessions\/presentation\/narayan"},{"key":"e_1_2_1_40_1","doi-asserted-by":"publisher","DOI":"10.1145\/2810103.2813651"},{"key":"e_1_2_1_41_1","doi-asserted-by":"publisher","unstructured":"Pascal Paillier. 2007. Public-key cryptosystems based on composite degree residuosity classes. 223--238. 10.1007\/3-540-48910-x_16","DOI":"10.1007\/3-540-48910-x_16"},{"key":"e_1_2_1_42_1","volume-title":"12th USENIX Symposium on Operating Systems Design and Implementation (OSDI 16)","author":"Papadimitriou Antonis","year":"2016","unstructured":"Antonis Papadimitriou, Ranjita Bhagwan, Nishanth Chandran, Ramachandran Ramjee, Andreas Haeberlen, Harmeet Singh, Abhishek Modi, and Saikrishna Badrinarayanan. 2016. Big Data Analytics over Encrypted Datasets with Seabed. In 12th USENIX Symposium on Operating Systems Design and Implementation (OSDI 16). USENIX Association, Savannah, GA, 587--602. https:\/\/www.usenix.org\/conference\/osdi16\/technical-sessions\/presentation\/papadimitriou"},{"key":"e_1_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1145\/3064176.3064218"},{"key":"e_1_2_1_44_1","doi-asserted-by":"publisher","DOI":"10.1109\/sp.2014.30"},{"key":"e_1_2_1_45_1","doi-asserted-by":"publisher","DOI":"10.14778\/3342263.3342641"},{"key":"e_1_2_1_46_1","volume-title":"30th USENIX Security Symposium (USENIX Security 21)","author":"Poddar Rishabh","year":"2021","unstructured":"Rishabh Poddar, Sukrit Kalra, Avishay Yanai, Ryan Deng, Raluca Ada Popa, and Joseph M Hellerstein. 2021. Senate: a {Maliciously-Secure}{MPC} platform for collaborative analytics. In 30th USENIX Security Symposium (USENIX Security 21). 2129--2146."},{"key":"e_1_2_1_47_1","doi-asserted-by":"publisher","DOI":"10.1145\/2043556.2043566"},{"key":"e_1_2_1_48_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2018.00025"},{"key":"e_1_2_1_49_1","doi-asserted-by":"publisher","DOI":"10.14778\/3574245.3574248"},{"key":"e_1_2_1_50_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-32101-7_35"},{"key":"e_1_2_1_51_1","doi-asserted-by":"publisher","DOI":"10.1109\/secpri.2000.848445"},{"key":"e_1_2_1_52_1","unstructured":"Stephen Lyle Tu M Frans Kaashoek Samuel R Madden and Nickolai Zeldovich. 2013. Processing analytical queries over encrypted data. (2013)."},{"key":"e_1_2_1_53_1","volume-title":"27th USENIX Security Symposium (USENIX Security 18)","author":"Bulck Jo Van","year":"2018","unstructured":"Jo Van Bulck, Marina Minkin, Ofir Weisse, Daniel Genkin, Baris Kasikci, Frank Piessens, Mark Silberstein, Thomas F Wenisch, Yuval Yarom, and Raoul Strackx. 2018. Foreshadow: Extracting the keys to the intel {SGX} kingdom with transient {Out-of-Order} execution. In 27th USENIX Security Symposium (USENIX Security 18). 991--1008."},{"key":"e_1_2_1_54_1","doi-asserted-by":"publisher","DOI":"10.2478\/popets-2019-0052"},{"key":"e_1_2_1_55_1","doi-asserted-by":"publisher","DOI":"10.1145\/3302424.3303982"},{"key":"e_1_2_1_56_1","volume-title":"IEEE International Conference on Cloud Computing Technology and Science, IEEE International Conference on Cloud Computing Technology and Science (Jun","author":"Zaharia Matei","year":"2010","unstructured":"Matei Zaharia, Mosharaf Chowdhury, MichaelJ. Franklin, Scott Shenker, and Ion Stoica. 2010. Spark: cluster computing with working sets. IEEE International Conference on Cloud Computing Technology and Science, IEEE International Conference on Cloud Computing Technology and Science (Jun 2010)."},{"key":"e_1_2_1_57_1","volume-title":"14th USENIX Symposium on Networked Systems Design and Implementation (NSDI 17)","author":"Zheng Wenting","year":"2017","unstructured":"Wenting Zheng, Ankur Dave, Jethro G Beekman, Raluca Ada Popa, Joseph E Gonzalez, and Ion Stoica. 2017. Opaque: An oblivious and encrypted distributed analytics platform. In 14th USENIX Symposium on Networked Systems Design and Implementation (NSDI 17). 283--298."}],"container-title":["Proceedings of the VLDB Endowment"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.14778\/3685800.3685821","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2024,12,31]],"date-time":"2024-12-31T05:32:36Z","timestamp":1735623156000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.14778\/3685800.3685821"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,8]]},"references-count":56,"journal-issue":{"issue":"12","published-print":{"date-parts":[[2024,8]]}},"alternative-id":["10.14778\/3685800.3685821"],"URL":"https:\/\/doi.org\/10.14778\/3685800.3685821","relation":{},"ISSN":["2150-8097"],"issn-type":[{"value":"2150-8097","type":"print"}],"subject":[],"published":{"date-parts":[[2024,8]]},"assertion":[{"value":"2024-11-08","order":3,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}