{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,21]],"date-time":"2026-01-21T06:56:50Z","timestamp":1768978610401,"version":"3.49.0"},"reference-count":63,"publisher":"Privacy Enhancing Technologies Symposium Advisory Board","issue":"3","license":[{"start":{"date-parts":[[2020,7,1]],"date-time":"2020-07-01T00:00:00Z","timestamp":1593561600000},"content-version":"unspecified","delay-in-days":0,"URL":"http:\/\/creativecommons.org\/licenses\/by-nc-nd\/3.0"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2020,7,1]]},"abstract":"<jats:title>Abstract<\/jats:title>\n               <jats:p>Electronic toll collection (ETC) is widely used all over the world not only to finance our road infrastructures, but also to realize advanced features like congestion management and pollution reduction by means of dynamic pricing. Unfortunately, existing systems rely on user identification and allow tracing a user\u2019s movements. Several abuses of this personalized location data have already become public. In view of the planned Europeanwide interoperable tolling system EETS and the new EU General Data Protection Regulation, location privacy becomes of particular importance.<\/jats:p>\n               <jats:p>In this paper, we propose a flexible security model and crypto protocol framework designed for privacy-preserving toll collection in the most dominant setting, i.e., Dedicated Short Range Communication (DSRC) ETC. A major challenge in designing the framework at hand was to combine provable security and practicality, where the latter includes practical performance figures and a suitable treatment of real-world issues, like broken onboard units etc. To the best of our knowledge, our work is the first in the DSRC setting with a rigorous security model and proof and arguably the most comprehensive formal treatment of ETC security and privacy overall. Additionally, we provide a prototypical implementation on realistic hardware which already features fairly practical performance figures. An interaction between an onboard unit and a road-side unit is estimated to take less than a second allowing for toll collection at full speed assuming one road-side unit per lane.<\/jats:p>","DOI":"10.2478\/popets-2020-0046","type":"journal-article","created":{"date-parts":[[2020,8,28]],"date-time":"2020-08-28T14:44:08Z","timestamp":1598625848000},"page":"62-152","source":"Crossref","is-referenced-by-count":11,"title":["P4TC\u2014Provably-Secure yet Practical Privacy-Preserving Toll Collection"],"prefix":"10.56553","volume":"2020","author":[{"given":"Valerie","family":"Fetzer","sequence":"first","affiliation":[{"name":"Karlsruhe Institute of Technology"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Max","family":"Hoffmann","sequence":"additional","affiliation":[{"name":"Ruhr University Bochum"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Matthias","family":"Nagel","sequence":"additional","affiliation":[{"name":"Karlsruhe Institute of Technology"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Andy","family":"Rupp","sequence":"additional","affiliation":[{"name":"University of Luxembourg"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Rebecca","family":"Schwerdt","sequence":"additional","affiliation":[{"name":"Karlsruhe Institute of Technology"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"35752","published-online":{"date-parts":[[2020,8,17]]},"reference":[{"key":"2022042602011998282_j_popets-2020-0046_ref_001_w2aab3b7c10b1b6b1ab1ab1Aa","unstructured":"[1] ABC News. Toll records catch unfaithful spouses, 2008. URL https:\/\/abcnews.go.com\/Technology\/story?id=3468712&page=1."},{"key":"2022042602011998282_j_popets-2020-0046_ref_002_w2aab3b7c10b1b6b1ab1ab2Aa","doi-asserted-by":"crossref","unstructured":"[2] M. Abe, J. Groth, K. Haralambiev, and M. Ohkubo. Optimal structure-preserving signatures in asymmetric bilinear groups. In P. Rogaway, editor, CRYPTO 2011, volume 6841 of LNCS, pages 649\u2013666. Springer, Heidelberg, Aug. 2011.10.1007\/978-3-642-22792-9_37","DOI":"10.1007\/978-3-642-22792-9_37"},{"key":"2022042602011998282_j_popets-2020-0046_ref_003_w2aab3b7c10b1b6b1ab1ab3Aa","doi-asserted-by":"crossref","unstructured":"[3] M. Abe, J. Groth, M. Ohkubo, and T. Tango. Converting cryptographic schemes from symmetric to asymmetric bilinear groups. In J. A. Garay and R. Gennaro, editors, CRYPTO 2014, Part I, volume 8616 of LNCS, pages 241\u2013260. Springer, Heidelberg, Aug. 2014. 10.1007\/978-3-662-44371-2_14.10.1007\/978-3-662-44371-2_14","DOI":"10.1007\/978-3-662-44371-2_14"},{"key":"2022042602011998282_j_popets-2020-0046_ref_004_w2aab3b7c10b1b6b1ab1ab4Aa","doi-asserted-by":"crossref","unstructured":"[4] M. Abe, M. Kohlweiss, M. Ohkubo, and M. Tibouchi. Fully structure-preserving signatures and shrinking commitments. In E. Oswald and M. Fischlin, editors, EUROCRYPT 2015, Part II, volume 9057 of LNCS, pages 35\u201365. Springer, Heidelberg, Apr. 2015. 10.1007\/978-3-662-46803-6_2.10.1007\/978-3-662-46803-6_2","DOI":"10.1007\/978-3-662-46803-6_2"},{"key":"2022042602011998282_j_popets-2020-0046_ref_005_w2aab3b7c10b1b6b1ab1ab5Aa","unstructured":"[5] C. Albrecht, F. Gurski, J. Rethmann, and E. Yilmaz. Knapsack problems: A parameterized point of view. Theoretical Computer Science, 2018."},{"key":"2022042602011998282_j_popets-2020-0046_ref_006_w2aab3b7c10b1b6b1ab1ab6Aa","unstructured":"[6] American Civil Liberties Union. Newly obtained records reveal extensive monitoring of e-zpass tags throughout new york, 2015. URL https:\/\/www.aclu.org\/blog\/privacytechnology\/location-tracking\/newly-obtained-records-revealextensive-monitoring-e-zpass."},{"key":"2022042602011998282_j_popets-2020-0046_ref_007_w2aab3b7c10b1b6b1ab1ab7Aa","unstructured":"[7] D. F. Aranha and C. P. L. Gouv\u00eaa. Relic is an efficient library for cryptography, 2016. URL https:\/\/github.com\/relictoolkit\/relic."},{"key":"2022042602011998282_j_popets-2020-0046_ref_008_w2aab3b7c10b1b6b1ab1ab8Aa","unstructured":"[8] J. Balasch, A. Rial, C. Troncoso, B. Preneel, I. Verbauwhede, and C. Geuens. PrETP: Privacy-preserving electronic toll pricing. In USENIX Security 2010, pages 63\u201378. USENIX Association, Aug. 2010."},{"key":"2022042602011998282_j_popets-2020-0046_ref_009_w2aab3b7c10b1b6b1ab1ab9Aa","doi-asserted-by":"crossref","unstructured":"[9] F. Baldimtsi, M. Chase, G. Fuchsbauer, and M. Kohlweiss. Anonymous transferable E-cash. In J. Katz, editor, PKC 2015, volume 9020 of LNCS, pages 101\u2013124. Springer, Heidelberg, Mar. \/ Apr. 2015. 10.1007\/978-3-662-46447-2_5.10.1007\/978-3-662-46447-2_5","DOI":"10.1007\/978-3-662-46447-2_5"},{"key":"2022042602011998282_j_popets-2020-0046_ref_010_w2aab3b7c10b1b6b1ab1ac10Aa","unstructured":"[10] B. Barak, R. Canetti, J. B. Nielsen, and R. Pass. Universally composable protocols with relaxed set-up assumptions. In 45th FOCS, pages 186\u2013195. IEEE Computer Society Press, Oct. 2004."},{"key":"2022042602011998282_j_popets-2020-0046_ref_011_w2aab3b7c10b1b6b1ab1ac11Aa","unstructured":"[11] R. Barbulescu and S. Duquesne. Updating key size estimations for pairings. Cryptology ePrint Archive, Report 2017\/334, 2017. https:\/\/eprint.iacr.org\/2017\/334."},{"key":"2022042602011998282_j_popets-2020-0046_ref_012_w2aab3b7c10b1b6b1ab1ac12Aa","doi-asserted-by":"crossref","unstructured":"[12] A. Barki, S. Brunet, N. Desmoulins, S. Gambs, S. Gharout, and J. Traor\u00e9. Private eCash in practice (short paper). In J. Grossklags and B. Preneel, editors, FC 2016, volume 9603 of LNCS, pages 99\u2013109. Springer, Heidelberg, Feb. 2016.10.1007\/978-3-662-54970-4_6","DOI":"10.1007\/978-3-662-54970-4_6"},{"key":"2022042602011998282_j_popets-2020-0046_ref_013_w2aab3b7c10b1b6b1ab1ac13Aa","doi-asserted-by":"crossref","unstructured":"[13] P. S. L. M. Barreto and M. Naehrig. Pairing-friendly elliptic curves of prime order. In B. Preneel and S. Tavares, editors, SAC 2005, volume 3897 of LNCS, pages 319\u2013331. Springer, Heidelberg, Aug. 2006.10.1007\/11693383_22","DOI":"10.1007\/11693383_22"},{"key":"2022042602011998282_j_popets-2020-0046_ref_014_w2aab3b7c10b1b6b1ab1ac14Aa","doi-asserted-by":"crossref","unstructured":"[14] M. Bellare. New proofs for NMAC and HMAC: Security without collision resistance. Journal of Cryptology, 28(4): 844\u2013878, Oct. 2015. 10.1007\/s00145-014-9185-x.10.1007\/s00145-014-9185-x","DOI":"10.1007\/s00145-014-9185-x"},{"key":"2022042602011998282_j_popets-2020-0046_ref_015_w2aab3b7c10b1b6b1ab1ac15Aa","doi-asserted-by":"crossref","unstructured":"[15] M. Bellare, A. Desai, D. Pointcheval, and P. Rogaway. Relations among notions of security for public-key encryption schemes. In H. Krawczyk, editor, CRYPTO\u201998, volume 1462 of LNCS, pages 26\u201345. Springer, Heidelberg, Aug. 1998.10.1007\/BFb0055718","DOI":"10.1007\/BFb0055718"},{"key":"2022042602011998282_j_popets-2020-0046_ref_016_w2aab3b7c10b1b6b1ab1ac16Aa","unstructured":"[16] D. J. Bernstein and T. Lange. Computing small discrete logarithms faster. Cryptology ePrint Archive, Report 2012\/458, 2012. https:\/\/eprint.iacr.org\/2012\/458."},{"key":"2022042602011998282_j_popets-2020-0046_ref_017_w2aab3b7c10b1b6b1ab1ac17Aa","doi-asserted-by":"crossref","unstructured":"[17] F. Bourse, D. Pointcheval, and O. Sanders. Divisible ecash from constrained pseudo-random functions. In S. D. Galbraith and S. Moriai, editors, Advances in Cryptology - ASIACRYPT 2019 - 25th International Conference on the Theory and Application of Cryptology and Information Security, Kobe, Japan, December 8-12, 2019, Proceedings, Part I, volume 11921 of Lecture Notes in Computer Science, pages 679\u2013708. Springer, 2019. 10.1007\/978-3-030-34578-5_24.10.1007\/978-3-030-34578-5_24","DOI":"10.1007\/978-3-030-34578-5_24"},{"key":"2022042602011998282_j_popets-2020-0046_ref_018_w2aab3b7c10b1b6b1ab1ac18Aa","doi-asserted-by":"crossref","unstructured":"[18] J. Camenisch, S. Hohenberger, and A. Lysyanskaya. Compact e-cash. In R. Cramer, editor, EUROCRYPT 2005, volume 3494 of LNCS, pages 302\u2013321. Springer, Heidelberg, May 2005.10.1007\/11426639_18","DOI":"10.1007\/11426639_18"},{"key":"2022042602011998282_j_popets-2020-0046_ref_019_w2aab3b7c10b1b6b1ab1ac19Aa","doi-asserted-by":"crossref","unstructured":"[19] J. Camenisch, R. Chaabouni, and a. shelat. Efficient protocols for set membership and range proofs. In J. Pieprzyk, editor, ASIACRYPT 2008, volume 5350 of LNCS, pages 234\u2013252. Springer, Heidelberg, Dec. 2008.10.1007\/978-3-540-89255-7_15","DOI":"10.1007\/978-3-540-89255-7_15"},{"key":"2022042602011998282_j_popets-2020-0046_ref_020_w2aab3b7c10b1b6b1ab1ac20Aa","doi-asserted-by":"crossref","unstructured":"[20] J. Camenisch, K. Haralambiev, M. Kohlweiss, J. Lapon, and V. Naessens. Structure preserving CCA secure encryption and applications. In D. H. Lee and X. Wang, editors, ASIACRYPT 2011, volume 7073 of LNCS, pages 89\u2013106. Springer, Heidelberg, Dec. 2011.10.1007\/978-3-642-25385-0_5","DOI":"10.1007\/978-3-642-25385-0_5"},{"key":"2022042602011998282_j_popets-2020-0046_ref_021_w2aab3b7c10b1b6b1ab1ac21Aa","doi-asserted-by":"crossref","unstructured":"[21] S. Canard and A. Gouget. Anonymity in transferable ecash. In S. M. Bellovin, R. Gennaro, A. D. Keromytis, and M. Yung, editors, ACNS 08, volume 5037 of LNCS, pages 207\u2013223. Springer, Heidelberg, June 2008.10.1007\/978-3-540-68914-0_13","DOI":"10.1007\/978-3-540-68914-0_13"},{"key":"2022042602011998282_j_popets-2020-0046_ref_022_w2aab3b7c10b1b6b1ab1ac22Aa","doi-asserted-by":"crossref","unstructured":"[22] R. Canetti. Universally composable security: A new paradigm for cryptographic protocols. In 42nd FOCS, pages 136\u2013145. IEEE Computer Society Press, Oct. 2001.10.1109\/SFCS.2001.959888","DOI":"10.1109\/SFCS.2001.959888"},{"key":"2022042602011998282_j_popets-2020-0046_ref_023_w2aab3b7c10b1b6b1ab1ac23Aa","unstructured":"[23] R. Canetti. Obtaining universally composable security: Towards the bare bones of trust. Cryptology ePrint Archive, Report 2007\/475, 2007. https:\/\/eprint.iacr.org\/2007\/475."},{"key":"2022042602011998282_j_popets-2020-0046_ref_024_w2aab3b7c10b1b6b1ab1ac24Aa","doi-asserted-by":"crossref","unstructured":"[24] R. Canetti, Y. Dodis, R. Pass, and S. Walfish. Universally composable security with global setup. In S. P. Vadhan, editor, TCC 2007, volume 4392 of LNCS, pages 61\u201385. Springer, Heidelberg, Feb. 2007.10.1007\/978-3-540-70936-7_4","DOI":"10.1007\/978-3-540-70936-7_4"},{"key":"2022042602011998282_j_popets-2020-0046_ref_025_w2aab3b7c10b1b6b1ab1ac25Aa","doi-asserted-by":"crossref","unstructured":"[25] R. Canetti, D. Shahaf, and M. Vald. Universally composable authentication and key-exchange with global PKI. In C.-M. Cheng, K.-M. Chung, G. Persiano, and B.-Y. Yang, editors, PKC 2016, Part II, volume 9615 of LNCS, pages 265\u2013296. Springer, Heidelberg, Mar. 2016. 10.1007\/978-3-662-49387-8_11.10.1007\/978-3-662-49387-8_11","DOI":"10.1007\/978-3-662-49387-8_11"},{"key":"2022042602011998282_j_popets-2020-0046_ref_026_w2aab3b7c10b1b6b1ab1ac26Aa","doi-asserted-by":"crossref","unstructured":"[26] D. Cash, E. Kiltz, and V. Shoup. The twin Diffie-Hellman problem and applications. In N. P. Smart, editor, EUROCRYPT 2008, volume 4965 of LNCS, pages 127\u2013145. Springer, Heidelberg, Apr. 2008.10.1007\/978-3-540-78967-3_8","DOI":"10.1007\/978-3-540-78967-3_8"},{"key":"2022042602011998282_j_popets-2020-0046_ref_027_w2aab3b7c10b1b6b1ab1ac27Aa","doi-asserted-by":"crossref","unstructured":"[27] X. Chen, G. Lenzini, S. Mauw, and J. Pang. A group signature based electronic toll pricing system. In 2012 Seventh International Conference on Availability, Reliability and Security, ARES 2012, pages 85\u201393, 2012.10.1109\/ARES.2012.67","DOI":"10.1109\/ARES.2012.67"},{"key":"2022042602011998282_j_popets-2020-0046_ref_028_w2aab3b7c10b1b6b1ab1ac28Aa","unstructured":"[28] X. Chen, G. Lenzini, S. Mauw, and J. Pang. Design and formal analysis of A group signature based electronic toll pricing system. JoWUA, 4(1):55\u201375, 2013. URL http:\/\/isyou.info\/jowua\/papers\/jowua-v4n1-3.pdf."},{"key":"2022042602011998282_j_popets-2020-0046_ref_029_w2aab3b7c10b1b6b1ab1ac29Aa","doi-asserted-by":"crossref","unstructured":"[29] M. Dahl, S. Delaune, and G. Steel. Formal analysis of privacy for anonymous location based services. Theory of Security and Applications, pages 98\u2013112, 2012.10.1007\/978-3-642-27375-9_6","DOI":"10.1007\/978-3-642-27375-9_6"},{"key":"2022042602011998282_j_popets-2020-0046_ref_030_w2aab3b7c10b1b6b1ab1ac30Aa","unstructured":"[30] Datatilsynet. Statens vegvesen holdt tilbake viktig autopass-informasjon (press release), 2007. URL http:\/\/www.datatilsynet.no\/."},{"key":"2022042602011998282_j_popets-2020-0046_ref_031_w2aab3b7c10b1b6b1ab1ac31Aa","doi-asserted-by":"crossref","unstructured":"[31] J. Day, Y. Huang, E. Knapp, and I. Goldberg. Spectre: Spot-checked private ecash tolling at roadside. In Proceedings of the 10th Annual ACM Workshop on Privacy in the Electronic Society, WPES \u201911, pages 61\u201368, 2011.10.1145\/2046556.2046565","DOI":"10.1145\/2046556.2046565"},{"key":"2022042602011998282_j_popets-2020-0046_ref_032_w2aab3b7c10b1b6b1ab1ac32Aa","unstructured":"[32] Deutsches Bundesamt f\u00fcr G\u00fcterverkehr. Monatliche mautstatistik f\u00fcr januar 2018, 2018. URL https:\/\/www.bag.bund.de\/SharedDocs\/Downloads\/DE\/Statistik\/Lkw-Maut\/18_Monatstab_01.html."},{"key":"2022042602011998282_j_popets-2020-0046_ref_033_w2aab3b7c10b1b6b1ab1ac33Aa","unstructured":"[33] Y. Dodis and A. Yampolskiy. A verifiable random function with short proofs and keys. Cryptology ePrint Archive, Report 2004\/310, 2004. https:\/\/eprint.iacr.org\/2004\/310."},{"key":"2022042602011998282_j_popets-2020-0046_ref_034_w2aab3b7c10b1b6b1ab1ac34Aa","unstructured":"[34] ECONOLITE Group. Connected vehicle coprocessor module, 2018. URL http:\/\/www.econolitegroup.com\/wp-content\/uploads\/2017\/05\/controllers-connectedvehicle-datasheet.pdf."},{"key":"2022042602011998282_j_popets-2020-0046_ref_035_w2aab3b7c10b1b6b1ab1ac35Aa","doi-asserted-by":"crossref","unstructured":"[35] A. Escala and J. Groth. Fine-tuning Groth-Sahai proofs. In H. Krawczyk, editor, PKC 2014, volume 8383 of LNCS, pages 630\u2013649. Springer, Heidelberg, Mar. 2014. 10.1007\/978-3-642-54631-0_36.10.1007\/978-3-642-54631-0_36","DOI":"10.1007\/978-3-642-54631-0_36"},{"key":"2022042602011998282_j_popets-2020-0046_ref_036_w2aab3b7c10b1b6b1ab1ac36Aa","unstructured":"[36] European Commission. Study on state of the art of electronic road tolling, 2015. URL https:\/\/ec.europa.eu\/transport\/sites\/transport\/files\/modes\/road\/road_charging\/doc\/studyelectronic-road-tolling.pdf."},{"key":"2022042602011998282_j_popets-2020-0046_ref_037_w2aab3b7c10b1b6b1ab1ac37Aa","unstructured":"[37] European Commission. Proposal for a directive of the european parliament and of the council on the interoperability of electronic road toll systems and facilitating crossborder exchange of information on the failure to pay road fees in the union (recast), 2017. URL https:\/\/ec.europa.eu\/transport\/sites\/transport\/files\/com20170280-eets-directive.pdf."},{"key":"2022042602011998282_j_popets-2020-0046_ref_038_w2aab3b7c10b1b6b1ab1ac38Aa","unstructured":"[38] European Commission. The eu general data protection regulation (gdpr), 2018. URL https:\/\/www.eugdpr.org\/."},{"key":"2022042602011998282_j_popets-2020-0046_ref_039_w2aab3b7c10b1b6b1ab1ac39Aa","unstructured":"[39] European Parliament. Technology options for the european electronic toll service, 2014. URL http:\/\/www.europarl.europa.eu\/RegData\/etudes\/STUD\/2014\/529058\/IPOL_STUD(2014)529058_EN.pdf."},{"key":"2022042602011998282_j_popets-2020-0046_ref_040_w2aab3b7c10b1b6b1ab1ac40Aa","doi-asserted-by":"crossref","unstructured":"[40] F. D. Garcia, E. R. Verheul, and B. Jacobs. Cell-based roadpricing. In European Public Key Infrastructure Workshop \u2013 EuroPKI 2011, volume 7163 of Lecture Notes in Computer Science, pages 106\u2013122, 2011.10.1007\/978-3-642-29804-2_7","DOI":"10.1007\/978-3-642-29804-2_7"},{"key":"2022042602011998282_j_popets-2020-0046_ref_041_w2aab3b7c10b1b6b1ab1ac41Aa","unstructured":"[41] Global Markets Insights. ETC Market Report 2019, 2019. URL https:\/\/www.marketwatch.com\/press-release\/electronic-toll-collection-market-2019-in-depth-industryanalysis-by-product-technology-application-opportunitiesand-growth-forecast-by-2025-2019-11-12."},{"key":"2022042602011998282_j_popets-2020-0046_ref_042_w2aab3b7c10b1b6b1ab1ac42Aa","doi-asserted-by":"crossref","unstructured":"[42] J. Groth and A. Sahai. Efficient non-interactive proof systems for bilinear groups. In N. P. Smart, editor, EUROCRYPT 2008, volume 4965 of LNCS, pages 415\u2013432. Springer, Heidelberg, Apr. 2008.10.1007\/978-3-540-78967-3_24","DOI":"10.1007\/978-3-540-78967-3_24"},{"key":"2022042602011998282_j_popets-2020-0046_ref_043_w2aab3b7c10b1b6b1ab1ac43Aa","unstructured":"[43] E.-Z. Group. E-ZPass Statistics: 2005 - 2016, 2017. URL https:\/\/e-zpassiag.com\/about-us\/statistics."},{"key":"2022042602011998282_j_popets-2020-0046_ref_044_w2aab3b7c10b1b6b1ab1ac44Aa","doi-asserted-by":"crossref","unstructured":"[44] G. Hartung, M. Hoffmann, M. Nagel, and A. Rupp. BBA+: Improving the security and applicability of privacy-preserving point collection. In B. M. Thuraisingham, D. Evans, T. Malkin, and D. Xu, editors, ACM CCS 2017, pages 1925\u20131942. ACM Press, Oct. \/ Nov. 2017.10.1145\/3133956.3134071","DOI":"10.1145\/3133956.3134071"},{"key":"2022042602011998282_j_popets-2020-0046_ref_045_w2aab3b7c10b1b6b1ab1ac45Aa","doi-asserted-by":"crossref","unstructured":"[45] G. Herold, M. Hoffmann, M. Kloo\u00df, C. R\u00e0fols, and A. Rupp. New techniques for structural batch verification in bilinear groups with applications to groth-sahai proofs. In B. M. Thuraisingham, D. Evans, T. Malkin, and D. Xu, editors, ACM CCS 2017, pages 1547\u20131564. ACM Press, Oct. \/ Nov. 2017.10.1145\/3133956.3134068","DOI":"10.1145\/3133956.3134068"},{"key":"2022042602011998282_j_popets-2020-0046_ref_046_w2aab3b7c10b1b6b1ab1ac46Aa","doi-asserted-by":"crossref","unstructured":"[46] M. Hoffmann, M. Kloo\u00df, M. Raiber, and A. Rupp. Black-box wallets: Fast anonymous two-way payments for constrained devices. Proceedings on Privacy Enhancing Technologies, 2020(1):165\u2013194, 2020. 10.2478\/popets-2020-0010.","DOI":"10.2478\/popets-2020-0010"},{"key":"2022042602011998282_j_popets-2020-0046_ref_047_w2aab3b7c10b1b6b1ab1ac47Aa","doi-asserted-by":"crossref","unstructured":"[47] R. Jard\u00ed-Ced\u00f3, J. Castell\u00e0-Roca, and A. Viejo. Privacypreserving electronic toll system with dynamic pricing for low emission zones. In Data Privacy Management, Autonomous Spontaneous Security and Security Assurance \u2013 DPM 2014, SETOP 2014 and QASA 2014. Revised Selected Papers, volume 8872 of Lecture Notes in Computer Science, pages 327\u2013334, 2014.10.1007\/978-3-319-17016-9_22","DOI":"10.1007\/978-3-319-17016-9_22"},{"key":"2022042602011998282_j_popets-2020-0046_ref_048_w2aab3b7c10b1b6b1ab1ac48Aa","doi-asserted-by":"crossref","unstructured":"[48] R. Jard\u00ed-Ced\u00f3, M. Mut-Puigserver, M. M. Payeras-Capell\u00e0, J. Castell\u00e0-Roca, and A. Viejo. Electronic road pricing system for low emission zones to preserve driver privacy. In Modeling Decisions for Artificial Intelligence \u2013 MDAI 2014. Proceedings, pages 1\u201313, 2014.10.1007\/978-3-319-12054-6_1","DOI":"10.1007\/978-3-319-12054-6_1"},{"key":"2022042602011998282_j_popets-2020-0046_ref_049_w2aab3b7c10b1b6b1ab1ac49Aa","doi-asserted-by":"crossref","unstructured":"[49] R. Jard\u00ed-Ced\u00f3, M. Mut-Puigserver, M. M. Payeras-Capell\u00e0, J. Castell\u00e0-Roca, and A. Viejo. Privacy-preserving electronic road pricing system for multifare low emission zones. In Proceedings of the 9th International Conference on Security of Information and Networks, SIN 2016, pages 158\u2013165, 2016.10.1145\/2947626.2947653","DOI":"10.1145\/2947626.2947653"},{"key":"2022042602011998282_j_popets-2020-0046_ref_050_w2aab3b7c10b1b6b1ab1ac50Aa","unstructured":"[50] Kapsch (Toll Collection System Integrator and Supplier). Personal Communication, 2018."},{"key":"2022042602011998282_j_popets-2020-0046_ref_051_w2aab3b7c10b1b6b1ab1ac51Aa","unstructured":"[51] Y. Kawahara, T. Kobayashi, M. Scott, and A. Kato. Barretonaehrig curves. Internet draft, Internet Engineering Task Force, Mar. 2016. Work in Progress."},{"key":"2022042602011998282_j_popets-2020-0046_ref_052_w2aab3b7c10b1b6b1ab1ac52Aa","doi-asserted-by":"crossref","unstructured":"[52] F. Kerschbaum and H. W. Lim. Privacy-preserving observation in public spaces. In G. Pernul, P. Y. A. Ryan, and E. R. Weippl, editors, ESORICS 2015, Part II, volume 9327 of LNCS, pages 81\u2013100. Springer, Heidelberg, Sept. 2015. 10.1007\/978-3-319-24177-7_5.10.1007\/978-3-319-24177-7_5","DOI":"10.1007\/978-3-319-24177-7_5"},{"key":"2022042602011998282_j_popets-2020-0046_ref_053_w2aab3b7c10b1b6b1ab1ac53Aa","doi-asserted-by":"crossref","unstructured":"[53] E. Kiltz, J. Pan, and H. Wee. Structure-preserving signatures from standard assumptions, revisited. In R. Gennaro and M. J. B. Robshaw, editors, CRYPTO 2015, Part II, volume 9216 of LNCS, pages 275\u2013295. Springer, Heidelberg, Aug. 2015. 10.1007\/978-3-662-48000-7_14.10.1007\/978-3-662-48000-7_14","DOI":"10.1007\/978-3-662-48000-7_14"},{"key":"2022042602011998282_j_popets-2020-0046_ref_054_w2aab3b7c10b1b6b1ab1ac54Aa","doi-asserted-by":"crossref","unstructured":"[54] H. Koelmeyer and S. Kandeepan. Tagless tolling using dsrc for intelligent transport system: An interference study. In Asia Modelling Symposium. IEEE, 2017.10.1109\/AMS.2017.33","DOI":"10.1109\/AMS.2017.33"},{"key":"2022042602011998282_j_popets-2020-0046_ref_055_w2aab3b7c10b1b6b1ab1ac55Aa","unstructured":"[55] S. Kummer, M. Dieplinger, and M. Dobrovnik. Endbericht der studie \u201cfl\u00e4chendeckende schwerverkehrs-maut in \u00d6sterreich\u201d, 2015. URL https:\/\/www.wko.at\/branchen\/stmk\/transport-verkehr\/gueterbefoerderungsgewerbe\/Endbericht_FlaechendeckendeMaut_final.pdf."},{"key":"2022042602011998282_j_popets-2020-0046_ref_056_w2aab3b7c10b1b6b1ab1ac56Aa","doi-asserted-by":"crossref","unstructured":"[56] J. Lapon, M. Kohlweiss, B. D. Decker, and V. Naessens. Performance analysis of accumulator-based revocation mechanisms. In Security and Privacy - Silver Linings in the Cloud - 25th IFIP TC-11 International Information Security Conference, SEC 2010, Held as Part of WCC 2010, Brisbane, Australia, September 20-23, 2010. Proceedings, pages 289\u2013301, 2010. 10.1007\/978-3-642-15257-3_26.10.1007\/978-3-642-15257-3_26","DOI":"10.1007\/978-3-642-15257-3_26"},{"key":"2022042602011998282_j_popets-2020-0046_ref_057_w2aab3b7c10b1b6b1ab1ac57Aa","unstructured":"[57] Y. J. Li. An overview of the dsrc\/wave technology. In International Conference on Heterogeneous Networking for Quality, Reliability, Security and Robustness, pages 544\u2013558. Springer, 2010."},{"key":"2022042602011998282_j_popets-2020-0046_ref_058_w2aab3b7c10b1b6b1ab1ac58Aa","unstructured":"[58] Markets and Markets. Electronic Toll Collection Market Study, 2017. URL https:\/\/www.marketsandmarkets.com\/Market-Reports\/electronic-toll-collection-system-market-224492059.html."},{"key":"2022042602011998282_j_popets-2020-0046_ref_059_w2aab3b7c10b1b6b1ab1ac59Aa","unstructured":"[59] S. Meiklejohn, K. Mowery, S. Checkoway, and H. Shacham. The phantom tollbooth: Privacy-preserving electronic toll collection in the presence of driver collusion. In USENIX Security 2011. USENIX Association, Aug. 2011."},{"key":"2022042602011998282_j_popets-2020-0046_ref_060_w2aab3b7c10b1b6b1ab1ac60Aa","doi-asserted-by":"crossref","unstructured":"[60] D. Moody, R. C. Peralta, R. A. Perlner, A. R. Regenscheid, A. L. Roginsky, and L. Chen. Report on pairing-based cryptography. In Journal of Research of the National Institute of Standards and Technology, volume 120, pages 11\u201327, Gaithersburg, MD, USA, Feb. 2015. National Insititute of Standards and Technology.10.6028\/jres.120.002473068626958435","DOI":"10.6028\/jres.120.002"},{"key":"2022042602011998282_j_popets-2020-0046_ref_061_w2aab3b7c10b1b6b1ab1ac61Aa","unstructured":"[61] R. A. Popa, H. Balakrishnan, and A. J. Blumberg. VPriv: Protecting privacy in location-based vehicular services. In F. Monrose, editor, USENIX Security 2009, pages 335\u2013350. USENIX Association, Aug. 2009."},{"key":"2022042602011998282_j_popets-2020-0046_ref_062_w2aab3b7c10b1b6b1ab1ac62Aa","unstructured":"[62] Savari.net. Mobiwave on-board-unit (obu), 2017. URL http:\/\/savari.net\/wp-content\/uploads\/2017\/05\/MW-1000_April2017.pdf."},{"key":"2022042602011998282_j_popets-2020-0046_ref_063_w2aab3b7c10b1b6b1ab1ac63Aa","doi-asserted-by":"crossref","unstructured":"[63] L. Sweeney. k-anonymity: A model for protecting privacy. International Journal of Uncertainty, Fuzziness and Knowledge-Based Systems, 10(5):557\u2013570, 2002. 10.1142\/S0218488502001648.","DOI":"10.1142\/S0218488502001648"}],"container-title":["Proceedings on Privacy Enhancing Technologies"],"original-title":[],"language":"en","link":[{"URL":"https:\/\/content.sciendo.com\/view\/journals\/popets\/2020\/3\/article-p62.xml","content-type":"text\/html","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/www.sciendo.com\/pdf\/10.2478\/popets-2020-0046","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2022,7,20]],"date-time":"2022-07-20T16:31:01Z","timestamp":1658334661000},"score":1,"resource":{"primary":{"URL":"https:\/\/petsymposium.org\/popets\/2020\/popets-2020-0046.php"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2020,7,1]]},"references-count":63,"journal-issue":{"issue":"3","published-online":{"date-parts":[[2020,8,17]]},"published-print":{"date-parts":[[2020,7,1]]}},"alternative-id":["10.2478\/popets-2020-0046"],"URL":"https:\/\/doi.org\/10.2478\/popets-2020-0046","relation":{},"ISSN":["2299-0984"],"issn-type":[{"value":"2299-0984","type":"electronic"}],"subject":[],"published":{"date-parts":[[2020,7,1]]}}}