Skip to main navigation Skip to search Skip to main content

A Safety-Centric Analysis and Benchmarks of Modern Open-Source Homomorphic Encryption Libraries

Research output: Chapter in Book/Report/Conference proceedingConference contribution

Abstract

Homomorphic Encryption (HE) is a rapidly evolving field in secure computation, offering very strong security guarantees in privacy-preserving data processing. A large number of commercial systems that prioritize privacy depend on open-source HE libraries to ensure secure and confidential computation. However, the security of these open-source libraries remains questionable, as they do not demonstrate strong security assurances, such as formal verification, in their development process. In this work, we investigate security vulnerabilities and the efficiency of the implementations of the four main HE schemes in the most commonly used open-source HE libraries. To analyze security, we employ the SafeRewrite open-source dynamic analysis tool, which uses symbolic execution techniques to validate code correctness. The study reveals several security vulnerabilities, errors, and warnings in all of the libraries. In terms of performance, we assess the latency and scalability of the fundamental HE operations in these libraries. The results indicate that the Cheon-KimKim-Song (CKKS) scheme is the fastest HE scheme, whereas OpenFHE is, on average, the best-performing HE library. Overall, this research underscores the significance of using secure development approaches and frameworks in implementing HE algorithms to ensure stronger security guarantees and correctness while minimizing performance impacts.

Original languageEnglish (US)
Title of host publicationProceedings of the 22nd International Conference on Security and Cryptography, SECRYPT 2025
EditorsSabrina De Capitani Di Vimercati, Pierangela Samarati
PublisherScience and Technology Publications, Lda
Pages483-494
Number of pages12
ISBN (Print)9789897587603
DOIs
StatePublished - 2025
Externally publishedYes
Event22nd International Conference on Security and Cryptography, SECRYPT 2025 - Bilbao, Spain
Duration: Jun 11 2025Jun 13 2025

Publication series

NameProceedings of the International Conference on Security and Cryptography
Volume1
ISSN (Print)2184-7711

Conference

Conference22nd International Conference on Security and Cryptography, SECRYPT 2025
Country/TerritorySpain
CityBilbao
Period6/11/256/13/25

Keywords

  • Advanced Cryptography
  • Homomorphic Encryption
  • Open-Source Software
  • Security and Performance Analysis

ASJC Scopus subject areas

  • Software
  • Information Systems
  • Computer Networks and Communications

Fingerprint

Dive into the research topics of 'A Safety-Centric Analysis and Benchmarks of Modern Open-Source Homomorphic Encryption Libraries'. Together they form a unique fingerprint.

Cite this