Lindsey Tulloch
Master of Mathematics · Privacy and Security Researcher, Software Developer
Hello World.
I am a privacy and security researcher and software developer working on the anti-censorship team at The Tor Project.
My research focuses on privacy enhancing technologies and censorship circumvention systems.
I am a graduate of the Cryptography Security and Privacy (CrySP) lab (MMath 2022), where I worked under Ian Goldberg.
My graduate work on Lox, a privacy preserving, reputation based bridge distribution system to support censorship circumvention efforts, is currently being integrated into Tor Browser.
A shorter version of my full thesis was published in PETS'23 and won the Andreas Pfitzmann Best Student Paper Award. The original Lox library is available here.
I previously worked with the LEAP Encryption Access Project on designing robust, UDP based pluggable transports for censorship circumvention. I wrote about some of the reasoning behind, and challenges involved in this effort in LEAP's blog.
In the past I also worked with Red Hat on Kubernetes Cluster Federation and the Tekton vscode plugin.
skills
Research
Languages, Operating Systems & Tools
DevOps & Container Administration
opensource
A collection of open-source projects I contributed to.
This is our implementation of Lox, a reputation-based bridge distribution system that provides privacy protection to users and their social graph and is open to all users. The Lox repo, written in Rust by my supervisor Ian Goldberg and me, includes test suites that were used to produce the results in my MMath thesis and our PETS'23 paper. Lox is currently being incorpoarted into Tor browser to be tested out as an alternative to Tor's bridgedb.
Read MoreI contributed to development on the Slitheen decoy routing system, developed by Cecylia Bocovich and Ian Goldberg, and the Oustral traffic generating extension, developed by Anna Harbluk Lorimer, for our Oustralopithecus paper.
Read MorePrior to beginning my masters at Waterloo, I kicked off the development on Red Hat developers' vscode plugin for Tekton CI/CD pipelines over the course of a summer internship.
Read MoreAfter being thrown into the deep end a bit while working on Kubernetes as my first open-source project, I created this choose your own adventure style tutorial for some advanced git commands for command line.
Read Morepublications
A collection of my publications.
Lindsey Tulloch & Ian Goldberg
Proceedings on Privacy Enhancing Technologies. Vol. 2023 No. 1, pp. 18, January 2023.
Lox is a privacy preserving bridge distribution system that utilizes anonymous credentials to allow users to anonymously build reputations within the system and invite friends. This thesis describes and analyzes the Lox design and protocols and evaluates the load of the system relative to known usecases, such as the bridge user base.
Read MoreThomas Humphries, Simon Oya, Lindsey Tulloch, Matthew Rafuse, Ian Goldberg, Urs Hengartner, Florian Kerschbaum
35th IEEE Computer Security Foundations Symposium, pp. 16, July 2023.
In this paper we evaluate membership inference with statistical dependencies among samples and explain why DP does not provide meaningful protection (the privacy parameter ε scales with the training set size n) in this more general case.
Read MoreLindsey Tulloch
Supervised by Ian Goldberg
Lox is a privacy preserving bridge distribution system that utilizes anonymous credentials to allow users to anonymously build reputations within the system and invite friends. This thesis describes and analyzes the Lox design and protocols and evaluates the load of the system relative to known usecases, such as the bridge user base.
Read MoreAnna Harbluk Lorimer, Lindsey Tulloch, Cecylia Bocovich and Ian Goldberg
20th ACM Workshop on Privacy in the Electronic Society, pp. 14, November 2021.
In this paper we present our design and evaluation of OUStralopithecus (OUStral), a web-based Overt User Simulator that generates replaceable human-like traffic for use in decoy-routing-like censorhsip circumvenion systems.
Read MoreRead more. . .
talks
A collection of talks that I've given that are available online.