FINDING · DEFENSE

Publius cryptographically binds the URL to both the document content and the key shares via name_i = wrap(H(M · share_i)). Any unauthorized modification to the stored encrypted file, a share, or the URL itself causes the tamper check to fail, preventing silent content substitution by a malicious server.

From 2000-waldman-publiusPublius: A robust, tamper-evident, censorship-resistant web publishing system · §3.2, §3.3 · 2000 · USENIX Security Symposium

Implications

Tags

censors
generic
techniques
ip-blocking
defenses
meta-resistance

Extracted by claude-sonnet-4-6 — review before relying.