A Framework for Privacy-aware and Secure Decentralized Data Storage

被引:1
|
作者
Aslam, Sidra [1 ,2 ]
Mrissa, Michael [1 ,2 ]
机构
[1] InnoRenew CoE, Livade 6, Izola 6310, Slovenia
[2] Univ Primorska, Fac Math Nat Sci & Informat Technol, Glagoljaska Ulica 8, Koper 6000, Slovenia
关键词
Blockchain; Distributed Hash Table; Security; Privacy; Decentralized framework; SUPPLY CHAIN; TRACEABILITY; CHALLENGES;
D O I
10.2298/CSIS220110007A
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Blockchain technology gained popularity thanks to its decentralized and transparent features. However, it suffers from a lack of privacy as it stores data publicly and has difficulty to handle data updates due to its main feature known as immutability. In this paper, we propose a decentralized data storage and access framework that combines blockchain technology with Distributed Hash Table (DHT), a role-based access control model, and multiple encryption mechanisms. Our framework stores metadata and DHT keys on the blockchain, while encrypted data is managed on the DHT, which enables data owners to control their data. It allows authorized actors to store and read their data in a decentralized storage system. We design REST APIs to ensure interoperability over the Web. Concerning data updates, we propose a pointer system that allows data owners to access their update history, which solves the issue of data updates while preserving the benefits of using the blockchain. We illustrate our solution with a wood supply chain use case and propose a traceability algorithm that allows the actors of the wood supply chain to trace the data and verify product origin. Our framework design allows authorized users to access the data and protects data against linking, eavesdropping, spoofing, and modification attacks. Moreover, we provide a proof-of-concept implementation, security and privacy analysis, and evaluation for time consumption and scalability. The experimental results demonstrate the feasibility, security, privacy, and scalability of the proposed solution.
引用
收藏
页码:1235 / 1261
页数:27
相关论文
共 50 条
  • [1] Privacy-Aware and Secure Decentralized Air Quality Monitoring
    Mrissa, Michael
    Tosic, Aleksandar
    Hrovatin, Niki
    Aslam, Sidra
    David, Balazs
    Hajdu, Laszlo
    Kresz, Miklos
    Brodnik, Andrej
    Kavsek, Branko
    [J]. APPLIED SCIENCES-BASEL, 2022, 12 (04):
  • [2] Decentralized Data Management Privacy-Aware Framework for Positive Energy Districts
    Aslam, Sidra
    Bukovszki, Viktor
    Mrissa, Michael
    [J]. ENERGIES, 2021, 14 (21)
  • [3] Privacy-aware Data Storage in Cloud Computing
    Pottier, Remy
    Menaud, Jean-Marc
    [J]. CLOSER: PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND SERVICES SCIENCE, 2017, : 377 - 384
  • [4] Special issue on secure and privacy-aware data management
    Ferrari, Elena
    Kantarcioglu, Murat
    [J]. DISTRIBUTED AND PARALLEL DATABASES, 2014, 32 (01) : 1 - 3
  • [5] Special issue on secure and privacy-aware data management
    Elena Ferrari
    Murat Kantarcioglu
    [J]. Distributed and Parallel Databases, 2014, 32 : 1 - 3
  • [6] Privacy-aware genetic algorithm based data security framework for distributed cloud storage
    Kamal, Maryam
    Amin, Shahzad
    Ferooz, Faria
    Awan, Mazhar Javed
    Mohammed, Mazin Abed
    Al-Boridi, Omar
    Abdulkareem, Karrar Hameed
    [J]. MICROPROCESSORS AND MICROSYSTEMS, 2022, 94
  • [7] A privacy-aware decentralized and personalized reputation system
    Bag, Samiran
    Azad, Muhammad Ajmal
    Hao, Feng
    [J]. COMPUTERS & SECURITY, 2018, 77 : 514 - 530
  • [8] A RESTful Privacy-Aware and Mutable Decentralized Ledger
    Aslam, Sidra
    Mrissa, Michael
    [J]. NEW TRENDS IN DATABASE AND INFORMATION SYSTEMS, ADBIS 2021, 2021, 1450 : 193 - 204
  • [9] Secure, accurate and privacy-aware fully decentralized learning via co-utility
    Manjon, Jesus
    Domingo-Ferrer, Josep
    Sanchez, David
    Blanco-Justicia, Alberto
    [J]. COMPUTER COMMUNICATIONS, 2023, 207 : 1 - 18
  • [10] Towards a Privacy-Aware Quantified Self Data Management Framework
    Thuraisingham, Bhavani
    Kantarcioglu, Murat
    Bertino, Elisa
    Bakdash, Jonathan Z.
    Fernandez, Maribel
    [J]. SACMAT'18: PROCEEDINGS OF THE 23RD ACM SYMPOSIUM ON ACCESS CONTROL MODELS & TECHNOLOGIES, 2018, : 173 - 184