A Framework for Privacy-aware and Secure Decentralized Data Storage

被引:1
|
作者
Aslam, Sidra [1 ,2 ]
Mrissa, Michael [1 ,2 ]
机构
[1] InnoRenew CoE, Livade 6, Izola 6310, Slovenia
[2] Univ Primorska, Fac Math Nat Sci & Informat Technol, Glagoljaska Ulica 8, Koper 6000, Slovenia
关键词
Blockchain; Distributed Hash Table; Security; Privacy; Decentralized framework; SUPPLY CHAIN; TRACEABILITY; CHALLENGES;
D O I
10.2298/CSIS220110007A
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Blockchain technology gained popularity thanks to its decentralized and transparent features. However, it suffers from a lack of privacy as it stores data publicly and has difficulty to handle data updates due to its main feature known as immutability. In this paper, we propose a decentralized data storage and access framework that combines blockchain technology with Distributed Hash Table (DHT), a role-based access control model, and multiple encryption mechanisms. Our framework stores metadata and DHT keys on the blockchain, while encrypted data is managed on the DHT, which enables data owners to control their data. It allows authorized actors to store and read their data in a decentralized storage system. We design REST APIs to ensure interoperability over the Web. Concerning data updates, we propose a pointer system that allows data owners to access their update history, which solves the issue of data updates while preserving the benefits of using the blockchain. We illustrate our solution with a wood supply chain use case and propose a traceability algorithm that allows the actors of the wood supply chain to trace the data and verify product origin. Our framework design allows authorized users to access the data and protects data against linking, eavesdropping, spoofing, and modification attacks. Moreover, we provide a proof-of-concept implementation, security and privacy analysis, and evaluation for time consumption and scalability. The experimental results demonstrate the feasibility, security, privacy, and scalability of the proposed solution.
引用
收藏
页码:1235 / 1261
页数:27
相关论文
共 50 条
  • [21] Privacy-Aware Location Data Publishing
    Hu, Haibo
    Xu, Jianliang
    On, Sai Tung
    Du, Jing
    Ng, Joseph Kee-Yin
    [J]. ACM TRANSACTIONS ON DATABASE SYSTEMS, 2010, 35 (03):
  • [22] Agora: A Privacy-Aware Data Marketplace
    Koutsos, Vlasis
    Papadopoulos, Dimitrios
    Chatzopoulos, Dimitris
    Tarkoma, Sasu
    Hui, Pan
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2022, 19 (06) : 3728 - 3740
  • [23] Privacy-aware Synthesizing for Crowdsourced Data
    Huai, Mengdi
    Wang, Di
    Miao, Chenglin
    Xu, Jinhui
    Zhang, Aidong
    [J]. PROCEEDINGS OF THE TWENTY-EIGHTH INTERNATIONAL JOINT CONFERENCE ON ARTIFICIAL INTELLIGENCE, 2019, : 2542 - 2548
  • [24] PARC: Privacy-Aware Data Cleaning
    Huang, Dejun
    Gairola, Dhruv
    Huang, Yu
    Zheng, Zheng
    Chiang, Fei
    [J]. CIKM'16: PROCEEDINGS OF THE 2016 ACM CONFERENCE ON INFORMATION AND KNOWLEDGE MANAGEMENT, 2016, : 2433 - 2436
  • [25] Towards A Framework for Privacy-Aware Mobile Crowdsourcing
    Wang, Yang
    Huang, Yun
    Louis, Claudia
    [J]. 2013 ASE/IEEE INTERNATIONAL CONFERENCE ON SOCIAL COMPUTING (SOCIALCOM), 2013, : 454 - 459
  • [26] Framework for Privacy-Aware Web Service Logging
    Chanakitkarnchok, Chaithat
    Senivongse, Twittie
    [J]. 2018 INTERNATIONAL CONFERENCE ON ADVANCED COMPUTER SCIENCE AND INFORMATION SYSTEMS (ICACSIS), 2018, : 467 - 474
  • [27] A Semantic Framework for Privacy-Aware Access Control
    Lioudakis, Georgios V.
    Dellas, Nikolaos L.
    Koutsoloukas, Eleftherios A.
    Kapitsaki, Georgia M.
    Kaklamani, Dimitra I.
    Venieris, Iakovos S.
    [J]. 2008 INTERNATIONAL MULTICONFERENCE ON COMPUTER SCIENCE AND INFORMATION TECHNOLOGY (IMCSIT), VOLS 1 AND 2, 2008, : 757 - 764
  • [28] A Privacy-aware Framework for Online Advertisement Targeting
    Yang, Linlin
    Wang, Wei
    Chen, Yanjiao
    Zhang, Qian
    [J]. 2013 IEEE GLOBAL COMMUNICATIONS CONFERENCE (GLOBECOM), 2013, : 3145 - 3150
  • [29] A CONCEPTUAL PRIVACY FRAMEWORK FOR PRIVACY-AWARE IOT HEALTH APPLICATIONS
    Thinakaran, Kavenesh
    Dhillon, Jaspaljeet Singh
    Gunasekaran, Saraswathy Shamini
    Chen, Lim Fung
    [J]. PROCEEDINGS OF THE 6TH INTERNATIONAL CONFERENCE ON COMPUTING AND INFORMATICS: EMBRACING ECO-FRIENDLY COMPUTING, 2017, : 175 - 183
  • [30] Privacy-aware crowd counting by decentralized learning with parallel transformers
    Chen, Jinyong
    Gao, Mingliang
    Li, Qilei
    Guo, Xiangyu
    Wang, Jianyong
    Cheng, Jing'an
    Xing, Xuening
    [J]. INTERNET OF THINGS, 2024, 26