Proactively Secure Cloud-Enabled Storage

被引:0
|
作者
Eldefrawy, Karim [1 ,3 ]
Faber, Sky [2 ]
Kaczmarek, Tyler [2 ]
机构
[1] HRL Labs, Informat & Syst Sci Lab, Malibu, CA 90265 USA
[2] UC Irvine, Dept Comp Sci, Irvine, CA USA
[3] SRI Int, Comp Sci Lab, Menlo Pk, CA 94025 USA
关键词
D O I
10.1109/ICDCS.2017.293
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
Attacking cloud-enabled storage is becoming increasingly lucrative as more personal and enterprise data moves to the cloud. Traditional security mechanisms temporarily limit such attacks, but over a long period of time attackers will eventually find vulnerabilities; this can lead to compromising large amounts of valuable data and lead to large-scale privacy breaches. This paper addresses this problem by incorporating proactive security guarantees into cloud-enabled storage. Proactive security deals with an adversary's ability to eventually compromise all involved servers in a distributed storage or computation system. While there are several proactively secure secret sharing protocols that can be used to improve confidentiality of data stored in the cloud, their high overhead has traditionally limited them to less than ten parties and to only 100s of bytes typical for cryptographic keys. Realizing proactively secure cloud storage for larger data (e.g, MBs) requires careful design and calibration of system parameters, and faces several challenges. In this paper we design, implement and assess performance of the first system for Proactively Secure Cloud-Enabled Storage (PiSCES) of data larger than cryptographic keys. Based on our practical performance results we advocate that the high level of resilience and long-term security and confidentiality guarantees enabled by proactive security should be considered in future distributed and cloud-based storage and computing services.
引用
收藏
页码:1499 / 1509
页数:11
相关论文
共 50 条
  • [1] Design of a secure file storage and access protocol for cloud-enabled Internet of Things environment
    Karati, Arijit
    Amin, Ruhul
    Mohit, Prerna
    Sureshkumar, Venkatasamy
    Biswas, G. P.
    [J]. COMPUTERS & ELECTRICAL ENGINEERING, 2021, 94
  • [2] A scalable, secure, and semantically interoperable client for cloud-enabled Demand Response
    Cimmino, Andrea
    Cano-Benito, Juan
    Fernandez-Izquierdo, Alba
    Patsonakis, Christos
    Tsolakis, Apostolos C.
    Garcia-Castro, Raul
    Ioannidis, Dimosthenis
    Tzovaras, Dimitrios
    [J]. FUTURE GENERATION COMPUTER SYSTEMS-THE INTERNATIONAL JOURNAL OF ESCIENCE, 2023, 141 : 54 - 66
  • [3] CENSOR: Cloud-enabled secure IoT architecture over SDN paradigm
    Conti, Mauro
    Kaliyar, Pallavi
    Lal, Chhagan
    [J]. CONCURRENCY AND COMPUTATION-PRACTICE & EXPERIENCE, 2019, 31 (08):
  • [4] Cloud-enabled prognosis for manufacturing
    Gao, R.
    Wang, L.
    Teti, R.
    Dornfeld, D.
    Kumara, S.
    Mori, M.
    Helu, M.
    [J]. CIRP ANNALS-MANUFACTURING TECHNOLOGY, 2015, 64 (02) : 749 - 772
  • [5] YOUR LOCAL CLOUD-ENABLED LIBRARY
    Thiruvathukal, George K.
    [J]. COMPUTING IN SCIENCE & ENGINEERING, 2010, 12 (04) : 5 - 6
  • [6] Secure and Practical Output Feedback Control for Cloud-Enabled Cyber-Physical Systems
    Xu, Zhiheng
    Zhu, Quanyan
    [J]. 2017 IEEE CONFERENCE ON COMMUNICATIONS AND NETWORK SECURITY (CNS), 2017, : 416 - 420
  • [7] Towards secure big data analytic for cloud-enabled applications with fully homomorphic encryption
    Alabdulatif, Abdulatif
    Khalil, Ibrahim
    Yi, Xun
    [J]. JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2020, 137 : 192 - 204
  • [8] Greening Cloud-Enabled Big Data Storage Forensics: Syncany as a Case Study
    Teing, Yee-Yang
    Dehghantanha, Ali
    Choo, Kim-Kwang Raymond
    Muda, Zaiton
    Abdullah, Mohd Taufik
    [J]. IEEE TRANSACTIONS ON SUSTAINABLE COMPUTING, 2019, 4 (02): : 204 - 216
  • [9] A Reference Architecture for Supporting Secure Big Data Analytics over Cloud-Enabled Relational Databases
    Cuzzocrea, Alfredo
    [J]. PROCEEDINGS 2016 IEEE 40TH ANNUAL COMPUTER SOFTWARE AND APPLICATIONS CONFERENCE WORKSHOPS (COMPSAC), VOL 2, 2016, : 356 - 358
  • [10] Cloud-Enabled Scalable Decision Tree Construction
    Han, Yuzhang
    Brezany, Peter
    Janciak, Ivan
    [J]. 2009 FIFTH INTERNATIONAL CONFERENCE ON SEMANTICS, KNOWLEDGE AND GRID (SKG 2009), 2009, : 128 - 135