Privacy preserving Intrusion Detection via Homomorphic Encryption

被引:13
|
作者
Coppolino, Luigi [1 ]
D'Antonio, Salvatore [1 ]
Mazzeo, Giovanni [1 ]
Romano, Luigi [1 ]
Sgaglione, Luigi [1 ]
Cotroneo, Domenico [2 ]
Scognamiglio, Andrea [2 ]
机构
[1] Univ Naples Parthenope, Naples, Italy
[2] Univ Naples Federico II, Naples, Italy
基金
欧盟地平线“2020”;
关键词
IDS; Managed Security Services; Homomorphic Encryption; GDPR; Privacy; CLOUD;
D O I
10.1109/WETICE.2019.00073
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
In the recent years, we are assisting to an undiminished, and unlikely to stop number of cyber threats, that have increased the organizations/companies interest about security concerns. Further, the rising costs of an efficient IT security staff and environment is posing a significant challenge. These have created a new fast growing trend named Managed Security Services (MSS). Often customers turn to MSS providers to alleviate the pressures they face daily related to information security. One of the most critical aspect, related to the outsourcing of security issues, is privacy. Security monitoring and in general security services require access to as much data as possible, in order to provide an effective and reliable service. It is the well known conflict between privacy and security, a particularly evident problem in security monitoring solutions. This paper analyzes a scenario of MSS in order to provide a privacy preserving solution that allows the security monitoring without violating the privacy requirements. The basic idea relies on the usage of the Homomorphic Encryption technology. Encrypting data using homomorphic schemes, cloud computing and MSS providers can perform different computations on encrypted data without ever having access to their decryption. This solution keeps data confidential and secured, not only during exchange and storage, but also during processing. We provide an ad-hoc Intrusion Detection System architecture for privacy preserving security monitoring, considering as counter threats Code Injection attacks on homomorphically encrypted fields.
引用
收藏
页码:321 / 326
页数:6
相关论文
共 50 条
  • [1] Using homomorphic encryption for privacy-preserving clustering of intrusion detection alerts
    Spathoulas, Georgios
    Theodoridis, Georgios
    Damiris, Georgios-Paraskevas
    INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2021, 20 (03) : 347 - 370
  • [2] Using homomorphic encryption for privacy-preserving clustering of intrusion detection alerts
    Georgios Spathoulas
    Georgios Theodoridis
    Georgios-Paraskevas Damiris
    International Journal of Information Security, 2021, 20 : 347 - 370
  • [3] Pipa: Privacy-preserving Password Checkup via Homomorphic Encryption
    Li, Jie
    Liu, Yamin
    Wu, Shuang
    ASIA CCS'21: PROCEEDINGS OF THE 2021 ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2021, : 242 - 251
  • [4] Privacy-Preserving Deep Learning via Additively Homomorphic Encryption
    Moriai, Shiho
    2019 IEEE 26TH SYMPOSIUM ON COMPUTER ARITHMETIC (ARITH), 2019, : 198 - 198
  • [5] Privacy-Preserving Deep Learning via Additively Homomorphic Encryption
    Phong, Le Trieu
    Aono, Yoshinori
    Hayashi, Takuya
    Wang, Lihua
    Moriai, Shiho
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2018, 13 (05) : 1333 - 1345
  • [6] Privacy-preserving anomaly detection in cloud with lightweight homomorphic encryption
    Alabdulatif, Abdulatif
    Kumarage, Heshan
    Khalil, Ibrahim
    Yi, Xun
    JOURNAL OF COMPUTER AND SYSTEM SCIENCES, 2017, 90 : 28 - 45
  • [7] Privacy preserving via multi-key homomorphic encryption in cloud computing
    Li, Xuelian
    Li, Hui
    Gao, Juntao
    Wang, Runsong
    JOURNAL OF INFORMATION SECURITY AND APPLICATIONS, 2023, 74
  • [8] Efficient Privacy-Preserving Matrix Factorization via Fully Homomorphic Encryption
    Kim, Sungwook
    Kim, Jinsu
    Koo, Dongyoung
    Kim, Yuna
    Yoon, Hyunsoo
    Shin, Junbum
    ASIA CCS'16: PROCEEDINGS OF THE 11TH ACM ASIA CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2016, : 617 - 628
  • [9] BlindFilter: Privacy-Preserving Spam Email Detection Using Homomorphic Encryption
    Lee, Dongwon
    Ahn, Myeonghwan
    Kwak, Hyesun
    Hong, Jin B.
    Kim, Hyoungshick
    2023 42ND INTERNATIONAL SYMPOSIUM ON RELIABLE DISTRIBUTED SYSTEMS, SRDS 2023, 2023, : 35 - 45
  • [10] Privacy-Preserving Collective Learning With Homomorphic Encryption
    Paul, Jestine
    Annamalai, Meenatchi Sundaram Muthu Selva
    Ming, William
    Al Badawi, Ahmad
    Veeravalli, Bharadwaj
    Aung, Khin Mi Mi
    IEEE ACCESS, 2021, 9 : 132084 - 132096