Efficient Oblivious Data Structures for Database Services on the Cloud

被引:5
|
作者
Hoang, Thang [1 ]
Ozkaptan, Ceyhun D. [2 ,3 ]
Hackebeil, Gabriel [2 ,4 ]
Yavuz, Attila Altay [5 ]
机构
[1] Oregon State Univ, Sch EECS, Corvallis, OR 97331 USA
[2] Oregon State Univ, Corvallis, OR 97331 USA
[3] Ohio State Univ, Dept Elect & Comp Engn, Columbus, OH 43210 USA
[4] Univ Michigan, Dept Ind & Operat Engn, Ann Arbor, MI 48109 USA
[5] Univ S Florida, Dept Comp Sci & Engn, 4202 E Fowler Ave Enb 118, Tampa, FL 33620 USA
基金
美国国家科学基金会;
关键词
Privacy-enhancing technologies; oblivious data structure; ORAM; SEARCH;
D O I
10.1109/TCC.2018.2879104
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Database-as-a-service (DBaaS) allows the client to store and manage structured data on the cloud remotely. Despite its merits, DBaaS also brings significant privacy issues. Existing encryption techniques (e.g., SOL-aware encryption) can mitigate privacy concerns, but they still leak information through access patterns, which are vulnerable to statistical inference attacks. Oblivious Random Access Machine (ORAM) can seal such leakages; however, the recent studies showed significant challenges on the integration of ORAM into databases. That is, the direct usage of ORAM on databases is not only costly but also permits very limited query functionalities. In this paper, we propose new oblivious data structures called Oblivious Matrix Structure (OMAT) and Oblivious Tree Structure (OTREE), which allow tree-based ORAM to be integrated into database systems in a more efficient manner with diverse query functionalities supported. OMAT provides special ORAM packaging strategies for table structures, which not only offers a significantly better performance but also enables a broad range of query types that may not be efficient in existing frameworks. On the other hand, OTREE allows oblivious conditional queries to be performed on tree-indexed databases more efficiently than existing techniques. We implemented our proposed techniques and evaluated their performance on a real cloud database with various metrics, compared with state-of-the-art counterparts.
引用
收藏
页码:598 / 609
页数:12
相关论文
共 50 条
  • [21] Towards Millions of Database Transmission Services in the Cloud
    Fan, Hua
    Fu, Dachao
    Wang, Xu
    Zhang, Jiachi
    Zuo, Chaoji
    Wu, Zhengyi
    Zhang, Miao
    Yuan, Kang
    Ni, Xizi
    Huo, Guocheng
    Zhou, Wenchao
    Li, Feifei
    Zhou, Jingren
    PROCEEDINGS OF THE VLDB ENDOWMENT, 2024, 17 (12): : 4001 - 4013
  • [22] Efficient Cryptographic Password Hardening Services from Partially Oblivious Commitments
    Schneider, Jonas
    Fleischhacker, Nils
    Schroeder, Dominique
    Backes, Michael
    CCS'16: PROCEEDINGS OF THE 2016 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2016, : 1192 - 1203
  • [23] Towards Automated Cost-efficient Data Management for Federated Cloud Services
    Emeakaroha, Vincent C.
    Bullman, Martin
    Morrison, John P.
    2016 5TH IEEE INTERNATIONAL CONFERENCE ON CLOUD NETWORKING (IEEE CLOUDNET), 2016, : 158 - 163
  • [24] Oblivious access control policies for cloud based data sharing systems
    Zeeshan Pervez
    Asad Masood Khattak
    Sungyoung Lee
    Young-Koo Lee
    Eui-Nam Huh
    Computing, 2012, 94 : 915 - 938
  • [25] O-Bin : Oblivious Binning for Encrypted Data over Cloud
    Ahmad, Mahmood
    Pervez, Zeeshan
    Kang, Byeong Ho
    Lee, Sungyoung
    2015 IEEE 29TH INTERNATIONAL CONFERENCE ON ADVANCED INFORMATION NETWORKING AND APPLICATIONS (IEEE AINA 2015), 2015, : 352 - 357
  • [26] Oblivious access control policies for cloud based data sharing systems
    Pervez, Zeeshan
    Khattak, Asad Masood
    Lee, Sungyoung
    Lee, Young-Koo
    Huh, Eui-Nam
    COMPUTING, 2012, 94 (12) : 915 - 938
  • [27] Lower Bound Framework for Differentially Private and Oblivious Data Structures
    Persiano, Giuseppe
    Yeo, Kevin
    ADVANCES IN CRYPTOLOGY - EUROCRYPT 2023, PT I, 2023, 14004 : 487 - 517
  • [28] Secure and Privacy-Preserving Database Services in the Cloud
    Agrawal, Divyakant
    El Abbadi, Amr
    Wang, Shiyuan
    2013 IEEE 29TH INTERNATIONAL CONFERENCE ON DATA ENGINEERING (ICDE), 2013, : 1268 - 1271
  • [29] Efficient oblivious augmented maps: Location-based services with a payment broker
    Kohlweiss, Markulf
    Faust, Sebastian
    Fritsch, Lothar
    Gedrojc, Bartek
    Preneel, Bart
    PRIVACY ENHANCING TECHNOLOGIES, 2007, 4776 : 77 - +
  • [30] ComPOS: Composing Oblivious Services
    Akesson, Alfred
    Hedin, Gorel
    Nordahl, Mattias
    Magnusson, Boris
    2019 IEEE INTERNATIONAL CONFERENCE ON PERVASIVE COMPUTING AND COMMUNICATIONS WORKSHOPS (PERCOM WORKSHOPS), 2019, : 132 - 138