A Novel Deduplication-Based Covert Channel in Cloud Storage Service

作者: Hermine Hovhannisyan , Kejie Lu , Rongwei Yang , Wen Qi , Jianping Wang

DOI: 10.1109/GLOCOM.2015.7417228

关键词: Cloud storageData deduplicationUploadComputer securityComputer networkServerCloud computingComputer scienceData securityCovert channel

摘要: To efficiently provide cloud storage services, most providers implement data deduplication schemes so as to reduce and network bandwidth consumption. Due its broad application, many security issues about have been investigated, such security, user privacy, etc. Nevertheless, we note that the threat of establishing covert channel over has not fully investigated. In particular, existing studies only demonstrate potential a single-bit channel, in which sender can upload one two predefined files for receiver infer information "0" "1". this paper, design more powerful deduplicationbased be used transmit complete message. Specifically, key features our include: (1) synchronization scheme establish between receiver, (2) novel coding allows each file represent multiple bits evaluate proposed design, conduct extensive experiments different systems. Our work highlights severe services.

参考文章(12)
Mai Mansour Dahshan, Sherif ElKassass, Data security in cloud storage services international conference on cloud computing. pp. 1- 5 ,(2014)
Martin Mulazzani, Sebastian Schrittwieser, Manuel Leithner, Markus Huber, Edgar Weippl, None, Dark clouds on the horizon: using cloud storage as attack vector and online slack space usenix security symposium. pp. 5- 5 ,(2011)
Tobias Pulls, More) Side Channels in Cloud Storage Linking Data to Users 7th IFIP WG 9.2, 9.6/11.7, 11.4, 11.6/PrimeLife International Summer School, Trento, Italy, September 5-9, 2011. pp. 102- 115 ,(2011) , 10.1007/978-3-642-31668-5_8
Shiguang Ju, Xiaoyu Song, On the Formal Characterization of Covert Channel Lecture Notes in Computer Science. pp. 155- 160 ,(2004) , 10.1007/978-3-540-30483-8_19
Danny Harnik, Benny Pinkas, Alexandra Shulman-Peleg, Side Channels in Cloud Services: Deduplication in Cloud Storage ieee symposium on security and privacy. ,vol. 8, pp. 40- 47 ,(2010) , 10.1109/MSP.2010.187
Roberto Di Pietro, Alessandro Sorniotti, Boosting efficiency and security in proof of ownership for deduplication computer and communications security. pp. 81- 82 ,(2012) , 10.1145/2414456.2414504
Waraporn Leesakul, Paul Townend, Jie Xu, Dynamic Data Deduplication in Cloud Storage service oriented software engineering. pp. 320- 325 ,(2014) , 10.1109/SOSE.2014.46
Olivier Heen, Christoph Neumann, Luis Montalvo, Serge Defrance, Improving the Resistance to Side-Channel Attacks on Cloud Storage Services new technologies, mobility and security. pp. 1- 5 ,(2012) , 10.1109/NTMS.2012.6208705
Shai Halevi, Danny Harnik, Benny Pinkas, Alexandra Shulman-Peleg, Proofs of ownership in remote storage systems Proceedings of the 18th ACM conference on Computer and communications security - CCS '11. pp. 491- 500 ,(2011) , 10.1145/2046707.2046765
Seungkwang Lee, Dooho Choi, Privacy-preserving cross-user source-based data deduplication in cloud storage international conference on information and communication technology convergence. pp. 329- 330 ,(2012) , 10.1109/ICTC.2012.6386851