Some Problems in Sanitizing Network Data

作者: Matt Bishop , Rick Crawford , Bhume Bhumiratana , Lisa Clark , Karl Levitt

DOI: 10.1109/WETICE.2006.62

关键词:

摘要: The problem of removing sensitive information from data before it is released publicly, or turned over to less trusted analysts, underlies much the unwillingness share data. solution sanitize, deidentify, parts When dealing with network addresses, set available addresses finite. This limits some aspects sanitization. We analyze this in detail, and suggest approaches ameliorate it.

参考文章(11)
Joachim Biskup, Ulrich Flegel, Transaction-Based Pseudonyms in Audit Data for Privacy Respecting Intrusion Detection recent advances in intrusion detection. pp. 28- 48 ,(2000) , 10.1007/3-540-39945-3_3
Michael Sobirey, Simone Fischer-Hübner, Kai Rannenberg, Pseudonymous audit for privacy enhanced intrusion detection information security. pp. 151- 163 ,(1997) , 10.1007/978-0-387-35259-6_13
Michael K. Reiter, Aviel D. Rubin, Crowds: anonymity for Web transactions ACM Transactions on Information and System Security. ,vol. 1, pp. 66- 92 ,(1998) , 10.1145/290163.290168
Emilie Lundin, Erland Jonsson, Anomaly-based intrusion detection: privacy concerns and other problems recent advances in intrusion detection. ,vol. 34, pp. 623- 640 ,(2000) , 10.1016/S1389-1286(00)00134-1
Jinliang Fan, Jun Xu, Mostafa H. Ammar, Sue B. Moon, Prefix-preserving IP address anonymization: measurement-based security evaluation and a new cryptography-based scheme international conference on network protocols. ,vol. 46, pp. 253- 272 ,(2002) , 10.1016/J.COMNET.2004.03.033
Ruoming Pang, Vern Paxson, A high-level programming environment for packet trace anonymization and transformation Proceedings of the 2003 conference on Applications, technologies, architectures, and protocols for computer communications - SIGCOMM '03. pp. 339- 351 ,(2003) , 10.1145/863955.863994
Jun Xu, Jinliang Fan, Mostafa Ammar, Sue B Moon, ATL Sprint, On the design and performance of prefix-preserving IP traffic trace anonymization Proceedings of the First ACM SIGCOMM Workshop on Internet Measurement - IMW '01. pp. 263- 266 ,(2001) , 10.1145/505202.505234
Markus Peuhkuri, A method to compress and anonymize packet traces Proceedings of the First ACM SIGCOMM Workshop on Internet Measurement - IMW '01. pp. 257- 261 ,(2001) , 10.1145/505202.505233
Thomas E. Daniels, Eugene H. Spafford, Identification of host audit data to detect attacks on low-level IP vulnerabilities Journal of Computer Security. ,vol. 7, pp. 3- 35 ,(1999) , 10.3233/JCS-1999-7102