Distributed Social Platforms for Confidentiality and Resilience
Distributed Social Platforms for Confidentiality and Resilience
复制标题
具有保密性和弹性的分布式社交平台
DOI:
10.4018/978-1-4666-3926-3.ch006
复制
发表时间:
2013
期刊:
影响因子:
--
通讯作者:
M. Tomaiuolo
中科院分区:
文献类型:
--
作者:
E. Franchi;M. Tomaiuolo
Social networking sites have deeply changed the perception of the web in the last years. Although the current approach to build social networking systems is to create huge centralized systems owned by a single company, such strategy has many drawbacks, e.g., lack of privacy, lack of anonymity, risks of censorship and operating costs. These issues contrast with some of the main requirements of information systems, including: (i) confidentiality, i.e., the interactions between a user and the system must remain private unless explicitly public; (ii) integrity; (iii) accountability; (iv) availability; (v) identity and anonymity. Moreover, social networking platforms are vulnerable to many kind of attacks: (i) masquerading, which occurs when a user disguises his identity and pretends to be another user; (ii) unauthorized access; (iii) denial of service; (iv) repudiation, which occurs when a user participates in an activity and later claims he did not; (v) eavesdropping; (vi) alteration of data; (vii) copy and replay attacks; and, in general, (viii) attacks making use of social engineering techniques. In order to overcome both the intrinsic defects of centralized systems and the general vulnerabilities of social networking platforms, many different approaches have been proposed, both as federated (i.e., consisting of multiple entities cooperating to provide the service, but usually distinct from users) or peer-to-peer systems (with users directly cooperating to provide the service); in this work we reviewed the most interesting ones. Eventually, we present our own approach to create a solid distributed social networking platform consisting in a novel peer-to-peer system that leverages existing, widespread and stable technologies such as distributed hash tables and BitTorrent. The topics we are mainly concerned with are: (i) anonymity and resilience to censorship; (ii) authenticatable contents; (iii) semantic interoperability using activity streams and weak semantic data formats for contacts and profiles; and (iv) data availability.
DOI:
--
发表时间:
2006
期刊:
Journal of IEICE Vol.89, No.2
影响因子:
--
作者:
Taku Noguchi;Miki Yamamoto
通讯作者:
Miki Yamamoto
DOI:
10.1007/b136415
发表时间:
2005
期刊:
--
影响因子:
--
作者:
R. Cramer
通讯作者:
R. Cramer