Privacy-preserving cybersecurity information exchange mechanism

Privacy-preserving cybersecurity information exchange mechanism
复制标题

保护隐私的网络安全信息交换机制

DOI:
10.23919/spects.2017.8046783
复制
发表时间:
2017
期刊:
2017 International Symposium on Performance Evaluation of Computer and Telecommunication Systems (SPECTS)
影响因子:
--
通讯作者:
S. Sengupta
S. Sengupta
中科院分区:
--
文献类型:
--
作者:
Iman Vakilinia;Deepak K. Tosh;S. Sengupta

文献摘要

被引文献

相似文献

网络安全信息共享通过减少攻击造成的损失和消除网络防御重复工作的成本来改善网络事件的检测和预防。然而,隐私是组织在收集安全信息以供外部共享时主要关注的问题之一。为了在网络安全信息共享框架中保护组织的隐私,我们提出了一种新颖的机制,该机制由四个部分组成:(i)注册,(ii)共享,(iii)争议,(iv)奖励。我们的机制使组织能够共享其网络安全信息,而无需透露其身份。此外,为了鼓励协作、防止搭便车,奖励以匿名方式发放,以换取贡献。为此,我们提出了一种基于 BBS+ 签名方案的新的可聚合盲签名。进行安全分析和性能评估,显示所提出机制的有效性和效率。
Cybersecurity information sharing is improving cyber incident detection and prevention by reducing the loss caused by attacks and eliminating the costs of duplication efforts for cyber-defense. However, privacy is one of the major concerns of organizations, while they are gathering security information to share externally. In order to preserve the privacy of organizations in the cybersecurity information sharing framework, we propose a novel mechanism which consists of four components: (i) Registration, (ii) Sharing, (iii) Dispute, (iv) Rewarding. Our mechanism enables the organizations to share their cybersecurity information without revealing their identities. Besides, in order to encourage collaboration and prevent free-riding, rewards are issued anonymously in return for contributions. For this purpose, we are proposing a new aggregatable blind signature based on BBS+ signature scheme. Security analysis and performance evaluation are conducted showing the effectiveness and efficiency of the proposed mechanism.