SaTC: CORE: Medium: Collaborative: Scalable Dynamic Access Control for Untrusted Cloud Environments
SaTC: CORE: Medium: Collaborative: Scalable Dynamic Access Control for Untrusted Cloud Environments
批准号:
1703853
负责人:
Apu Kapadia
金额:
$27.48万
依托单位:
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2017
资助国家:
美国
项目状态:
已结题
起止时间:
2017-09-01 至 2022-08-31
中文摘要
当用户将数据存储在云中时,他们承担了许多隐私风险:云存储提供商会允许其他人看到这些数据吗?如果用户为数据设置了共享规则,云存储是否遵循该规则?最近关于用户数据从云存储系统泄露的新闻报道表明,用户有理由担心。在将文件存储在云中之前对其进行加密可以提供强大的保护,但这种方法使得用户很难与其他人共享数据并更改其共享策略。该项目正在探索在云存储系统中加密保护用户文件的技术,同时支持先进的动态共享策略。虽然在静态访问控制策略下加密保护数据的方法在文献中有很好的记录,但是现有的结构要么不能有效地支持动态策略(例如,更改角色/属性分配),要么做出高度信任的假设来支持这种动态。该项目是(1)开发一个开源平台,用于原型设计、分析和部署针对不可信环境的动态访问控制实施解决方案;(2)创建能够在不受信任的存储平台上安全地实现流行的基于角色和属性的访问控制模型的加密结构,同时支持动态策略和数据更新;(3)设计高效、可信的硬件辅助、云规模的流行访问控制模型实现,支持各种部署场景下的动态策略和数据更新;(4)进行全面的评估,探索这些加密和硬件强制方法之间的信任权衡,并检查在各种实际工作负载下提出的构造的加密、计算和通信成本。
英文摘要
When users store their data in the cloud, they take many privacy risks: Will the cloud storage provider allow others to see that data? If the user sets sharing rules for the data, will the cloud storage system follow those rules? Recent news stories of user data exfiltration from cloud storage systems show that users have reason for concern. Encrypting files before storing them in the cloud would provide strong protection, but this approach makes it very difficult for users to share data with others and to change their sharing policies. This project is exploring techniques to cryptographically protect user files in cloud-based storage systems, while supporting advanced, dynamic sharing policies.While cryptographically protecting data under a static access control policy is well documented in the literature, existing constructions either do not efficiently support dynamic policies (e.g., changes to role/attribute assignments) or make heavy trust assumptions to support this dynamism. This project is (1) developing an open-source platform for prototyping, analyzing, and deploying dynamic access control enforcement solutions for untrusted environments; (2) creating cryptographic constructions that are capable of securely implementing popular role- and attribute-based access control models on untrusted storage platforms while supporting dynamic policy and data updates; (3) designing efficient, trusted hardware-assisted, cloud-scale implementations of popular access control models supporting dynamic policy and data updates in a variety of deployment scenarios; and (4) a carrying out a comprehensive evaluation that explores the trade-offs in trust between these cryptographically- and hardware-enforced approaches and examines the cryptographic, computational, and communication costs of the proposed constructions under a variety of real-world workloads.
期刊论文(2)
专著(0)
科研奖励(0)
会议论文
DOI:
10.1145/3555538
发表时间:
2022-11
期刊:
Proceedings of the ACM on Human-Computer Interaction
影响因子:
--
作者:
[Sabid Bin Habib Pias;Imtiaz Ahmad;T. Akter;Apu Kapadia;Adam J. Lee]
通讯作者:
Sabid Bin Habib Pias;Imtiaz Ahmad;T. Akter;Apu Kapadia;Adam J. Lee
DOI:
10.1007/978-3-319-76953-0_9
发表时间:
2018-04
期刊:
影响因子:
--
作者:
[Steven Myers;Adam Shull]
通讯作者:
Steven Myers;Adam Shull
Collaborative Proposal: SaTC: Frontiers: Securing the Future of Computing for Marginalized and Vulnerable Populations
-
批准号:2207019
-
项目类别:Continuing Grant
-
资助金额:$148.92万
-
财政年份:2022
-
负责人:Apu Kapadia
-
依托单位:
Collaborative Research: EAGER: Understanding Privacy Violations of Racial and Ethnic Minorities in Online Photo Sharing
-
批准号:2124533
-
项目类别:Standard Grant
-
资助金额:$18.12万
-
财政年份:2021
-
负责人:Apu Kapadia
-
依托单位:
SaTC: CORE: Small: Collaborative: Tangible Privacy: User-Centric Sensor Designs for Assured Privacy
-
批准号:1814513
-
项目类别:Standard Grant
-
资助金额:$16.0万
-
财政年份:2018
-
负责人:Apu Kapadia
-
依托单位:
SaTC: CORE: Small: Socio-Technical Strategies for Enhancing Privacy in Photo Sharing
-
批准号:1814476
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2018
-
负责人:Apu Kapadia
-
依托单位:
TWC SBE: Medium: Collaborative: A Socio-Technical Approach to Privacy in a Camera-Rich World
-
批准号:1408730
-
项目类别:Standard Grant
-
资助金额:$80.0万
-
财政年份:2014
-
负责人:Apu Kapadia
-
依托单位:
CAREER: Sensible Privacy: Pragmatic Privacy Controls in an Era of Sensor-Enabled Computing
-
批准号:1252697
-
项目类别:Continuing Grant
-
资助金额:$55.09万
-
财政年份:2013
-
负责人:Apu Kapadia
-
依托单位:
Workshop Organization Supplement: A Series of Workshops on Security in Emerging Areas at the 2012 ACM Conference on Computer and Communications Security
-
批准号:1245825
-
项目类别:Standard Grant
-
资助金额:$2.53万
-
财政年份:2012
-
负责人:Apu Kapadia
-
依托单位:
TWC SBES: Medium: Collaborative: Crowdsourcing Security
-
批准号:1228364
-
项目类别:Standard Grant
-
资助金额:$24.44万
-
财政年份:2012
-
负责人:Apu Kapadia
-
依托单位:
NeTS: Small: Collaborative Research: ReDS: Reputation for Directory Services in P2P Systems
-
批准号:1115693
-
项目类别:Standard Grant
-
资助金额:$15.0万
-
财政年份:2011
-
负责人:Apu Kapadia
-
依托单位:
TC: Small: Collaborative Research: Improved Privacy though Exposure Control
-
批准号:1016603
-
项目类别:Standard Grant
-
资助金额:$27.0万
-
财政年份:2010
-
负责人:Apu Kapadia
-
依托单位:
国内基金
海外基金
登录
查看更多内容
胆固醇羟化酶CH25H非酶活依赖性促进乙型肝炎病毒蛋白Core及Pre-core降解的分子机制研究
-
批准号:82371765
-
项目类别:面上项目
-
资助金额:50万元
-
批准年份:2023
-
负责人:谭广云
-
依托单位:
锕系元素5f-in-core的GTH赝势和基组的开发
-
批准号:22303037
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2023
-
负责人:鲁俊波
-
依托单位:
基于合成致死策略搭建Core-matched前药共组装体克服肿瘤耐药的机制研究
-
批准号:--
-
项目类别:--
-
资助金额:52万元
-
批准年份:2022
-
负责人:孙丙军
-
依托单位:
鼠伤寒沙门氏菌LPS core经由CD209/SphK1促进树突状细胞迁移加重炎症性肠病的机制研究
-
批准号:--
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2022
-
负责人:叶成林
-
依托单位:
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
-
批准号:--
-
项目类别:--
-
资助金额:55万元
-
批准年份:2020
-
负责人:张智勇
-
依托单位:
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
-
批准号:82072415
-
项目类别:面上项目
-
资助金额:55.0万元
-
批准年份:2020
-
负责人:张智勇
-
依托单位:
肌营养不良蛋白聚糖Core M3型甘露糖肽的精确制备及功能探索
-
批准号:92053110
-
项目类别:重大研究计划
-
资助金额:70.0万元
-
批准年份:2020
-
负责人:彭鹏
-
依托单位:
Core-1-O型聚糖黏蛋白缺陷诱导胃炎发生并介导慢性胃炎向胃癌转化的分子机制研究
-
批准号:81902805
-
项目类别:青年科学基金项目
-
资助金额:20.5万元
-
批准年份:2019
-
负责人:刘菲
-
依托单位:
原始地球增生晚期的Core-merging大碰撞事件:地核增生、核幔平衡与核幔边界结构的新认识
-
批准号:41973063
-
项目类别:面上项目
-
资助金额:65.0万元
-
批准年份:2019
-
负责人:周游
-
依托单位:
CORDEX-CORE区域气候模拟与预估研讨会
-
批准号:41981240365
-
项目类别:国际(地区)合作与交流项目
-
资助金额:1.5万元
-
批准年份:2019
-
负责人:陈威霖
-
依托单位: