Projects per year
Abstract
Cloud storage systems have seen a growing number of clients due to the fact that more and more businesses and governments are shifting away from in-house data servers and seeking cost-effective and ease-of-access solutions. However, the security of cloud storage is underestimated in current practice, which resulted in many large-scale data breaches. To change the status quo, this paper presents the design of ShieldDB, an encrypted document database. ShieldDB adapts the searchable encryption technique to preserve the search functionality over encrypted documents without having much impact on its scalability. However, merely realising such a theoretical primitive suffers from real-world threats, where a knowledgeable adversary can exploit the leakage (aka access pattern to the database) to break the claimed protection on data confidentiality. To address this challenge in practical deployment, ShieldDB is designed with tailored padding countermeasures. Unlike prior works, we target a more realistic adversarial model, where the database gets updated continuously, and the adversary can monitor it at an (or multiple) arbitrary time interval(s). ShieldDB's padding strategies ensure that the access pattern to the database is obfuscated all the time. We present a full-fledged implementation of ShieldDB and conduct intensive evaluations on Azure Cloud. © 2021 IEEE.
| Original language | English |
|---|---|
| Pages (from-to) | 4236-4252 |
| Journal | IEEE Transactions on Knowledge and Data Engineering |
| Volume | 35 |
| Issue number | 4 |
| Online published | 9 Nov 2021 |
| DOIs | |
| Publication status | Published - Apr 2023 |
Research Keywords
- Cloud computing
- Cryptography
- Data Security and Privacy
- Databases
- Encryption
- Indexes
- Management and Querying of Encrypted Data
- Padding Strategies
- Privacy
- Servers
Fingerprint
Dive into the research topics of 'ShieldDB: An Encrypted Document Database with Padding Countermeasures'. Together they form a unique fingerprint.-
RIF-ExtU-Lead: Enabling Secure and Efficient Cross-Silo Federated Learning at Scale
Li, B. (Main Project Coordinator [External]) & WANG, C. (Principal Investigator / Project Coordinator)
1/02/21 → …
Project: Research
-
GRF: Towards Full Accounting for Leakage Exploitation and Mitigation in Encrypted Databases
WANG, C. (Principal Investigator / Project Coordinator)
1/01/21 → 31/12/24
Project: Research
-
GRF: Towards Secure and Privacy-assured Truth Discovery from the Crowd
WANG, C. (Principal Investigator / Project Coordinator)
1/01/20 → 2/01/24
Project: Research
Cite this
- APA
- Author
- BIBTEX
- Harvard
- Standard
- RIS
- Vancouver