首页> 外文会议>IEEE International Symposium on a World of Wireless, Mobile and Multimedia Networks >A P2P based usage control enforcement scheme resilient to re-injection attacks
【24h】

A P2P based usage control enforcement scheme resilient to re-injection attacks

机译:基于P2P的使用控制实施方案,可抵抗重新注入攻击

获取原文

摘要

Existing privacy controls based on access control techniques do not prevent massive dissemination of private data by unauthorized users. We suggest a usage control enforcement scheme that allows users to gain control over their data during its entire lifetime. The scheme is based on a peer-to-peer architecture whereby a different set of peers is randomly selected for data assignment. Usage control is achieved based on the assumption that at least t out of any set of n peers will not behave maliciously. Such a system would still suffer from re-injection attacks whereby attackers can gain ownership of data and the usage policy thereof by simply re-storing data after slight modification of the content. In order to cope with re-injection attacks the scheme relies on a similarity detection mechanism. The robustness of the scheme has been evaluated in an experimental setting using a variety of re-injection attacks.
机译:基于访问控制技术的现有隐私控制不能防止未经授权的用户大量散布私人数据。我们建议使用使用控制实施方案,该方案允许用户在其整个生命周期内对其数据进行控制。该方案基于对等体系结构,其中随机选择了一组不同的对等体进行数据分配。基于以下假设来实现使用控制:在任何n个对等集合中,至少t个不会出现恶意行为。这样的系统仍将遭受重新注入攻击,从而攻击者可以通过在内容稍作修改后简单地重新存储数据来获得数据及其使用策略的所有权。为了应对重新注入攻击,该方案依赖于相似性检测机制。该方案的稳健性已在实验环境中使用各种重新注入攻击进行了评估。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号