University of Wollongong
Browse

Enhanced privacy of a remote data integrity-checking protocol for secure cloud storage

Download (539.88 kB)
journal contribution
posted on 2024-11-15, 06:38 authored by Yong Yu, Man Ho Allen Au, Yi Mu, S Tang, J Ren, Willy SusiloWilly Susilo, Liju Dong
Remote data integrity checking (RDIC) enables a server to prove to an auditor the integrity of a stored file. It is a useful technology for remote storage such as cloud storage. The auditor could be a party other than the data owner; hence, an RDIC proof is based usually on publicly available information. To capture the need of data privacy against an untrusted auditor, Hao et al. formally defined "privacy against third party verifiers" as one of the security requirements and proposed a protocol satisfying this definition. However, we observe that all existing protocols with public verifiability supporting data update, including Hao et al.'s proposal, require the data owner to publish some meta-data related to the stored data. We show that the auditor can tell whether or not a client has stored a specific file and link various parts of those files based solely on the published meta-data in Hao et al.'s protocol. In other words, the notion "privacy against third party verifiers" is not sufficient in protecting data privacy, and hence, we introduce "zero-knowledge privacy" to ensure the third party verifier learns nothing about the client's data from all available information. We enhance the privacy of Hao et al.'s protocol, develop a prototype to evaluate the performance and perform experiment to demonstrate the practicality of our proposal. 2014 Springer-Verlag Berlin Heidelberg.

History

Citation

Yu, Y., Au, M., Mu, Y., Tang, S., Ren, J., Susilo, W. & Dong, L. (2014). Enhanced privacy of a remote data integrity-checking protocol for secure cloud storage. International Journal of Information Security, Online First 1-11.

Journal title

International Journal of Information Security

Volume

14

Issue

4

Pagination

307-318

Language

English

RIS ID

93125

Usage metrics

    Categories

    Exports

    RefWorks
    BibTeX
    Ref. manager
    Endnote
    DataCite
    NLM
    DC