TerraCheck: Verification of Dedicated Cloud Storage

Abstract : When hardware resources are shared between mutually distrustful tenants in the cloud, it may cause information leakage and bring difficulties to regulatory control. To address these concerns, cloud providers are starting to offer hardware resources dedicated to a single user. Cloud users have to pay more for such dedicated tenancy; however, they may not be able to detect the unexpected misuse of their dedicated storage due to the abstraction layer of the cloud. In this paper, we propose TerraCheck to help cloud users verify if their dedicated storage devices have been misused to store other users’ data. TerraCheck detects the malicious occupation of the dedicated device by monitoring the change of the shadow data that are residual bits intentionally left on the disk and are invisible by the file system. When the cloud providers share the dedicated disk with other users, such misuses can be detected since the shadow data will be overwritten and become irretrievable. We describe the theoretical framework of TerraCheck and show experimentally that TerraCheck works well in practice.
Type de document :
Communication dans un congrès
Lingyu Wang; Basit Shafiq. 27th Data and Applications Security and Privacy (DBSec), Jul 2013, Newark, NJ, United States. Springer, Lecture Notes in Computer Science, LNCS-7964, pp.113-127, 2013, Data and Applications Security and Privacy XXVII. 〈10.1007/978-3-642-39256-6_8〉
Liste complète des métadonnées

https://hal.inria.fr/hal-01490720
Contributeur : Hal Ifip <>
Soumis le : mercredi 15 mars 2017 - 17:16:26
Dernière modification le : jeudi 16 mars 2017 - 09:24:24
Document(s) archivé(s) le : vendredi 16 juin 2017 - 14:52:24

Fichier

978-3-642-39256-6_8_Chapter.pd...
Fichiers produits par l'(les) auteur(s)

Licence


Distributed under a Creative Commons Paternité 4.0 International License

Identifiants

Citation

Zhan Wang, Kun Sun, Sushil Jajodia, Jiwu Jing. TerraCheck: Verification of Dedicated Cloud Storage. Lingyu Wang; Basit Shafiq. 27th Data and Applications Security and Privacy (DBSec), Jul 2013, Newark, NJ, United States. Springer, Lecture Notes in Computer Science, LNCS-7964, pp.113-127, 2013, Data and Applications Security and Privacy XXVII. 〈10.1007/978-3-642-39256-6_8〉. 〈hal-01490720〉

Partager

Métriques

Consultations de la notice

230

Téléchargements de fichiers

19