CORDIS - Forschungsergebnisse der EU
CORDIS

A FRAMEWORK FOR USER CENTRED PRIVACY AND SECURITY IN THE CLOUD

Leistungen

Security as a service for CLARUS

This deliverable describes the security services incorporated in the CLARUS archiecture, which include identity and access management and key and risk management

Standardisation assessment

This deliverable presents the assessment of the standardisation guidelines and requirements identified in WP2 and documented in D2.5. It will result in a set of recommendations for Europe and European CSPs concerning standardisation issues, drawing also on related work at project/research level.

First progress report, financial statement and review

Progress according to the plan will be described in terms of technical activities, record of activities related to undertaken dissemination and exploitation activities, and use of resources (financial and personnel) at the end of the first year. Any deviations from the plan will be described, together with an assessment of the possible consequences and proposals for any necessary re-planning. The document will contain the completed project deliverables, a report of scientific production, and a summary of the periodic reports submitted by the partners to the coordinator.

An attack-tolerant framework for the cloud V1

This report will specify the framework provided by CLARUS to cope and preserve cloud services.

Dissemination and standards report V1

An initial dissemination plan will be produced after 6 months, and revised versions that also cover standardisation efforts will be produced at 12-month intervals. Results of standards monitoring, analysis and dissemination activities will be included in this report.

Dissemination and standards report V3

An initial dissemination plan will be produced after 6 months, and revised versions that also cover standardisation efforts will be produced at 12-month intervals. Results of standards monitoring, analysis and dissemination activities will be included in this report.

Architecture V2

This deliverable will provide the architecture design of the CLARUS system, including the functional components, data location, data flows and protocols.

Standardisation and interoperability

This deliverable will provide the main results concerning standardisation and interoperability issues. It will focus more on outcomes and impact in the EU & global context.

The CLARUS modules V1

This document will specify the detailed design of the CLARUS solution

Quality assurance plan (including the Project Handbook)

This deliverable will include information about timescales, reporting information, and finance information.

New security techniques

As a result of the work in Task 3.2, a report will be produced describing the original research contribution given by the new or improved privacy-preserving techniques that will be obtained from the study on the limitations of current state-of-the-art methods and techniques. In particular, the report will describe original research contribution to the problem of secure cloud storage in cloud computing.

Report on Validation Results

The deliverable will focus on the evaluation and assessment of CLARUS

Requirements specification V1

It will include a set of CLARUS requirements (functional and nonfunctional, technical and social) with priorities and definition of possible limitations and constraints

Standardisation requirements

This deliverable will report on the necessary requirement results and implementation roadmap, effort and analysis, considering the EU and global landscape.

An attack-tolerant framework for the cloud V2

This report will specify the framework provided by CLARUS to cope and preserve cloud services.

Definition of application cases

Definition of the application cases that will inform all further development and will be tested and validated within WP6.

Final progress report, financial statement and review

As in D1.3, for the second year.

Adapted monitoring tool for the cloud V1

This software package (including a user manual) will enable the supervision of client operations.

Legal and ethical requirements

This deliverable will include the specification of concrete legal requirements for the CLARUS system and describe means for surveillance and guidance all along the project.

Architecture V1

This deliverable will provide the architecture design of the CLARUS system, including the functional components, data location, data flows and protocols.

The CLARUS interface

This deliverable will document the platform interface specification and implementation.

Dissemination and standards report V2

An initial dissemination plan will be produced after 6 months, and revised versions that also cover standardisation efforts will be produced at 12-month intervals. Results of standards monitoring, analysis and dissemination activities will be included in this report.

Legal assessment and recommendations

This deliverable will describe the active collaboration between the legal and technical partners for the implementation of the legal requirements that are identified in WP2 and documented in D2.1. It will carry out the legal assessment of the CLARUS system and result in a specific and tailor made recommendations for Europe and European service providers on how to get the privacy and data protection principles built in cloud computing systems and services, thereby realising in practice the ‘privacy-by-design’ model.

Requirements Specification V2

As a delta document with regard to V1, this document will refine requirements specifications for the final version of the CLARUS platform. In particular it will take into consideration intermediate results of the project achieved in WP5 and WP6.

Characterisation of enabling technologies

As a result of Task 3.1, a characterisation of privacypreserving and security-enabling techniques will be provided in this report. The document will analyse available techniques and methods from different perspectives, by identifying their main advantages and limitations with regard to clouds. The document will be an input for research in Task 3.2.

The CLARUS platform V1

This document will specify the design of CLARUS platform as well as a user manual.

Adapted monitoring tool for the cloud V2

This software package (including a user manual) will enable the supervision of client operations.

The CLARUS modules V2

This document will specify the detailed design of the CLARUS solution

CLARUS benchmarking test suite

This deliverable will describe the benchmarking test suite to be applied to the CLARUS platform

The CLARUS platform V2

This document will specify the design of CLARUS platform as well as a user manual.

Data management plan

In this deliverable we will detail what data the project will generate, whether and how it will be exploited or made accessible for verification and re-use, and how it will be curated and preserved.

Veröffentlichungen

Flexible and Robust Privacy-Preserving Implicit Authentication

Autoren: Josep Domingo-Ferrer, Qianhong Wu, Alberto Blanco-Justicia
Veröffentlicht in: ICT Systems Security and Privacy Protection, Ausgabe 455, 2015, Seite(n) 18-34, ISBN 978-3-319-18467-8
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-18467-8_2

Cryptographic Enforcement of Information Flow Policies Without Public Information

Autoren: Jason Crampton, Naomi Farley, Gregory Gutin, Mark Jones, Bertram Poettering
Veröffentlicht in: Applied Cryptography and Network Security, 2015, Seite(n) 389-408, ISBN 978-3-319-28166-7
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-28166-7_19

Hybrid Publicly Verifiable Computation

Autoren: James Alderman, Christian Janson, Carlos Cid, Jason Crampton
Veröffentlicht in: Topics in Cryptology - CT-RSA 2016, 2016, Seite(n) 147-163, ISBN 978-3-319-29485-8
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-29485-8_9

Extended Functionality in Verifiable Searchable Encryption

Autoren: James Alderman, Christian Janson, Keith M. Martin, Sarah Louise Renwick
Veröffentlicht in: Cryptography and Information Security in the Balkans, 2016, Seite(n) 187-205, ISBN 978-3-319-29172-7
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-29172-7_12

Cryptographic Tools for Cloud Environments

Autoren: James Alderman, Jason Crampton, Keith M. Martin
Veröffentlicht in: Guide to Security Assurance for Cloud Computing, 2015, Seite(n) 15-30, ISBN 978-3-319-25988-8
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-25988-8_2

Ontology-Based Delegation of Access Control: An Enhancement to the XACML Delegation Profile

Autoren: Malik Imran Daud, David Sánchez, Alexandre Viejo
Veröffentlicht in: Trust, Privacy and Security in Digital Business, Ausgabe 9264, 2015, Seite(n) 18-29, ISBN 978-3-319-22906-5
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-22906-5_2

Optimal Constructions for Chain-Based Cryptographic Enforcement of Information Flow Policies

Autoren: Jason Crampton, Naomi Farley, Gregory Gutin, Mark Jones
Veröffentlicht in: Data and Applications Security and Privacy XXIX, 2015, Seite(n) 330-345, ISBN 978-3-319-20810-7
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-20810-7_23

Enforcing transparent access to private content in social networks by means of automatic sanitization

Autoren: Alexandre Viejo, David Sánchez
Veröffentlicht in: Expert Systems with Applications, Ausgabe 62, 2016, Seite(n) 148-160, ISSN 0957-4174
Herausgeber: Pergamon Press Ltd.
DOI: 10.1016/j.eswa.2016.06.026

"Comment on ""Unique in the shopping mall: On the reidentifiability of credit card metadata"""

Autoren: D. Sanchez, S. Martinez, J. Domingo-Ferrer
Veröffentlicht in: Science, Ausgabe 351/6279, 2016, Seite(n) 1274-1274, ISSN 0036-8075
Herausgeber: American Association for the Advancement of Science
DOI: 10.1126/science.aad9295

Privacy-driven access control in social networks by means of automatic semantic annotation

Autoren: Malik Imran-Daud, David Sánchez, Alexandre Viejo
Veröffentlicht in: Computer Communications, Ausgabe 76, 2016, Seite(n) 12-25, ISSN 0140-3664
Herausgeber: Elsevier BV
DOI: 10.1016/j.comcom.2016.01.001

Toward sensitive document release with privacy guarantees

Autoren: David Sánchez, Montserrat Batet
Veröffentlicht in: Engineering Applications of Artificial Intelligence, Ausgabe 59, 2017, Seite(n) 23-34, ISSN 0952-1976
Herausgeber: Pergamon Press Ltd.
DOI: 10.1016/j.engappai.2016.12.013

Privacy-preserving data outsourcing in the cloud via semantic data splitting

Autoren: David Sánchez, Montserrat Batet
Veröffentlicht in: Computer Communications, Ausgabe 110, 2017, Seite(n) 187-201, ISSN 0140-3664
Herausgeber: Elsevier BV
DOI: 10.1016/j.comcom.2017.06.012

A Simple Method for Limiting Disclosure in Continuous Microdata Based on Principal Component Analysis

Autoren: Aida Calviño
Veröffentlicht in: Journal of Official Statistics, Ausgabe 33/1, 2017, ISSN 2001-7367
Herausgeber: De Gruyter Open
DOI: 10.1515/jos-2017-0002

Individual Differential Privacy: A Utility-Preserving Formulation of Differential Privacy Guarantees

Autoren: Jordi Soria-Comas, Josep Domingo-Ferrer, David Sanchez, David Megias
Veröffentlicht in: IEEE Transactions on Information Forensics and Security, Ausgabe 12/6, 2017, Seite(n) 1418-1429, ISSN 1556-6013
Herausgeber: Institute of Electrical and Electronics Engineers
DOI: 10.1109/TIFS.2017.2663337

Cloud Cryptography: Theory, Practice and Future Research Directions

Autoren: Kim-Kwang Raymond Choo, Josep Domingo-Ferrer, Lei Zhang
Veröffentlicht in: Future Generation Computer Systems, Ausgabe 62, 2016, Seite(n) 51-53, ISSN 0167-739X
Herausgeber: Elsevier BV
DOI: 10.1016/j.future.2016.04.017

C-sanitized: A privacy model for document redaction and sanitization

Autoren: David Sánchez, Montserrat Batet
Veröffentlicht in: Journal of the Association for Information Science and Technology, Ausgabe 67/1, 2016, Seite(n) 148-163, ISSN 2330-1635
Herausgeber: Wiley
DOI: 10.1002/asi.23363

t-Closeness through Microaggregation: Strict Privacy with Enhanced Utility Preservation

Autoren: Jordi Soria-Comas, Josep Domingo-Ferrer, David Sanchez, Sergio Martinez
Veröffentlicht in: IEEE Transactions on Knowledge and Data Engineering, Ausgabe 27/11, 2015, Seite(n) 3098-3110, ISSN 1041-4347
Herausgeber: Institute of Electrical and Electronics Engineers
DOI: 10.1109/TKDE.2015.2435777

Utility-preserving differentially private data releases via individual ranking microaggregation

Autoren: David Sánchez, Josep Domingo-Ferrer, Sergio Martínez, Jordi Soria-Comas
Veröffentlicht in: Information Fusion, Ausgabe 30, 2016, Seite(n) 1-14, ISSN 1566-2535
Herausgeber: Elsevier BV
DOI: 10.1016/j.inffus.2015.11.002

Generating Searchable Public-Key Ciphertexts With Hidden Structures for Fast Keyword Search

Autoren: Peng Xu, Qianhong Wu, Wei Wang, Willy Susilo, Josep Domingo-Ferrer, Hai Jin
Veröffentlicht in: IEEE Transactions on Information Forensics and Security, Ausgabe 10/9, 2015, Seite(n) 1993-2006, ISSN 1556-6013
Herausgeber: Institute of Electrical and Electronics Engineers
DOI: 10.1109/TIFS.2015.2442220

Flexible attribute-based encryption applicable to secure e-healthcare records

Autoren: Bo Qin, Hua Deng, Qianhong Wu, Josep Domingo-Ferrer, David Naccache, Yunya Zhou
Veröffentlicht in: International Journal of Information Security, Ausgabe 14/6, 2015, Seite(n) 499-511, ISSN 1615-5262
Herausgeber: Springer Verlag
DOI: 10.1007/s10207-014-0272-7

t-closeness through microaggregation: Strict privacy with enhanced utility preservation

Autoren: Jordi Soria-Comas, Josep Domingo-Ferrer, David Sanchez, Sergio Martinez
Veröffentlicht in: 2016 IEEE 32nd International Conference on Data Engineering (ICDE), 2016, Seite(n) 1464-1465, ISBN 978-1-5090-2020-1
Herausgeber: IEEE
DOI: 10.1109/ICDE.2016.7498376

Ontology-based Access Control Management: Two Use Cases

Autoren: Malik Imran-Daud, David Sanchez, Alexandre Viejo
Veröffentlicht in: Proceedings of the 8th International Conference on Agents and Artificial Intelligence, 2016, Seite(n) 244-249, ISBN 978-989-758-172-4
Herausgeber: SCITEPRESS - Science and and Technology Publications
DOI: 10.5220/0005777902440249

Private Outsourced Kriging Interpolation

Autoren: James Alderman, Benjamin R. Curtis, Oriol Farràs, Keith M. Martin, Jordi Ribes-González
Veröffentlicht in: Lecture Notes in Computer Science, Ausgabe 10323, 2017, Seite(n) 75-90, ISSN 0302-9743
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-70278-0_5

Framework for Searchable Encryption with SQL Databases

Autoren: M. Azraoui, M. Önen, R. Molva
Veröffentlicht in: CLOSER 2018 - 8th International Conference on Cloud Computing and Services Science, 2018
Herausgeber: Springer

Factor Analysis for Anonymization

Autoren: Aida Calvino, Palmira Aldeguer, Josep Domingo-Ferrer
Veröffentlicht in: 2017 IEEE International Conference on Data Mining Workshops (ICDMW), 2017, Seite(n) 984-991, ISBN 978-1-5386-3800-2
Herausgeber: IEEE
DOI: 10.1109/ICDMW.2017.139

Steered Microaggregation: A Unified Primitive for Anonymization of Data Sets and Data Streams

Autoren: Josep Domingo-Ferrer, Jordi Soria-Comas
Veröffentlicht in: 2017 IEEE International Conference on Data Mining Workshops (ICDMW), 2017, Seite(n) 995-1002, ISBN 978-1-5386-3800-2
Herausgeber: IEEE
DOI: 10.1109/ICDMW.2017.141

Model-Based Attack Tolerance

Autoren: Georges Ouffoue, Fatiha Zaidi, Ana R. Cavalli, Mounir Lallali
Veröffentlicht in: 2017 31st International Conference on Advanced Information Networking and Applications Workshops (WAINA), 2017, Seite(n) 68-73, ISBN 978-1-5090-6231-7
Herausgeber: IEEE
DOI: 10.1109/WAINA.2017.88

An Attack-Tolerant Framework for Web Services

Autoren: Georges L.A. Ouffoue, Fatiha Zaidi, Ana R. Cavalli, Mounir Lallali
Veröffentlicht in: 2017 IEEE International Conference on Services Computing (SCC), 2017, Seite(n) 503-506, ISBN 978-1-5386-2005-2
Herausgeber: IEEE
DOI: 10.1109/SCC.2017.75

Multi-level Access in Searchable Symmetric Encryption

Autoren: James Alderman, Keith M. Martin, Sarah Louise Renwick
Veröffentlicht in: Financial Cryptography Workshops, 2017, Seite(n) 35-52
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-70278-0_3

A Non-Parametric Model for Accurate and Provably Private Synthetic Data Sets

Autoren: Jordi Soria-Comas, Josep Domingo-Ferrer
Veröffentlicht in: Proceedings of the 12th International Conference on Availability, Reliability and Security - ARES '17, 2017, Seite(n) 1-10, ISBN 9781-450352574
Herausgeber: ACM Press
DOI: 10.1145/3098954.3098962

Empirical Comparison of Anonymization Methods Regarding Their Risk-Utility Trade-Off

Autoren: J. Domingo-Ferrer, S. Ricci and J. Soria-Comas
Veröffentlicht in: Work Session on Statistical Data Confidentiality, 2017
Herausgeber: -

A Framework for the Cryptographic Enforcement of Information Flow Policies

Autoren: James Alderman, Jason Crampton, Naomi Farley
Veröffentlicht in: Proceedings of the 22nd ACM on Symposium on Access Control Models and Technologies - SACMAT '17 Abstracts, 2017, Seite(n) 143-154, ISBN 9781-450347020
Herausgeber: ACM Press
DOI: 10.1145/3078861.3078868

How Web Services Can Be Tolerant to Intruders through Diversification

Autoren: Georges Ouffoue, Fatiha Zaidi, Ana R. Cavalli, Mounir Lallali
Veröffentlicht in: 2017 IEEE International Conference on Web Services (ICWS), 2017, Seite(n) 436-443, ISBN 978-1-5386-0752-7
Herausgeber: IEEE
DOI: 10.1109/ICWS.2017.50

Privacy-Preserving Cloud-Based Statistical Analyses on Sensitive Categorical Data

Autoren: Sara Ricci, Josep Domingo-Ferrer, David Sánchez
Veröffentlicht in: MDAI 2016: Modeling Decisions for Artificial Intelligence, 2016, Seite(n) 227-238, ISBN 978-3-319-45655-3
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-45656-0_19

Rank-Based Record Linkage for Re-Identification Risk Assessment

Autoren: Krishnamurty Muralidhar, Josep Domingo-Ferrer
Veröffentlicht in: PSD 2016: Privacy in Statistical Databases, 2016, Seite(n) 225-236
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-45381-1_17

Intrusion Detection and Attack Tolerance for Cloud Environments: The CLARUS Approach

Autoren: Georges Ouffoue, Antonio M. Ortiz, Ana R. Cavalli, Wissam Mallouli, Josep Domingo-Ferrer, David Sanchez, Fatiha Zaidi
Veröffentlicht in: 2016 IEEE 36th International Conference on Distributed Computing Systems Workshops (ICDCSW), 2016, Seite(n) 61-66, ISBN 978-1-5090-3686-8
Herausgeber: IEEE
DOI: 10.1109/ICDCSW.2016.27

Perturbative Data Protection of Multivariate Nominal Datasets

Autoren: Mercedes Rodriguez-Garcia, David Sánchez, Montserrat Batet
Veröffentlicht in: PSD 2016: Privacy in Statistical Databases, 2016, Seite(n) 94-106
Herausgeber: Springer International Publishing
DOI: 10.1007/978-3-319-45381-1_8

Searchable encryption for geo-referenced data

Autoren: Oriol Farras, Jordi Ribes-Gonzalez
Veröffentlicht in: 2016 Mediterranean Ad Hoc Networking Workshop (Med-Hoc-Net), 2016, Seite(n) 1-8, ISBN 978-1-5090-1983-0
Herausgeber: IEEE
DOI: 10.1109/MedHocNet.2016.7528430

Publicly verifiable conjunctive keyword search in outsourced databases

Autoren: Monir Azraoui, Kaoutar Elkhiyaoui, Melek Onen, Refik Molva
Veröffentlicht in: 2015 IEEE Conference on Communications and Network Security (CNS), 2015, Seite(n) 619-627, ISBN 978-1-4673-7876-5
Herausgeber: IEEE
DOI: 10.1109/CNS.2015.7346876

Disclosure risk assessment via record linkage by a maximum-knowledge attacker

Autoren: Josep Domingo-Ferrer, Sara Ricci, Jordi Soria-Comas
Veröffentlicht in: 2015 13th Annual Conference on Privacy, Security and Trust (PST), 2015, Seite(n) 28-35, ISBN 978-1-4673-7828-4
Herausgeber: IEEE
DOI: 10.1109/PST.2015.7232951

Semantic Noise: Privacy-Protection of Nominal Microdata through Uncorrelated Noise Addition

Autoren: Mercedes Rodriguez-Garcia, Montserrat Batet, David Sanchez
Veröffentlicht in: 2015 IEEE 27th International Conference on Tools with Artificial Intelligence (ICTAI), 2015, Seite(n) 1106-1113, ISBN 978-1-5090-0163-7
Herausgeber: IEEE
DOI: 10.1109/ICTAI.2015.157

Privacy-preserving distributed statistical computation to a semi-honest multi-cloud

Autoren: Aida Calvino, Sara Ricci, Josep Domingo-Ferrer
Veröffentlicht in: 2015 IEEE Conference on Communications and Network Security (CNS), 2015, Seite(n) 506-514, ISBN 978-1-4673-7876-5
Herausgeber: IEEE
DOI: 10.1109/CNS.2015.7346863

Access Control in Publicly Verifiable Outsourced Computation

Autoren: James Alderman, Christian Janson, Carlos Cid, Jason Crampton
Veröffentlicht in: Proceedings of the 10th ACM Symposium on Information, Computer and Communications Security - ASIA CCS '15, 2015, Seite(n) 657-662, ISBN 9781-450332453
Herausgeber: ACM Press
DOI: 10.1145/2714576.2714636

Suche nach OpenAIRE-Daten ...

Bei der Suche nach OpenAIRE-Daten ist ein Fehler aufgetreten

Es liegen keine Ergebnisse vor