European Commission logo
français français
CORDIS - Résultats de la recherche de l’UE
CORDIS

A FRAMEWORK FOR USER CENTRED PRIVACY AND SECURITY IN THE CLOUD

Livrables

Security as a service for CLARUS

This deliverable describes the security services incorporated in the CLARUS archiecture, which include identity and access management and key and risk management

Standardisation assessment

This deliverable presents the assessment of the standardisation guidelines and requirements identified in WP2 and documented in D2.5. It will result in a set of recommendations for Europe and European CSPs concerning standardisation issues, drawing also on related work at project/research level.

First progress report, financial statement and review

Progress according to the plan will be described in terms of technical activities, record of activities related to undertaken dissemination and exploitation activities, and use of resources (financial and personnel) at the end of the first year. Any deviations from the plan will be described, together with an assessment of the possible consequences and proposals for any necessary re-planning. The document will contain the completed project deliverables, a report of scientific production, and a summary of the periodic reports submitted by the partners to the coordinator.

An attack-tolerant framework for the cloud V1

This report will specify the framework provided by CLARUS to cope and preserve cloud services.

Dissemination and standards report V1

An initial dissemination plan will be produced after 6 months, and revised versions that also cover standardisation efforts will be produced at 12-month intervals. Results of standards monitoring, analysis and dissemination activities will be included in this report.

Dissemination and standards report V3

An initial dissemination plan will be produced after 6 months, and revised versions that also cover standardisation efforts will be produced at 12-month intervals. Results of standards monitoring, analysis and dissemination activities will be included in this report.

Architecture V2

This deliverable will provide the architecture design of the CLARUS system, including the functional components, data location, data flows and protocols.

Standardisation and interoperability

This deliverable will provide the main results concerning standardisation and interoperability issues. It will focus more on outcomes and impact in the EU & global context.

The CLARUS modules V1

This document will specify the detailed design of the CLARUS solution

Quality assurance plan (including the Project Handbook)

This deliverable will include information about timescales, reporting information, and finance information.

New security techniques

As a result of the work in Task 3.2, a report will be produced describing the original research contribution given by the new or improved privacy-preserving techniques that will be obtained from the study on the limitations of current state-of-the-art methods and techniques. In particular, the report will describe original research contribution to the problem of secure cloud storage in cloud computing.

Report on Validation Results

The deliverable will focus on the evaluation and assessment of CLARUS

Requirements specification V1

It will include a set of CLARUS requirements (functional and nonfunctional, technical and social) with priorities and definition of possible limitations and constraints

Standardisation requirements

This deliverable will report on the necessary requirement results and implementation roadmap, effort and analysis, considering the EU and global landscape.

An attack-tolerant framework for the cloud V2

This report will specify the framework provided by CLARUS to cope and preserve cloud services.

Definition of application cases

Definition of the application cases that will inform all further development and will be tested and validated within WP6.

Final progress report, financial statement and review

As in D1.3, for the second year.

Adapted monitoring tool for the cloud V1

This software package (including a user manual) will enable the supervision of client operations.

Legal and ethical requirements

This deliverable will include the specification of concrete legal requirements for the CLARUS system and describe means for surveillance and guidance all along the project.

Architecture V1

This deliverable will provide the architecture design of the CLARUS system, including the functional components, data location, data flows and protocols.

The CLARUS interface

This deliverable will document the platform interface specification and implementation.

Dissemination and standards report V2

An initial dissemination plan will be produced after 6 months, and revised versions that also cover standardisation efforts will be produced at 12-month intervals. Results of standards monitoring, analysis and dissemination activities will be included in this report.

Legal assessment and recommendations

This deliverable will describe the active collaboration between the legal and technical partners for the implementation of the legal requirements that are identified in WP2 and documented in D2.1. It will carry out the legal assessment of the CLARUS system and result in a specific and tailor made recommendations for Europe and European service providers on how to get the privacy and data protection principles built in cloud computing systems and services, thereby realising in practice the ‘privacy-by-design’ model.

Requirements Specification V2

As a delta document with regard to V1, this document will refine requirements specifications for the final version of the CLARUS platform. In particular it will take into consideration intermediate results of the project achieved in WP5 and WP6.

Characterisation of enabling technologies

As a result of Task 3.1, a characterisation of privacypreserving and security-enabling techniques will be provided in this report. The document will analyse available techniques and methods from different perspectives, by identifying their main advantages and limitations with regard to clouds. The document will be an input for research in Task 3.2.

The CLARUS platform V1

This document will specify the design of CLARUS platform as well as a user manual.

Adapted monitoring tool for the cloud V2

This software package (including a user manual) will enable the supervision of client operations.

The CLARUS modules V2

This document will specify the detailed design of the CLARUS solution

CLARUS benchmarking test suite

This deliverable will describe the benchmarking test suite to be applied to the CLARUS platform

The CLARUS platform V2

This document will specify the design of CLARUS platform as well as a user manual.

Data management plan

In this deliverable we will detail what data the project will generate, whether and how it will be exploited or made accessible for verification and re-use, and how it will be curated and preserved.

Publications

Flexible and Robust Privacy-Preserving Implicit Authentication

Auteurs: Josep Domingo-Ferrer, Qianhong Wu, Alberto Blanco-Justicia
Publié dans: ICT Systems Security and Privacy Protection, Numéro 455, 2015, Page(s) 18-34, ISBN 978-3-319-18467-8
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-18467-8_2

Cryptographic Enforcement of Information Flow Policies Without Public Information

Auteurs: Jason Crampton, Naomi Farley, Gregory Gutin, Mark Jones, Bertram Poettering
Publié dans: Applied Cryptography and Network Security, 2015, Page(s) 389-408, ISBN 978-3-319-28166-7
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-28166-7_19

Hybrid Publicly Verifiable Computation

Auteurs: James Alderman, Christian Janson, Carlos Cid, Jason Crampton
Publié dans: Topics in Cryptology - CT-RSA 2016, 2016, Page(s) 147-163, ISBN 978-3-319-29485-8
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-29485-8_9

Extended Functionality in Verifiable Searchable Encryption

Auteurs: James Alderman, Christian Janson, Keith M. Martin, Sarah Louise Renwick
Publié dans: Cryptography and Information Security in the Balkans, 2016, Page(s) 187-205, ISBN 978-3-319-29172-7
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-29172-7_12

Cryptographic Tools for Cloud Environments

Auteurs: James Alderman, Jason Crampton, Keith M. Martin
Publié dans: Guide to Security Assurance for Cloud Computing, 2015, Page(s) 15-30, ISBN 978-3-319-25988-8
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-25988-8_2

Ontology-Based Delegation of Access Control: An Enhancement to the XACML Delegation Profile

Auteurs: Malik Imran Daud, David Sánchez, Alexandre Viejo
Publié dans: Trust, Privacy and Security in Digital Business, Numéro 9264, 2015, Page(s) 18-29, ISBN 978-3-319-22906-5
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-22906-5_2

Optimal Constructions for Chain-Based Cryptographic Enforcement of Information Flow Policies

Auteurs: Jason Crampton, Naomi Farley, Gregory Gutin, Mark Jones
Publié dans: Data and Applications Security and Privacy XXIX, 2015, Page(s) 330-345, ISBN 978-3-319-20810-7
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-20810-7_23

Enforcing transparent access to private content in social networks by means of automatic sanitization

Auteurs: Alexandre Viejo, David Sánchez
Publié dans: Expert Systems with Applications, Numéro 62, 2016, Page(s) 148-160, ISSN 0957-4174
Éditeur: Pergamon Press Ltd.
DOI: 10.1016/j.eswa.2016.06.026

"Comment on ""Unique in the shopping mall: On the reidentifiability of credit card metadata"""

Auteurs: D. Sanchez, S. Martinez, J. Domingo-Ferrer
Publié dans: Science, Numéro 351/6279, 2016, Page(s) 1274-1274, ISSN 0036-8075
Éditeur: American Association for the Advancement of Science
DOI: 10.1126/science.aad9295

Privacy-driven access control in social networks by means of automatic semantic annotation

Auteurs: Malik Imran-Daud, David Sánchez, Alexandre Viejo
Publié dans: Computer Communications, Numéro 76, 2016, Page(s) 12-25, ISSN 0140-3664
Éditeur: Elsevier BV
DOI: 10.1016/j.comcom.2016.01.001

Toward sensitive document release with privacy guarantees

Auteurs: David Sánchez, Montserrat Batet
Publié dans: Engineering Applications of Artificial Intelligence, Numéro 59, 2017, Page(s) 23-34, ISSN 0952-1976
Éditeur: Pergamon Press Ltd.
DOI: 10.1016/j.engappai.2016.12.013

Privacy-preserving data outsourcing in the cloud via semantic data splitting

Auteurs: David Sánchez, Montserrat Batet
Publié dans: Computer Communications, Numéro 110, 2017, Page(s) 187-201, ISSN 0140-3664
Éditeur: Elsevier BV
DOI: 10.1016/j.comcom.2017.06.012

A Simple Method for Limiting Disclosure in Continuous Microdata Based on Principal Component Analysis

Auteurs: Aida Calviño
Publié dans: Journal of Official Statistics, Numéro 33/1, 2017, ISSN 2001-7367
Éditeur: De Gruyter Open
DOI: 10.1515/jos-2017-0002

Individual Differential Privacy: A Utility-Preserving Formulation of Differential Privacy Guarantees

Auteurs: Jordi Soria-Comas, Josep Domingo-Ferrer, David Sanchez, David Megias
Publié dans: IEEE Transactions on Information Forensics and Security, Numéro 12/6, 2017, Page(s) 1418-1429, ISSN 1556-6013
Éditeur: Institute of Electrical and Electronics Engineers
DOI: 10.1109/TIFS.2017.2663337

Cloud Cryptography: Theory, Practice and Future Research Directions

Auteurs: Kim-Kwang Raymond Choo, Josep Domingo-Ferrer, Lei Zhang
Publié dans: Future Generation Computer Systems, Numéro 62, 2016, Page(s) 51-53, ISSN 0167-739X
Éditeur: Elsevier BV
DOI: 10.1016/j.future.2016.04.017

C-sanitized: A privacy model for document redaction and sanitization

Auteurs: David Sánchez, Montserrat Batet
Publié dans: Journal of the Association for Information Science and Technology, Numéro 67/1, 2016, Page(s) 148-163, ISSN 2330-1635
Éditeur: Wiley
DOI: 10.1002/asi.23363

t-Closeness through Microaggregation: Strict Privacy with Enhanced Utility Preservation

Auteurs: Jordi Soria-Comas, Josep Domingo-Ferrer, David Sanchez, Sergio Martinez
Publié dans: IEEE Transactions on Knowledge and Data Engineering, Numéro 27/11, 2015, Page(s) 3098-3110, ISSN 1041-4347
Éditeur: Institute of Electrical and Electronics Engineers
DOI: 10.1109/TKDE.2015.2435777

Utility-preserving differentially private data releases via individual ranking microaggregation

Auteurs: David Sánchez, Josep Domingo-Ferrer, Sergio Martínez, Jordi Soria-Comas
Publié dans: Information Fusion, Numéro 30, 2016, Page(s) 1-14, ISSN 1566-2535
Éditeur: Elsevier BV
DOI: 10.1016/j.inffus.2015.11.002

Generating Searchable Public-Key Ciphertexts With Hidden Structures for Fast Keyword Search

Auteurs: Peng Xu, Qianhong Wu, Wei Wang, Willy Susilo, Josep Domingo-Ferrer, Hai Jin
Publié dans: IEEE Transactions on Information Forensics and Security, Numéro 10/9, 2015, Page(s) 1993-2006, ISSN 1556-6013
Éditeur: Institute of Electrical and Electronics Engineers
DOI: 10.1109/TIFS.2015.2442220

Flexible attribute-based encryption applicable to secure e-healthcare records

Auteurs: Bo Qin, Hua Deng, Qianhong Wu, Josep Domingo-Ferrer, David Naccache, Yunya Zhou
Publié dans: International Journal of Information Security, Numéro 14/6, 2015, Page(s) 499-511, ISSN 1615-5262
Éditeur: Springer Verlag
DOI: 10.1007/s10207-014-0272-7

t-closeness through microaggregation: Strict privacy with enhanced utility preservation

Auteurs: Jordi Soria-Comas, Josep Domingo-Ferrer, David Sanchez, Sergio Martinez
Publié dans: 2016 IEEE 32nd International Conference on Data Engineering (ICDE), 2016, Page(s) 1464-1465, ISBN 978-1-5090-2020-1
Éditeur: IEEE
DOI: 10.1109/ICDE.2016.7498376

Ontology-based Access Control Management: Two Use Cases

Auteurs: Malik Imran-Daud, David Sanchez, Alexandre Viejo
Publié dans: Proceedings of the 8th International Conference on Agents and Artificial Intelligence, 2016, Page(s) 244-249, ISBN 978-989-758-172-4
Éditeur: SCITEPRESS - Science and and Technology Publications
DOI: 10.5220/0005777902440249

Private Outsourced Kriging Interpolation

Auteurs: James Alderman, Benjamin R. Curtis, Oriol Farràs, Keith M. Martin, Jordi Ribes-González
Publié dans: Lecture Notes in Computer Science, Numéro 10323, 2017, Page(s) 75-90, ISSN 0302-9743
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-70278-0_5

Framework for Searchable Encryption with SQL Databases

Auteurs: M. Azraoui, M. Önen, R. Molva
Publié dans: CLOSER 2018 - 8th International Conference on Cloud Computing and Services Science, 2018
Éditeur: Springer

Factor Analysis for Anonymization

Auteurs: Aida Calvino, Palmira Aldeguer, Josep Domingo-Ferrer
Publié dans: 2017 IEEE International Conference on Data Mining Workshops (ICDMW), 2017, Page(s) 984-991, ISBN 978-1-5386-3800-2
Éditeur: IEEE
DOI: 10.1109/ICDMW.2017.139

Steered Microaggregation: A Unified Primitive for Anonymization of Data Sets and Data Streams

Auteurs: Josep Domingo-Ferrer, Jordi Soria-Comas
Publié dans: 2017 IEEE International Conference on Data Mining Workshops (ICDMW), 2017, Page(s) 995-1002, ISBN 978-1-5386-3800-2
Éditeur: IEEE
DOI: 10.1109/ICDMW.2017.141

Model-Based Attack Tolerance

Auteurs: Georges Ouffoue, Fatiha Zaidi, Ana R. Cavalli, Mounir Lallali
Publié dans: 2017 31st International Conference on Advanced Information Networking and Applications Workshops (WAINA), 2017, Page(s) 68-73, ISBN 978-1-5090-6231-7
Éditeur: IEEE
DOI: 10.1109/WAINA.2017.88

An Attack-Tolerant Framework for Web Services

Auteurs: Georges L.A. Ouffoue, Fatiha Zaidi, Ana R. Cavalli, Mounir Lallali
Publié dans: 2017 IEEE International Conference on Services Computing (SCC), 2017, Page(s) 503-506, ISBN 978-1-5386-2005-2
Éditeur: IEEE
DOI: 10.1109/SCC.2017.75

Multi-level Access in Searchable Symmetric Encryption

Auteurs: James Alderman, Keith M. Martin, Sarah Louise Renwick
Publié dans: Financial Cryptography Workshops, 2017, Page(s) 35-52
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-70278-0_3

A Non-Parametric Model for Accurate and Provably Private Synthetic Data Sets

Auteurs: Jordi Soria-Comas, Josep Domingo-Ferrer
Publié dans: Proceedings of the 12th International Conference on Availability, Reliability and Security - ARES '17, 2017, Page(s) 1-10, ISBN 9781-450352574
Éditeur: ACM Press
DOI: 10.1145/3098954.3098962

Empirical Comparison of Anonymization Methods Regarding Their Risk-Utility Trade-Off

Auteurs: J. Domingo-Ferrer, S. Ricci and J. Soria-Comas
Publié dans: Work Session on Statistical Data Confidentiality, 2017
Éditeur: -

A Framework for the Cryptographic Enforcement of Information Flow Policies

Auteurs: James Alderman, Jason Crampton, Naomi Farley
Publié dans: Proceedings of the 22nd ACM on Symposium on Access Control Models and Technologies - SACMAT '17 Abstracts, 2017, Page(s) 143-154, ISBN 9781-450347020
Éditeur: ACM Press
DOI: 10.1145/3078861.3078868

How Web Services Can Be Tolerant to Intruders through Diversification

Auteurs: Georges Ouffoue, Fatiha Zaidi, Ana R. Cavalli, Mounir Lallali
Publié dans: 2017 IEEE International Conference on Web Services (ICWS), 2017, Page(s) 436-443, ISBN 978-1-5386-0752-7
Éditeur: IEEE
DOI: 10.1109/ICWS.2017.50

Privacy-Preserving Cloud-Based Statistical Analyses on Sensitive Categorical Data

Auteurs: Sara Ricci, Josep Domingo-Ferrer, David Sánchez
Publié dans: MDAI 2016: Modeling Decisions for Artificial Intelligence, 2016, Page(s) 227-238, ISBN 978-3-319-45655-3
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-45656-0_19

Rank-Based Record Linkage for Re-Identification Risk Assessment

Auteurs: Krishnamurty Muralidhar, Josep Domingo-Ferrer
Publié dans: PSD 2016: Privacy in Statistical Databases, 2016, Page(s) 225-236
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-45381-1_17

Intrusion Detection and Attack Tolerance for Cloud Environments: The CLARUS Approach

Auteurs: Georges Ouffoue, Antonio M. Ortiz, Ana R. Cavalli, Wissam Mallouli, Josep Domingo-Ferrer, David Sanchez, Fatiha Zaidi
Publié dans: 2016 IEEE 36th International Conference on Distributed Computing Systems Workshops (ICDCSW), 2016, Page(s) 61-66, ISBN 978-1-5090-3686-8
Éditeur: IEEE
DOI: 10.1109/ICDCSW.2016.27

Perturbative Data Protection of Multivariate Nominal Datasets

Auteurs: Mercedes Rodriguez-Garcia, David Sánchez, Montserrat Batet
Publié dans: PSD 2016: Privacy in Statistical Databases, 2016, Page(s) 94-106
Éditeur: Springer International Publishing
DOI: 10.1007/978-3-319-45381-1_8

Searchable encryption for geo-referenced data

Auteurs: Oriol Farras, Jordi Ribes-Gonzalez
Publié dans: 2016 Mediterranean Ad Hoc Networking Workshop (Med-Hoc-Net), 2016, Page(s) 1-8, ISBN 978-1-5090-1983-0
Éditeur: IEEE
DOI: 10.1109/MedHocNet.2016.7528430

Publicly verifiable conjunctive keyword search in outsourced databases

Auteurs: Monir Azraoui, Kaoutar Elkhiyaoui, Melek Onen, Refik Molva
Publié dans: 2015 IEEE Conference on Communications and Network Security (CNS), 2015, Page(s) 619-627, ISBN 978-1-4673-7876-5
Éditeur: IEEE
DOI: 10.1109/CNS.2015.7346876

Disclosure risk assessment via record linkage by a maximum-knowledge attacker

Auteurs: Josep Domingo-Ferrer, Sara Ricci, Jordi Soria-Comas
Publié dans: 2015 13th Annual Conference on Privacy, Security and Trust (PST), 2015, Page(s) 28-35, ISBN 978-1-4673-7828-4
Éditeur: IEEE
DOI: 10.1109/PST.2015.7232951

Semantic Noise: Privacy-Protection of Nominal Microdata through Uncorrelated Noise Addition

Auteurs: Mercedes Rodriguez-Garcia, Montserrat Batet, David Sanchez
Publié dans: 2015 IEEE 27th International Conference on Tools with Artificial Intelligence (ICTAI), 2015, Page(s) 1106-1113, ISBN 978-1-5090-0163-7
Éditeur: IEEE
DOI: 10.1109/ICTAI.2015.157

Privacy-preserving distributed statistical computation to a semi-honest multi-cloud

Auteurs: Aida Calvino, Sara Ricci, Josep Domingo-Ferrer
Publié dans: 2015 IEEE Conference on Communications and Network Security (CNS), 2015, Page(s) 506-514, ISBN 978-1-4673-7876-5
Éditeur: IEEE
DOI: 10.1109/CNS.2015.7346863

Access Control in Publicly Verifiable Outsourced Computation

Auteurs: James Alderman, Christian Janson, Carlos Cid, Jason Crampton
Publié dans: Proceedings of the 10th ACM Symposium on Information, Computer and Communications Security - ASIA CCS '15, 2015, Page(s) 657-662, ISBN 9781-450332453
Éditeur: ACM Press
DOI: 10.1145/2714576.2714636

Recherche de données OpenAIRE...

Une erreur s’est produite lors de la recherche de données OpenAIRE

Aucun résultat disponible