Detecting Suspicious File Migration or Replication in the Cloud

被引:4
|
作者
Bowers, Adam [1 ]
Liao, Cong [2 ]
Steiert, Douglas [1 ]
Lin, Dan [1 ]
Squicciarini, Anna [2 ]
Hurson, Ali [3 ]
机构
[1] Univ Missouri, Dept Elect Engn & Comp Sci, Columbia, MO 65211 USA
[2] Penn State Univ, Informat Sci & Technol, State Coll, PA 16801 USA
[3] Missouri Univ Sci & Technol, Dept Comp Sci, Rolla, MO 65409 USA
基金
美国国家科学基金会;
关键词
Cloud computing; Monitoring; Sockets; Load management; Law; File systems; Data privacy; Cloud storage; file transfer; location privacy;
D O I
10.1109/TDSC.2018.2885271
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
There has been a prolific rise in the popularity of cloud storage in recent years. While cloud storage offers many advantages such as flexibility and convenience, users are typically unable to tell or control the actual locations of their data. This limitation may affect users' confidence and trust in the storage provider, or even render cloud unsuitable for storing data with strict location requirements. To address this issue, we propose a system called LAST-HDFS which integrates Location-Aware Storage Technique (LAST) into the open source Hadoop Distributed File System (HDFS). The LAST-HDFS system enforces location-aware file allocations and continuously monitors file transfers to detect potentially illegal transfers in the cloud. Illegal transfers here refer to attempts to move sensitive data outside the ("legal") boundaries specified by the file owner and its policies. Our underlying algorithms model file transfers among nodes as a weighted graph, and maximize the probability of storing data items of similar privacy preferences in the same region. We equip each cloud node with a socket monitor that is capable of monitoring the real-time communication among cloud nodes. Based on the real-time data transfer information captured by the socket monitors, our system calculates the probability of a given transfer to be illegal. We have implemented our proposed framework and carried out an extensive experimental evaluation in a large-scale real cloud environment to demonstrate the effectiveness and efficiency of our proposed system.
引用
收藏
页码:296 / 309
页数:14
相关论文
共 50 条
  • [41] Design and Implementation of an Application with File Encryption for Cloud Storage
    Sohn, Minseok
    Won, Yoojae
    ADVANCED SCIENCE LETTERS, 2017, 23 (12) : 12835 - 12838
  • [42] Secured file transmission in knowledge management-cloud
    Jayashri N.
    Kalaiselvi K.
    International Journal of Cloud Computing, 2023, 12 (2-4) : 246 - 260
  • [43] EDRFS: An effective distributed replication file system for small-file and data-intensive application
    Cai, Bin
    Xie, Changsheng
    Zhu, Guangxi
    2007 2ND INTERNATIONAL CONFERENCE ON COMMUNICATION SYSTEMS SOFTWARE & MIDDLEWARE, VOLS 1 AND 2, 2007, : 549 - +
  • [44] Requirements of digital file storage in the cloud for academic libraries
    Cabral Vargas, Brenda
    INVESTIGACION BIBLIOTECOLOGICA, 2018, 32 (74): : 55 - 75
  • [45] Implement A Reliable and Secure Cloud Distributed File System
    Tseng, Fan-Hsun
    Chen, Chi-Yuan
    Chou, Li-Der
    Chao, Han-Chieh
    IEEE INTERNATIONAL SYMPOSIUM ON INTELLIGENT SIGNAL PROCESSING AND COMMUNICATIONS SYSTEMS (ISPACS 2012), 2012,
  • [46] A Data Structure for Efficient File Deduplication in Cloud Storage
    Wang, Bohui
    Li, Hui
    Zhao, Yan
    Yang, Xin
    Ma, Huajun
    Xie, Xin
    Xing, Kaixuan
    2020 11TH IEEE ANNUAL UBIQUITOUS COMPUTING, ELECTRONICS & MOBILE COMMUNICATION CONFERENCE (UEMCON), 2020, : 71 - 77
  • [47] An architecture for synchronising cloud file storage and organisation repositories
    Andriani, Gil
    Godoy, Eduardo
    Koslovski, Guilherme
    Obelheiro, Rafael
    Pillon, Mauricio
    INTERNATIONAL JOURNAL OF PARALLEL EMERGENT AND DISTRIBUTED SYSTEMS, 2019, 34 (05) : 538 - 555
  • [48] Enhancing Cloud Object Storage Performance using Dynamic Replication Approach
    Jindarak, Kanatorn
    Uthayopas, Putchong
    PROCEEDINGS OF THE 2012 IEEE 18TH INTERNATIONAL CONFERENCE ON PARALLEL AND DISTRIBUTED SYSTEMS (ICPADS 2012), 2012, : 800 - 803
  • [49] CoCloud: Enabling Efficient Cross-Cloud File Collaboration Based on Inefficient Web APIs
    Jinlong, E.
    Cui, Yong
    Wang, Peng
    Li, Zhenhua
    Zhang, Chaokun
    IEEE TRANSACTIONS ON PARALLEL AND DISTRIBUTED SYSTEMS, 2018, 29 (01) : 56 - 69
  • [50] An Approach for Preventing and Detecting Attacks in the Cloud
    Merino, Louis-Henri
    Cukier, Michel
    2020 IEEE/ACM 13TH INTERNATIONAL CONFERENCE ON UTILITY AND CLOUD COMPUTING (UCC 2020), 2020, : 165 - 175