Enforcing Private Data Usage Control with Blockchain and Attested Off-chain Contract Execution

04/15/2019
by   Yang Xiao, et al.
0

The abundance of rich varieties of data is enabling many transformative applications of big data analytics that have profound societal impacts. However, there are also increasing concerns regarding the improper use of individual users' private data. Many argue that the technology that customizes our experience in the cyber domain is threatening the fundamental civil right to privacy. In this paper, we propose PrivacyGuard, a system that leverages smart contract in blockchain and trusted execution environment to enable individuals' control over other parties' access and use of their private data. In our design, smart contracts are used to specify data usage policy (i.e. who can use what data under which conditions along with how the data can be used), while the distributed ledger is used to keep an irreversible and non-repudiable record of data usage. To address the contract execution efficiency problem, as well as to prevent exposing user data on the publicly viewable blockchain, we construct a novel off-chain contract execution engine which realizes trustworthy contract execution off-chain in an trusted execution environment (TEE). By running the contract program inside a hardware-assisted TEE, the proposed off-chain trustworthy contract execution improves system efficiency significantly, as its correctness does not rely on distributed consensus which essentially requires the contract program be executed on all miner nodes. In order to leverage TEE in off-chain execution, PrivacyGuard has to several technical challenges such as synchronous function completion and scalability mitigation in blockchain platform. We build and deploy a prototype of PrivacyGuard using Ethereum and Intel SGX, and our experiments demonstrate the feasibility to support data-intensive applications using data from a large number of users.

READ FULL TEXT
research
05/22/2018

Blockchain and Trusted Computing: Problems, Pitfalls, and a Solution for Hyperledger Fabric

A smart contract on a blockchain cannot keep a secret because its data i...
research
10/13/2022

POSE: Practical Off-chain Smart Contract Execution

Smart contracts enable users to execute payments depending on complex pr...
research
05/20/2019

Privacy-Preserving P2P Energy Market on the Blockchain

Quartierstrom creates a peer-to-peer marketplace for locally generated s...
research
07/25/2022

AGAPECert: An Auditable, Generalized, Automated, Privacy-Enabling Certification Framework with Oblivious Smart Contracts

This paper introduces AGAPECert, an Auditable, Generalized, Automated, P...
research
07/16/2018

Private Data Objects: an Overview

We present Private Data Objects (PDOs), a technology that enables mutual...
research
05/11/2021

Agatha: Smart Contract for DNN Computation

Smart contract is one of the core features of Ethereum and has inspired ...
research
05/03/2017

Distributed Proportional-Fairness Control in MicroGrids via Blockchain Smart Contracts

Residential microgrids (MGs) may host a large number of Distributed Ener...

Please sign up or login with your details

Forgot password? Click here to reset