Secure Cloud Storage with Client-Side Encryption Using a Trusted Execution Environment

03/09/2020
by   Marciano da Rocha, et al.
0

With the evolution of computer systems, the amount of sensitive data to be stored as well as the number of threats on these data grow up, making the data confidentiality increasingly important to computer users. Currently, with devices always connected to the Internet, the use of cloud data storage services has become practical and common, allowing quick access to such data wherever the user is. Such practicality brings with it a concern, precisely the confidentiality of the data which is delivered to third parties for storage. In the home environment, disk encryption tools have gained special attention from users, being used on personal computers and also having native options in some smartphone operating systems. The present work uses the data sealing, feature provided by the Intel Software Guard Extensions (Intel SGX) technology, for file encryption. A virtual file system is created in which applications can store their data, keeping the security guarantees provided by the Intel SGX technology, before send the data to a storage provider. This way, even if the storage provider is compromised, the data are safe. To validate the proposal, the Cryptomator software, which is a free client-side encryption tool for cloud files, was integrated with an Intel SGX application (enclave) for data sealing. The results demonstrate that the solution is feasible, in terms of performance and security, and can be expanded and refined for practical use and integration with cloud synchronization services.

READ FULL TEXT

page 1

page 7

research
02/01/2022

Securing the data in cloud using Algebra Homomorphic Encryption scheme based on updated Elgamal(AHEE)

Cloud computing is the broad and diverse phenomenon. Users are allowed t...
research
10/27/2020

2FE: Two-Factor Encryption for Cloud Storage

Encrypted cloud storage services are steadily increasing in popularity, ...
research
05/15/2018

Digitalized Responsive Logical Interface Application

The quest for proper protection of data in the ERU and its accessibility...
research
04/19/2019

Credential Masquerading and OpenSSL Spy: Exploring ROS 2 using DDS security

The trend toward autonomous robot deployments is on an upward growth cur...
research
08/10/2020

Secure IoT Data Analytics in Cloud via Intel SGX

The growing adoption of IoT devices in our daily life is engendering a d...
research
03/02/2018

Secure and Privacy-Aware Data Dissemination for Cloud-Based Applications

In this paper we propose a data dissemination platform that supports dat...
research
09/22/2021

Privacy-preserving Credit Scoring via Functional Encryption

The majority of financial organizations managing confidential data are a...

Please sign up or login with your details

Forgot password? Click here to reset