Zeph: Cryptographic Enforcement of End-to-End Data Privacy

07/08/2021
by   Lukas Burkhalter, et al.
0

As increasingly more sensitive data is being collected to gain valuable insights, the need to natively integrate privacy controls in data analytics frameworks is growing in importance. Today, privacy controls are enforced by data curators with full access to data in the clear. However, a plethora of recent data breaches show that even widely trusted service providers can be compromised. Additionally, there is no assurance that data processing and handling comply with the claimed privacy policies. This motivates the need for a new approach to data privacy that can provide strong assurance and control to users. This paper presents Zeph, a system that enables users to set privacy preferences on how their data can be shared and processed. Zeph enforces privacy policies cryptographically and ensures that data available to third-party applications complies with users' privacy policies. Zeph executes privacy-adhering data transformations in real-time and scales to thousands of data sources, allowing it to support large-scale low-latency data stream analytics. We introduce a hybrid cryptographic protocol for privacy-adhering transformations of encrypted data. We develop a prototype of Zeph on Apache Kafka to demonstrate that Zeph can perform large-scale privacy transformations with low overhead.

READ FULL TEXT

page 9

page 13

page 14

page 15

page 16

page 17

page 18

page 19

research
06/27/2022

EGEON: Software-Defined Data Protection for Object Storage

With the growth in popularity of cloud computing, object storage systems...
research
01/14/2019

XRD: Scalable Messaging System with Cryptographic Privacy

Even as end-to-end encrypted communication becomes more popular, private...
research
01/03/2020

Privacy in Data Service Composition

In modern information systems different information features, about the ...
research
10/04/2021

Towards General-purpose Infrastructure for Protecting Scientific Data Under Study

The scientific method presents a key challenge to privacy because it req...
research
06/25/2020

Privacy at Facebook Scale

Most organizations today collect data across every facet of their busine...
research
06/25/2020

Scalable Data Classification for Security and Privacy

Content based data classification is an open challenge. Traditional Data...
research
01/20/2023

Cohere: Privacy Management in Large Scale Systems

The need for a privacy management layer in today's systems started to ma...

Please sign up or login with your details

Forgot password? Click here to reset