Skip to main content

On the Design of a Privacy Preserving Collaborative Platform for Cybersecurity

  • Conference paper
  • First Online:
Advanced Computational Methods for Knowledge Engineering (ICCSAMA 2019)

Abstract

Nowadays, cyber-attacks are targeting mobile devices, bank accounts, connected vehicles and cyber-physical systems. These attacks are becoming more complex and are raising safety problems when targeting physical environment. An efficient way to protect against these attacks is making several security actors collaborate in defining appropriate countermeasures. However, in practice, security actors refrain from collaborating to avoid sharing their proprietary security processes. These processes represent a critical knowledge as they reflect these actors brand images. In this work, we investigate the use of homomorphic encryption to define a privacy preserving framework for sharing processes between different cybersecurity actors and for providing confidential data analysis. We describe a high level design for a secure cloud platform managing encrypted data. The data analysis algorithms provided by the cloud platform are designed with our open source tool Cingulata, which enables designers to implement any data analysis function, compile it and run it on homomorphically encrypted data.

This work is sponsored by the H2020 European Research Council funding (Grant agreement ID: 700294, and ID: 727528) for the C3ISP and KONFIDO projects (http://www.c3isp.eu/, https://konfido-project.eu/).

This is a preview of subscription content, log in via an institution to check access.

Access this chapter

Subscribe and save

Springer+ Basic
$34.99 /Month
  • Get 10 units per month
  • Download Article/Chapter or eBook
  • 1 Unit = 1 Article or 1 Chapter
  • Cancel anytime
Subscribe now

Buy Now

Chapter
USD 29.95
Price excludes VAT (USA)
  • Available as PDF
  • Read on any device
  • Instant download
  • Own it forever
eBook
USD 129.00
Price excludes VAT (USA)
  • Available as EPUB and PDF
  • Read on any device
  • Instant download
  • Own it forever
Softcover Book
USD 169.99
Price excludes VAT (USA)
  • Compact, lightweight edition
  • Dispatched in 3 to 5 business days
  • Free shipping worldwide - see info

Tax calculation will be finalised at checkout

Purchases are for personal use only

Institutional subscriptions

Similar content being viewed by others

Notes

  1. 1.

    5 V big data challenges: Data Volume, Velocity, Variety, Veracity and Value.

References

  1. Brakerski, Z.: Fully homomorphic encryption without modulus switching from classical GapSVP. In: Advances in Cryptology - CRYPTO 2012. Lecture Notes in Computer Science, pp. 868–886 (2012)

    Google Scholar 

  2. Brakerski, Z., Gentry, C., Vaikuntanathan, V.: (Leveled) fully homomorphic encryption without bootstrapping. In: Proceedings of the 3rd Innovations in Theoretical Computer Science Conference on - ITCS 2012 (2012)

    Google Scholar 

  3. Carpov, S., Dubrulle, P., Sirdey, R.: Armadillo: a compilation chain for privacy preserving applications. In: Proceedings of the 3rd International Workshop on Security in Cloud Computing, pp. 13–19 (2015)

    Google Scholar 

  4. Chadwick, D.W., Fan, W., Constantino, G., Lemos, R.D., Cerbo, F.D., Herwono, I., Mori, P., Sajjad, A., Wang, X.S., Manea, M.: A cloud-edge based data security architecture for sharing and analyzing cyber threat information. Future Gener. Comput. Syst. 102, 710–722 (2019)

    Article  Google Scholar 

  5. Chillotti, I., Gama, N., Georgieva, M., Izabachène, M.: Faster fully homomorphic encryption: bootstrapping in less than 0.1 seconds. In: ASIACRYPT 2016, Part I, pp. 3–33. Springer (2016)

    Google Scholar 

  6. Fan, J., Vercauteren, F.: Somewhat practical fully homomorphic encryption. Cryptology ePrint Archive Report 2012/144 (2012). http://eprint.iacr.org/

  7. Fau, S., Sirdey, R., Fontaine, C., Melchor, C.A., Gogniat, G.: Towards practical program execution over fully homomorphic encryption schemes. In: 3PGCIC, pp. 284–290 (2013)

    Google Scholar 

  8. Fung, C.J., Boutaba, B.: Design and management of collaborative intrusion detection networks. In: IFIP/IEEE International Symposium on Integrated Network Management (2013)

    Google Scholar 

  9. Chillotti, I., Gama, N., Georgieva, M., Izabachène, M.: Improving TFHE: faster packed homomorphic operations and efficient circuit bootstrapping. In: Proceedings of ASICACRYPT 2017. LNCS, vol. 10624, pp. 377–408. Springer (2017)

    Google Scholar 

  10. Lidz, C.W.: Informed Consent: A Study of Decision Making in Psychiatry. Guilford, New York (1984)

    Google Scholar 

  11. McAfee: Common Event Format - McAfee, September 2018. https://kc.mcafee.com/resources/sites/MCAFEE/content

  12. Melchor, C.A., Fau, S., Fontaine, C., Gogniat, G., Sirdey, R.: Recent advances in homomorphic encryption: a possible future for signal processing in the encrypted domain. IEEE Sig. Process. Mag. 30(2), 108–117 (2013)

    Article  Google Scholar 

  13. Nabeel, M., Shang, N., Bertino, E.: Efficient privacy preserving content based publish subscribe systems. In: Proceedings of the 17th ACM Symposium on Access Control Models and Technologies (SACMAT 2012). ACM, New York (2012)

    Google Scholar 

  14. Trimintzios, P., Gavrila, R.: On national and international cyber security exercises: survey, analysis and recommendations. ENISA European Union Agency for Cybersecurity (2012). http://www.enisa.europa.eu/activities/Resilience-and-CIIP/cyber-crisis-cooperation/cce/cyber-exercises/exercise-survey2012

  15. Pires, R., Pasin, M., Felber, P., Fetzer, C.: Secure content-based routing using Intel software guard extensions. In: Proceedings of the 17th International Middleware Conference (Middleware 2016). ACM, New York (2016)

    Google Scholar 

  16. Richardson, E.L., Weinberger, C.W.: Records, computers, and the rights of citizens. U.S. Department of Health, Education, and Welfare (1973)

    Google Scholar 

  17. C.L. team: Homomorphic encryption technology. github (2018)

    Google Scholar 

  18. UNISS: Cybersecurity policies and critical infrastructure protection (2018). https://uniss.org/cyber-security-policies-and-critical-infrastructure-protection/

  19. NISP WG2: NISP WG2 plenary report information sharing and incident notification. Network and Information Security Group (2013)

    Google Scholar 

  20. eHealth Acceptance Factors and KONFIDO Adaptation Strategy (2018). https://konfido-project.eu

Download references

Author information

Authors and Affiliations

Authors

Corresponding author

Correspondence to Thanh-Hai Nguyen .

Editor information

Editors and Affiliations

Rights and permissions

Reprints and permissions

Copyright information

© 2020 Springer Nature Switzerland AG

About this paper

Check for updates. Verify currency and authenticity via CrossMark

Cite this paper

Nguyen, TH., Herbert, V., Carpov, S. (2020). On the Design of a Privacy Preserving Collaborative Platform for Cybersecurity. In: Le Thi, H., Le, H., Pham Dinh, T., Nguyen, N. (eds) Advanced Computational Methods for Knowledge Engineering. ICCSAMA 2019. Advances in Intelligent Systems and Computing, vol 1121. Springer, Cham. https://doi.org/10.1007/978-3-030-38364-0_30

Download citation

Publish with us

Policies and ethics