Waffle: An Online Oblivious Datastore for Protecting Data Access Patterns

Author:

Maiyya Sujaya1ORCID,Vemula Sharath Chandra2ORCID,Agrawal Divyakant2ORCID,El Abbadi Amr2ORCID,Kerschbaum Florian1ORCID

Affiliation:

1. University of Waterloo, Waterloo, ON, Canada

2. University of California, Santa Barbara, Santa Barbara, CA, USA

Abstract

We present Waffle, a datastore that protects an application's data access patterns from a passive persistent adversary. Waffle achieves this without prior knowledge of the input data access distribution, making it the first of its kind to adaptively handle input sequences under a passive persistent adversary. Waffle maintains a constant bandwidth and client-side storage overhead, which can be adjusted to suit the application owner's preferences. This flexibility allows the owner to fine-tune system parameters and strike a balance between security and performance. Our evaluation, utilizing the Yahoo! Cloud Serving Benchmark (YCSB) benchmark and Redis as the backend storage, demonstrates promising results. The insecure baseline outperforms Waffle by a mere 5-6x, whereas Waffle outperforms Pancake-a state-of-the-art oblivious datastore under passive persistent adversaries-by 45-57%, and a concurrent ORAM system, TaoStore, by 102x.

Funder

Natural Sciences and Engineering Research Council of Canada

NSERC

IRC

Publisher

Association for Computing Machinery (ACM)

Reference56 articles.

1. Workload analysis of a large-scale key-value store

2. Practicing Oblivious Access on Cloud Storage

3. Blackstone , L. , Kamara , S. , and Moataz , T . Revisiting leakage abuse attacks. Cryptology ePrint Archive ( 2019 ). Blackstone, L., Kamara, S., and Moataz, T. Revisiting leakage abuse attacks. Cryptology ePrint Archive (2019).

4. Is There an Oblivious RAM Lower Bound?

5. Bronson , N. , Amsden , Z. , Cabrera , G. , Chakka , P. , Dimov , P. , Ding , H. , Ferris , J. , Giardullo , A. , Kulkarni , S. , Li , H. , Tao : Facebook's distributed data store for the social graph . In 2013 USENIX Annual Technical Conference (USENIXATC 13) ( 2013 ), pp. 49 -- 60 . Bronson, N., Amsden, Z., Cabrera, G., Chakka, P., Dimov, P., Ding, H., Ferris, J., Giardullo, A., Kulkarni, S., Li, H., et al. Tao: Facebook's distributed data store for the social graph. In 2013 USENIX Annual Technical Conference (USENIXATC 13) (2013), pp. 49--60.

Cited by 3 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

1. Tutorial: Information Leakage from Cryptographic Techniques;2024 IEEE 44th International Conference on Distributed Computing Systems Workshops (ICDCSW);2024-07-23

2. SWAT: A System-Wide Approach to Tunable Leakage Mitigation in Encrypted Data Stores;Proceedings of the VLDB Endowment;2024-06

3. Encrypted Multi-map that Hides Query, Access, and Volume Patterns;Lecture Notes in Computer Science;2024

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3