IRRES:入侵弹性远程邮件存储

Di Ma, G. Tsudik
{"title":"IRRES:入侵弹性远程邮件存储","authors":"Di Ma, G. Tsudik","doi":"10.1109/ICDCSW.2010.38","DOIUrl":null,"url":null,"abstract":"Both individuals and corporations increasingly rely on email to exchange important and, often sensitive, information. With the advent of ubiquitous computing and miniaturization of end-devices, many users leave email on remote servers, thus facilitating anywhere/anytime access from any networked device. Since private and sensitive information is often contained in email, it is very important to prevent its unauthorized disclosure. In this paper, we consider the problem of repeated intrusions of third-party email servers. Specifically, we design IRRES: Intrusion-Resilient Remote Email Storage system that prevents email leakage despite the presence of a powerful mobile adversary. IRRES eliminates sender compliance requirements by shifting encryption from email sender to email server. Incoming email messages are encrypted by the server with one-time keys obtained from an intrusion-resilient cooperative randomness generation process. Thus, even if the server is compromised twice, all email encrypted in the interim remains secure.","PeriodicalId":133907,"journal":{"name":"2010 IEEE 30th International Conference on Distributed Computing Systems Workshops","volume":"5 1","pages":"0"},"PeriodicalIF":0.0000,"publicationDate":"2010-06-21","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":"{\"title\":\"IRRES: Intrusion-Resilient Remote Email Storage\",\"authors\":\"Di Ma, G. Tsudik\",\"doi\":\"10.1109/ICDCSW.2010.38\",\"DOIUrl\":null,\"url\":null,\"abstract\":\"Both individuals and corporations increasingly rely on email to exchange important and, often sensitive, information. With the advent of ubiquitous computing and miniaturization of end-devices, many users leave email on remote servers, thus facilitating anywhere/anytime access from any networked device. Since private and sensitive information is often contained in email, it is very important to prevent its unauthorized disclosure. In this paper, we consider the problem of repeated intrusions of third-party email servers. Specifically, we design IRRES: Intrusion-Resilient Remote Email Storage system that prevents email leakage despite the presence of a powerful mobile adversary. IRRES eliminates sender compliance requirements by shifting encryption from email sender to email server. Incoming email messages are encrypted by the server with one-time keys obtained from an intrusion-resilient cooperative randomness generation process. Thus, even if the server is compromised twice, all email encrypted in the interim remains secure.\",\"PeriodicalId\":133907,\"journal\":{\"name\":\"2010 IEEE 30th International Conference on Distributed Computing Systems Workshops\",\"volume\":\"5 1\",\"pages\":\"0\"},\"PeriodicalIF\":0.0000,\"publicationDate\":\"2010-06-21\",\"publicationTypes\":\"Journal Article\",\"fieldsOfStudy\":null,\"isOpenAccess\":false,\"openAccessPdf\":\"\",\"citationCount\":\"0\",\"resultStr\":null,\"platform\":\"Semanticscholar\",\"paperid\":null,\"PeriodicalName\":\"2010 IEEE 30th International Conference on Distributed Computing Systems Workshops\",\"FirstCategoryId\":\"1085\",\"ListUrlMain\":\"https://doi.org/10.1109/ICDCSW.2010.38\",\"RegionNum\":0,\"RegionCategory\":null,\"ArticlePicture\":[],\"TitleCN\":null,\"AbstractTextCN\":null,\"PMCID\":null,\"EPubDate\":\"\",\"PubModel\":\"\",\"JCR\":\"\",\"JCRName\":\"\",\"Score\":null,\"Total\":0}","platform":"Semanticscholar","paperid":null,"PeriodicalName":"2010 IEEE 30th International Conference on Distributed Computing Systems Workshops","FirstCategoryId":"1085","ListUrlMain":"https://doi.org/10.1109/ICDCSW.2010.38","RegionNum":0,"RegionCategory":null,"ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"","JCRName":"","Score":null,"Total":0}
引用次数: 0

摘要

个人和企业都越来越依赖电子邮件来交换重要的、往往是敏感的信息。随着无处不在的计算和终端设备小型化的出现,许多用户将电子邮件留在远程服务器上,从而方便了从任何网络设备随时随地访问电子邮件。由于电子邮件中经常包含私人和敏感信息,因此防止未经授权的信息泄露非常重要。在本文中,我们考虑了第三方邮件服务器的重复入侵问题。具体来说,我们设计了IRRES:入侵弹性远程电子邮件存储系统,防止电子邮件泄漏,尽管存在强大的移动对手。IRRES通过将加密从电子邮件发件人转移到电子邮件服务器来消除发件人的合规性要求。传入的电子邮件消息由服务器使用从入侵弹性协作随机生成过程中获得的一次性密钥进行加密。因此,即使服务器被破坏两次,在此期间加密的所有电子邮件仍然是安全的。
本文章由计算机程序翻译,如有差异,请以英文原文为准。
IRRES: Intrusion-Resilient Remote Email Storage
Both individuals and corporations increasingly rely on email to exchange important and, often sensitive, information. With the advent of ubiquitous computing and miniaturization of end-devices, many users leave email on remote servers, thus facilitating anywhere/anytime access from any networked device. Since private and sensitive information is often contained in email, it is very important to prevent its unauthorized disclosure. In this paper, we consider the problem of repeated intrusions of third-party email servers. Specifically, we design IRRES: Intrusion-Resilient Remote Email Storage system that prevents email leakage despite the presence of a powerful mobile adversary. IRRES eliminates sender compliance requirements by shifting encryption from email sender to email server. Incoming email messages are encrypted by the server with one-time keys obtained from an intrusion-resilient cooperative randomness generation process. Thus, even if the server is compromised twice, all email encrypted in the interim remains secure.
求助全文
通过发布文献求助,成功后即可免费获取论文全文。 去求助
来源期刊
自引率
0.00%
发文量
0
×
引用
GB/T 7714-2015
复制
MLA
复制
APA
复制
导出至
BibTeX EndNote RefMan NoteFirst NoteExpress
×
提示
您的信息不完整,为了账户安全,请先补充。
现在去补充
×
提示
您因"违规操作"
具体请查看互助需知
我知道了
×
提示
确定
请完成安全验证×
copy
已复制链接
快去分享给好友吧!
我知道了
右上角分享
点击右上角分享
0
联系我们:info@booksci.cn Book学术提供免费学术资源搜索服务,方便国内外学者检索中英文文献。致力于提供最便捷和优质的服务体验。 Copyright © 2023 布克学术 All rights reserved.
京ICP备2023020795号-1
ghs 京公网安备 11010802042870号
Book学术文献互助
Book学术文献互助群
群 号:604180095
Book学术官方微信