Please use this identifier to cite or link to this item: https://hdl.handle.net/10356/161735
Title: Privacy-enhancing mechanisms for securing data access and analysis
Authors: Guo, Jiale
Keywords: Engineering::Computer science and engineering
Issue Date: 2022
Publisher: Nanyang Technological University
Source: Guo, J. (2022). Privacy-enhancing mechanisms for securing data access and analysis. Doctoral thesis, Nanyang Technological University, Singapore. https://hdl.handle.net/10356/161735
Abstract: Data has been widely recognized as one of the most valuable assets that can be utilized to make dynamic decisions, improve service quality, optimize business operations and reduce costs. Most organizations are becoming more data-driven and leverage emerging technologies (e.g., the Internet of Things (IoT), cloud services, and machine learning) more frequently for collecting, storing, and analyzing data to provide better services to individuals. However, this also places new challenges on the protection of individual privacy. As with the widespread adoption of these emerging technologies, it becomes much easier to get unauthorized data access, infer and disclose sensitive personal information during the storage and analysis of data. Therefore, due to the capability to improve privacy, Privacy-enhancing Technologies (PETs) have received much attention from academic researchers, industry practitioners, and government regulators. In this thesis, we mainly focus on the mechanisms integrating PETs for securing data access and analysis. Firstly, to protect data security and improve the access control system for cloud storage, we propose a blockchain-based approach that distributes the access control tasks for authentication, authorization, and auditing to a distributed network of nodes. In particular, the auditing records are kept in the transparent blockchain. We propose different protocols for access control generation and verification, and design the corresponding transaction structures. In addition, Shamir's secret sharing scheme is employed to manage the encryption key for cloud users. Secondly, to prevent data leakage in federated learning for data analysis as well as enhance the quality of the Federated Learning (FL) model, we propose a privacy-enhanced FL scheme, based on cryptographic mechanisms. This scheme allows both data significance evaluation and weighted aggregation of local models in a privacy-preserving manner. Experimental results show that our scheme is practical and secure. Considering the FL participants are inevitably resource-constrained mobile devices, they may drop out of the system due to their mobility nature. To further improve the resilience of privacy-preserving aggregation, we propose a scalable privacy-preserving aggregation scheme that can tolerate dropout by participants at any time, and is secure against both semi-honest and active malicious adversaries by setting proper system parameters. By replacing communication-intensive building blocks with a seed homomorphic pseudo-random generator, and relying on the additive homomorphic property of Shamir's secret sharing scheme, our scheme achieves a significantly smaller cost and provides stronger dropout-resilience than existing schemes. The simplicity of our scheme makes it attractive both for implementation and for further improvements.
URI: https://hdl.handle.net/10356/161735
DOI: 10.32657/10356/161735
Schools: School of Computer Science and Engineering 
Rights: This work is licensed under a Creative Commons Attribution-NonCommercial 4.0 International License (CC BY-NC 4.0).
Fulltext Permission: open
Fulltext Availability: With Fulltext
Appears in Collections:SCSE Theses

Files in This Item:
File Description SizeFormat 
Thesis.pdf2.22 MBAdobe PDFThumbnail
View/Open

Page view(s)

357
Updated on Dec 14, 2024

Download(s) 20

245
Updated on Dec 14, 2024

Google ScholarTM

Check

Altmetric


Plumx

Items in DR-NTU are protected by copyright, with all rights reserved, unless otherwise indicated.