Please use this identifier to cite or link to this item:
http://hdl.handle.net/10397/90876
DC Field | Value | Language |
---|---|---|
dc.contributor | Department of Electronic and Information Engineering | - |
dc.contributor | Chinese Mainland Affairs Office | - |
dc.creator | Han, Z | - |
dc.creator | Hu, H | - |
dc.date.accessioned | 2021-09-03T02:34:46Z | - |
dc.date.available | 2021-09-03T02:34:46Z | - |
dc.identifier.issn | 0306-4379 | - |
dc.identifier.uri | http://hdl.handle.net/10397/90876 | - |
dc.language.iso | en | en_US |
dc.publisher | Pergamon Press | en_US |
dc.rights | © 2020 The Authors. Published by Elsevier Ltd. This is an open access article under the CC BY license (http://creativecommons.org/licenses/by/4.0/). | en_US |
dc.rights | The following publication Han, Z., & Hu, H. (2021). ProDB: A memory-secure database using hardware enclave and practical oblivious RAM. Information Systems, 96, 101681 is available at https://doi.org/10.1016/j.is.2020.101681 | en_US |
dc.subject | Access pattern | en_US |
dc.subject | Hardware-based security | en_US |
dc.subject | Oblivious RAM | en_US |
dc.subject | Path ORAM | en_US |
dc.subject | SaP ORAM | en_US |
dc.subject | Secure database | en_US |
dc.title | ProDB : a memory-secure database using hardware enclave and practical oblivious RAM | en_US |
dc.type | Journal/Magazine Article | en_US |
dc.identifier.volume | 96 | - |
dc.identifier.doi | 10.1016/j.is.2020.101681 | - |
dcterms.abstract | One key challenge for data owners to host their databases in the cloud is data privacy. In this paper, we first demonstrate that even with the most recent hardware-based security technology such as Intel SGX, a hypervisor can still sniff key database operations running in its guest virtual machine (VM) such as the frequency and type of SQL queries, by monitoring the access pattern of this VM's main and secondary memory. To ensure security against such access pattern monitoring attacks, we then propose ProDB, a minimal adaptation of a conventional DBMS with both hardware enclave and Oblivious RAM protocol. To enhance its performance for practical use, we also design a SQL-aware Path ORAM protocol called SaP ORAM, which optimizes the classic Path ORAM protocol under practical database workload. Through security analysis and extensive experimental results, we prove and show ProDB achieves high security and throughput on commodity cloud hosting servers. | - |
dcterms.accessRights | open access | en_US |
dcterms.bibliographicCitation | Information systems, Feb. 2021, v. 96, 101681 | - |
dcterms.isPartOf | Information systems | - |
dcterms.issued | 2021-02 | - |
dc.identifier.scopus | 2-s2.0-85095915622 | - |
dc.identifier.artn | 101681 | - |
dc.description.validate | 202109 bcvc | - |
dc.description.oa | Version of Record | en_US |
dc.identifier.FolderNumber | OA_Scopus/WOS | en_US |
dc.description.pubStatus | Published | en_US |
dc.description.oaCategory | CC | en_US |
Appears in Collections: | Journal/Magazine Article |
Files in This Item:
File | Description | Size | Format | |
---|---|---|---|---|
1-s2.0-S0306437920301332-main.pdf | 1.44 MB | Adobe PDF | View/Open |
Page views
129
Last Week
0
0
Last month
Citations as of May 11, 2025
Downloads
44
Citations as of May 11, 2025
SCOPUSTM
Citations
5
Citations as of May 15, 2025
WEB OF SCIENCETM
Citations
5
Citations as of May 15, 2025

Google ScholarTM
Check
Altmetric
Items in DSpace are protected by copyright, with all rights reserved, unless otherwise indicated.