计算机科学
访问控制
信息流
加密
可用性
计算机安全
信息共享
互联网
信息敏感性
计算机网络
互联网隐私
万维网
语言学
人机交互
哲学
作者
Donghui Hu,Chunya Hu,Yuqi Fan,Xintao Wu
标识
DOI:10.1109/tdsc.2018.2875697
摘要
Internet users receive various online social networks (OSNs) services, however, providers of OSNs do not always provide users fine-grained privacy protection mechanisms with sufficient privacy protection for shared resources. In this paper, we propose a formal Group-Based Access Control (oGBAC) framework for preventing privacy disclosure when sharing information within or among groups in OSNs. Our framework extends the group-centric Secure Information Sharing (g-SIS) models by adapting the concept of the group to OSNs. We impose some restrictions to the group and information flow among groups to ensure that operations cannot incur privacy disclosure when sharing information among friends in OSNs. In view of characteristics of OSNs and the requirements of secure information flow, the oGBAC model also incorporates some ideas from the Attribute-Based Access Control (ABAC) to develop information flow based rules using relationship among attributes (such as tags, time and security levels) of objects and subjects in OSNs. Administration related rules and access related rules are designed for each access operation of group based OSNs' information sharing. The security of oGBAC model is analyzed using formal methods. To demonstrate the usability of the oGBAC model, we implement the model with the Comparative Attribute-Based Encryption (CCP-CABE), and analyze the security and efficiency of the implemented system to prove the effectiveness of the implemented system.
科研通智能强力驱动
Strongly Powered by AbleSci AI