Parametric and Probabilistic Model Checking of Confidentiality in Data Dispersal Algorithms (Extended Version)
Marco Baldi, Alessandro Cucchiarelli, Linda Senigagliesi, Luca, Spalazzi, Francesco Spegni

TL;DR
This paper introduces a unified probabilistic model checking framework to evaluate confidentiality in data dispersal algorithms within distributed cloud storage, analyzing different attacker models and their impact on system security.
Contribution
It presents a novel approach combining parametric and probabilistic model checking to assess confidentiality in dispersal algorithms against various attacker models.
Findings
High confidentiality against slice intruders regardless of storage nodes
Low confidentiality against provider intruders in small networks
Framework enables exhaustive security analysis of dispersal algorithms
Abstract
Recent developments in cloud storage architectures have originated new models of online storage as cooperative storage systems and interconnected clouds. Such distributed environments involve many organizations, thus ensuring confidentiality becomes crucial: only legitimate clients should recover the information they distribute among storage nodes. In this work we present a unified framework for verifying confidentiality of dispersal algorithms against probabilistic models of intruders. Two models of intruders are given, corresponding to different types of attackers: one aiming at intercepting as many slices of information as possible, and the other aiming at attacking the storage providers in the network. Both try to recover the original information, given the intercepted slices. By using probabilistic model checking, we can measure the degree of confidentiality of the system…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsCryptography and Data Security · Security and Verification in Computing · Distributed systems and fault tolerance
