PASSAT: Single Password Authenticated Secret-Shared Intrusion-Tolerant Storage with Server Transparency
Kiavash Satvat, Maliheh Shirvanian, Nitesh Saxena

TL;DR
PASSAT is a practical, server-transparent system that enhances cloud storage security using secret sharing and user-managed authentication, without requiring cloud provider cooperation.
Contribution
It introduces PASSAT, a novel, application-transparent system that securely distributes files across multiple cloud providers using XOR secret sharing and user-held credentials.
Findings
Secure storage with less than k colluding providers
Efficient secret sharing with XOR scheme
No changes needed on cloud servers
Abstract
In this paper, we introduce PASSAT, a practical system to boost the security assurance delivered by the current cloud architecture without requiring any changes or cooperation from the cloud service providers. PASSAT is an application transparent to the cloud servers that allows users to securely and efficiently store and access their files stored on public cloud storage based on a single master password. Using a fast and light-weight XOR secret sharing scheme, PASSAT secret-shares users' files and distributes them among n publicly available cloud platforms. To access the files, PASSAT communicates with any k out of n cloud platforms to receive the shares and runs a secret-sharing reconstruction algorithm to recover the files. An attacker (insider or outsider) who compromises or colludes with less than k platforms cannot learn the user's files or modify the files stealthily. To…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsCloud Data Security Solutions · Cryptography and Data Security · Blockchain Technology Applications and Security
