A Prospective Analysis of Security Vulnerabilities within Link Traversal-Based Query Processing (Extended Version)
Ruben Taelman, Ruben Verborgh

TL;DR
This paper analyzes security vulnerabilities in Link Traversal-based Query Processing (LTQP), identifying ten threats and proposing mitigations to enhance security in decentralized data querying environments.
Contribution
It provides the first comprehensive security threat analysis for LTQP, offering mitigation strategies and recommendations for developers and data publishers.
Findings
Identified 10 security threats in LTQP.
Proposed mitigation strategies for each threat.
Provided concrete recommendations for secure LTQP deployment.
Abstract
The societal and economical consequences surrounding Big Data-driven platforms have increased the call for decentralized solutions. However, retrieving and querying data in more decentralized environments requires fundamentally different approaches, whose properties are not yet well understood. Link Traversal-based Query Processing (LTQP) is a technique for querying over decentralized data networks, in which a client-side query engine discovers data by traversing links between documents. Since decentralized environments are potentially unsafe due to their non-centrally controlled nature, there is a need for client-side LTQP query engines to be resistant against security threats aimed at the query engine's host machine or the query initiator's personal data. As such, we have performed an analysis of potential security vulnerabilities of LTQP. This article provides an overview of security…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsData Quality and Management · Advanced Database Systems and Queries · Distributed systems and fault tolerance
