DocumentCode
2017190
Title
Obfuscation of sensitive data in network flows
Author
Riboni, Daniele ; Villani, Antonio ; Vitali, Domenico ; Bettini, Claudio ; Mancini, Luigi V.
Author_Institution
Dipt. di Inf. e Comun., Univ. degli Studi di Milano, Milan, Italy
fYear
2012
fDate
25-30 March 2012
Firstpage
2372
Lastpage
2380
Abstract
In the last decade, the release of network flows has gained significant popularity among researchers and networking communities. Indeed, network flows are a fundamental tool for modeling the network behavior, identifying security attacks, and validating research results. Unfortunately, due to the sensitive nature of network flows, security and privacy concerns discourage the publication of such datasets. On the one hand, existing techniques proposed to sanitize network flows do not provide any formal guarantees. On the other hand, microdata anonymization techniques are not directly applicable to network flows. In this paper, we propose a novel obfuscation technique for network flows that provides formal guarantees under realistic assumptions about the adversary´s knowledge. Our work is supported by extensive experiments with a large set of real network flows collected at an important Italian Tier II Autonomous System, hosting sensitive government and corporate sites. Experimental results show that our obfuscation technique preserves the utility of network flows for network traffic analysis.
Keywords
Internet; security of data; telecommunication traffic; Internet; Italian Tier II autonomous system; network behavior; network flows; network traffic; obfuscation; security attacks; sensitive data; Encryption; Fingerprint recognition; IP networks; Knowledge engineering; Vectors;
fLanguage
English
Publisher
ieee
Conference_Titel
INFOCOM, 2012 Proceedings IEEE
Conference_Location
Orlando, FL
ISSN
0743-166X
Print_ISBN
978-1-4673-0773-4
Type
conf
DOI
10.1109/INFCOM.2012.6195626
Filename
6195626
Link To Document