Encrypted Traffic Analytic Using Identity Based Encryption with Equality Test for Cloud Computing

Seth Alornyo,Michael Asante,Xiong Hu,Kingsford Kissi Mireku
DOI: https://doi.org/10.1109/icastech.2018.8507063
2018-01-01
Abstract:In this paper, the concept of identity based encryption with equality test (IBEET) was used to propose a new scheme for malware detection and verifiability of encrypted data. The use of encrypted data by malware poses new challenges to network threat detection because adversaries are able to encrypt malicious data to the cloud which pose a threat to receivers of the encrypted data and the cloud service provider. The flow metadata which includes the number of inbound bytes, outbound bytes, inbound packet, outbound packets, source and destination ports and the total duration of the flow in seconds of an encrypted data is used to compute a trapdoor for detecting a malware of an encrypted data.The flow metadata computed is sent to a private agent known as malware analytic provider (MAP) to check whether the trapdoor generated from a 3-way handshake between a client and a server matches to a normal handshake scheme of a specific traffic. If there is a mismatch, the ciphertext is rejected otherwise, ciphertext sent to an outsourced cloud service provider for storage.We refer to our scheme as encrypted traffic analytic using identity based encryption with equality test (ETA-IBEET).Our approach was instantiated using Bilinear map and Bilinear Diffie-Hellman (BDH) assumption to define one-way chosen-ciphertext security against a chosen identity attack (OW-ID-CCA)
What problem does this paper attempt to address?