Enforcing End-to-end Security for Remote Conference Applications
2024-05-23
会议录名称2024 IEEE SYMPOSIUM ON SECURITY AND PRIVACY (SP)
ISSN1081-6011
页码2630-2647
发表状态已发表
DOI10.1109/SP54263.2024.00236
摘要

Remote conference applications are increasingly widely used, but currently, their improper data encryption methods, proprietary implementations, and dial-in access cause concerns about privacy breaches. As such, there is a need for trustworthy and secure solutions for these production tools. In this paper, we present mTunnel, a transparent software layer in the host system for securing conference applications without sacrificing the key functionalities and convenience. The basic idea of mTunnel is to encrypt sensitive data, such as audio, video, text, etc., before it is obtained by untrusted application clients. mTunnel leverages the audio and video streaming capabilities of the conference applications to tunnel the encrypted content to the remote end. mTunnel involves a software framework to accommodate the media interception and representation through I/O virtualization based on virtual drivers. Moreover, mTunnel supports complete E2EE group conversations even in a mixed IP and public switched telephone network (PSTN). We implement mTunnel and evaluate it with several commercial products. Results show its feasibility and overhead.

关键词Anonymity Audio streaming Cryptography Data privacy Differential privacy Audio videos Data encryption Dial-in E2EE Encryption methods End-to-end security Privacy Privacy breaches Production tools Remote conference
会议名称45th IEEE Symposium on Security and Privacy, SP 2024
会议地点San Francisco, CA, USA
会议日期19-23 May 2024
URL查看原文
收录类别EI
语种英语
出版者Institute of Electrical and Electronics Engineers Inc.
EI入藏号20243817067196
EI主题词Video streaming
EI分类号1106.2 ; 1106.5 ; 1108 ; 1108.1 ; 1108.2 ; 716 Telecommunication ; Radar, Radio and Television ; 902.3 Legal Aspects ; 972.2
原始文献类型Conference article (CA)
来源库IEEE
引用统计
正在获取...
文献类型会议论文
条目标识符https://kms.shanghaitech.edu.cn/handle/2MSLDSTB/421369
专题信息科学与技术学院
信息科学与技术学院_PI研究组_杨智策组
信息科学与技术学院_硕士生
作者单位
1.School of Information Science and Technology, ShanghaiTech University, China
2.IoT Thrust, Information Hub, Hong Kong University of Science and Technology, Guangzhou
第一作者单位信息科学与技术学院
第一作者的第一单位信息科学与技术学院
推荐引用方式
GB/T 7714
Yuelin Liu,Huangxun Chen,Zhice Yang. Enforcing End-to-end Security for Remote Conference Applications[C]:Institute of Electrical and Electronics Engineers Inc.,2024:2630-2647.
条目包含的文件
文件名称/大小 文献类型 版本类型 开放类型 使用许可
个性服务
查看访问统计
谷歌学术
谷歌学术中相似的文章
[Yuelin Liu]的文章
[Huangxun Chen]的文章
[Zhice Yang]的文章
百度学术
百度学术中相似的文章
[Yuelin Liu]的文章
[Huangxun Chen]的文章
[Zhice Yang]的文章
必应学术
必应学术中相似的文章
[Yuelin Liu]的文章
[Huangxun Chen]的文章
[Zhice Yang]的文章
相关权益政策
暂无数据
收藏/分享
所有评论 (0)
暂无评论
 

除非特别说明,本系统中所有内容都受版权保护,并保留所有权利。