Browsing by Author "Regueiro, Cristina"
Now showing 1 - 3 of 3
Results Per Page
Sort Options
Item A Blockchain-Based Audit Trail Mechanism: Design and Implementation: Design and implementation(2021-11-26) Regueiro, Cristina; Seco, Iñaki; Gutiérrez-Agüero, Iván; Urquizu, Borja; Mansell, Jason; Tecnalia Research & Innovation; CIBERSEC&DLTAudit logs are a critical component in today’s enterprise business systems as they provide several benefits such as records transparency and integrity and security of sensitive information by creating a layer of evidential support. However, current implementations are vulnerable to attacks on data integrity or availability. This paper presents a Blockchain-based audit trail mechanism that leverages the security features of Blockchain to enable secure and reliable audit trails and to address the aforementioned vulnerabilities. The architecture design and specific implementation are described in detail, resulting in a real prototype of a reliable, secure, and user-friendly audit trail mechanism.Item Enabling Identity for the IoT-as-a-Service Business Model(2021-11) de Diego, Santiago; Regueiro, Cristina; Macia-Fernandez, Gabriel; CIBERSEC&DLTThe IoT-as-a-Service (IoTaaS) business model has already been identified by some people from both industry and academia, but has not been formally defined. IoTaaS offers IoT devices on demand, with considerable cost savings and resource optimization. In addition, it enables different applications to reuse the existing devices. However, this business model is associated with different technological challenges that need to be addressed, one of which is the identity problem. Focusing on this, self-sovereign identity (SSI) schemes have proven to provide better privacy and scalability than traditional identity paradigms, which is especially important in the IoT owing to its characteristics. In this paper, we formally analyze an IoTaaS business model, identifying and detailing its main technological challenges. In addition, we tackle the identity problem of this business model and propose an SSI-based identity management system, which is compliant with the existing standards from the W3C, and include a performance evaluation.Item Privacy-enhancing distributed protocol for data aggregation based on blockchain and homomorphic encryption(2021-11) Regueiro, Cristina; Seco, Iñaki; de Diego, Santiago; Lage, Oscar; Etxebarria, Leire; CIBERSEC&DLT; Tecnalia Research & InnovationThe recent increase in reported incidents of security breaches compromising users' privacy call into question the current centralized model in which third-parties collect and control massive amounts of personal data. Blockchain has demonstrated that trusted and auditable computing is possible using a decentralized network of peers accompanied by a public ledger. Furthermore, Homomorphic Encryption (HE) guarantees confidentiality not only on the computation but also on the transmission, and storage processes. The synergy between Blockchain and HE is rapidly increasing in the computing environment. This research proposes a privacy-enhancing distributed and secure protocol for data aggregation backboned by Blockchain and HE technologies. Blockchain acts as a distributed ledger which facilitates efficient data aggregation through a Smart Contract. On the top, HE will be used for data encryption allowing private aggregation operations. The theoretical description, potential applications, a suggested implementation and a performance analysis are presented to validate the proposed solution.