Abstract

Protection of user data against data breaches in cloud applications and the potential security failures of the service providers coupled with heightened cloud user apprehension, have in no small degree defied measures taken to demystify cloud services as to unveil its enormous capacity and awesome benefits such as accessibility, availability, collaboration, to name a few. The security of the cloud infrastructure entails protecting cloud data from unauthorized access, preventing malicious programs from corrupting the virtual resource and ensuring the secure cloud data remains unintelligible to any unauthorized access or intrusion by malicious users. This paper is aimed at building a cryptographically secure cloud application environment. Its major objective is to design and implement an encryption system for protecting valuable data (such as passwords, messages, files) in the cloud environment. The design and implementation extended some basic security and privacy requirements including data confidentiality, integrity, and availability by considering fairness as a viable factor. This paper employed the Structured Systems Analysis and Design Methodology (SSADM) in the software development life. It evolves a novel cryptographically-secure cloud algorithm based on a proposed “Deciv Algorithm” tagged “D65- Enc” algorithm that would effectively hide meaningful user data from all external parties to a virtual network as well as the service provider by putting control in the hands of users. The algorithm is carefully crafted to frustrate any cryptanalyst, hacker or cybercriminal who would try to decipher the algorithm. This implementation is expected to assist cloud users in maintaining control over their data whether at rest or in transit within the cloud networks rather than outsource control to external vendors as usual. Moreover, this algorithm also improves the existing state of data privacy, and security in the cloud.

Highlights

  • For many decades, encryption has been used as a security measure to render data unintelligible to unauthorized parties

  • The software as a service (SaaS) based cryptographically secure cloud apps environment tagged “Pablo Cloud-Based Encryption System” has industry wide implications, and we have not attempted to deploy the app for any of the security concerned organizations in the course of the field survey or an industry, we believe that it would adapt with any state of the art cloud apps in the industry in respect to its potential capability to operate collaboratively or its amenability to current information technology haven being implemented and tested on an Internet hosting platform

  • The Encryption tools could be deployed by cloud users, participators of a virtual organization and other virtual world to secure their data at rest and on transit or their identity management in any advanced ICT network

Read more

Summary

Introduction

Encryption has been used as a security measure to render data unintelligible to unauthorized parties. Data have remained the most important resource to the user, and in a public cloud where communal computing and multitenancy are practiced, encryption is inevitable to ensure confidentiality and integrity of the transmitted data and as well as the data bank. Users with confidential data are gripped with fear of insecurity, even the service providers are not sure of the data security despite the encryption used. Where data security measures are implemented by cloud providers, users are not sufficiently assured sole ownership of control of their useful, confidential or classified sensitive data.

Objectives
Results
Conclusion
Full Text
Published version (Free)

Talk to us

Join us for a 30 min session where you can share your feedback and ask us any queries you have

Schedule a call