{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,23]],"date-time":"2026-06-23T22:46:25Z","timestamp":1782254785059,"version":"3.54.5"},"publisher-location":"New York, NY, USA","reference-count":99,"publisher":"ACM","license":[{"start":{"date-parts":[[2014,11,7]],"date-time":"2014-11-07T00:00:00Z","timestamp":1415318400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/www.acm.org\/publications\/policies\/copyright_policy#Background"}],"funder":[{"DOI":"10.13039\/501100000266","name":"Engineering and Physical Sciences Research Council","doi-asserted-by":"publisher","award":["EP\/K008129\/1"],"award-info":[{"award-number":["EP\/K008129\/1"]}],"id":[{"id":"10.13039\/501100000266","id-type":"DOI","asserted-by":"publisher"}]}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2014,11,7]]},"DOI":"10.1145\/2664168.2664174","type":"proceedings-article","created":{"date-parts":[[2014,11,7]],"date-time":"2014-11-07T17:10:54Z","timestamp":1415380254000},"page":"117-128","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":20,"title":["CloudSafetyNet"],"prefix":"10.1145","author":[{"given":"Christian","family":"Priebe","sequence":"first","affiliation":[{"name":"TU Braunschweig, Braunschweig, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Divya","family":"Muthukumaran","sequence":"additional","affiliation":[{"name":"Imperial College London, London, United Kingdom"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Dan","family":"O' Keeffe","sequence":"additional","affiliation":[{"name":"Imperial College London, London, United Kingdom"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"David","family":"Eyers","sequence":"additional","affiliation":[{"name":"University of Otago, Dunedin, New Zealand"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Brian","family":"Shand","sequence":"additional","affiliation":[{"name":"NCRS, Public Health England, Cambridge, United Kingdom"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ruediger","family":"Kapitza","sequence":"additional","affiliation":[{"name":"TU Braunschweig, Braunschweig, Germany"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Peter","family":"Pietzuch","sequence":"additional","affiliation":[{"name":"Imperial College London, London, United Kingdom"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"320","published-online":{"date-parts":[[2014,11,7]]},"reference":[{"key":"e_1_3_2_1_1_1","unstructured":"National vulnerability database. http:\/\/nvd.nist.gov\/.  National vulnerability database. http:\/\/nvd.nist.gov\/."},{"key":"e_1_3_2_1_2_1","unstructured":"Open source vulnerability database. http:\/\/osvdb.org\/.  Open source vulnerability database. http:\/\/osvdb.org\/."},{"key":"e_1_3_2_1_3_1","unstructured":"Secunia. http:\/\/secunia.com\/community\/advisories\/.  Secunia. http:\/\/secunia.com\/community\/advisories\/."},{"key":"e_1_3_2_1_4_1","volume-title":"VLDB","author":"AGRAWAL R.","year":"2002","unstructured":"AGRAWAL , R. , AND KIERNAN , J. Watermarking relational databases . In VLDB ( 2002 ). AGRAWAL, R., AND KIERNAN, J. Watermarking relational databases. In VLDB (2002)."},{"key":"e_1_3_2_1_5_1","unstructured":"AMAZON. AWS security center. http:\/\/aws.amazon.com\/elasticloadbalancing\/ 2014.  AMAZON. AWS security center. http:\/\/aws.amazon.com\/elasticloadbalancing\/ 2014."},{"key":"e_1_3_2_1_6_1","unstructured":"APACHEBENCH. Apache HTTP server benchmarking tool. http:\/\/httpd.apache.org\/docs\/2.2\/programs\/ab.html.  APACHEBENCH. Apache HTTP server benchmarking tool. http:\/\/httpd.apache.org\/docs\/2.2\/programs\/ab.html."},{"key":"e_1_3_2_1_7_1","unstructured":"APACHEJMETER. https:\/\/jmeter.apache.org\/.  APACHEJMETER. https:\/\/jmeter.apache.org\/."},{"key":"e_1_3_2_1_8_1","unstructured":"APPARMOUR. http:\/\/wiki.apparmour.net\/index.php\/Documentation\/.  APPARMOUR. http:\/\/wiki.apparmour.net\/index.php\/Documentation\/."},{"key":"e_1_3_2_1_9_1","unstructured":"APPSCALE. Add namespacing to Memcache. http:\/\/code.google.com\/p\/appscale\/issues\/detail?id=172 2010.  APPSCALE. Add namespacing to Memcache. http:\/\/code.google.com\/p\/appscale\/issues\/detail?id=172 2010."},{"key":"e_1_3_2_1_10_1","unstructured":"APPSCALE. Change AppServer to prevent file system access. http:\/\/code.google.com\/p\/appscale\/issues\/detail?id=167 2010.  APPSCALE. Change AppServer to prevent file system access. http:\/\/code.google.com\/p\/appscale\/issues\/detail?id=167 2010."},{"key":"e_1_3_2_1_11_1","unstructured":"APPSCALE. Autoscaling in AppScale. http:\/\/www.appscale.com\/blog\/2013\/11\/02\/autoscaling-in-appscale\/ 2013.  APPSCALE. Autoscaling in AppScale. http:\/\/www.appscale.com\/blog\/2013\/11\/02\/autoscaling-in-appscale\/ 2013."},{"key":"e_1_3_2_1_12_1","volume-title":"OSDI","author":"BANGA G.","year":"1999","unstructured":"BANGA , G. , DRUSCHEL , P. , AND MOGUL , J. C. Resource containers: A new facility for resource management in server systems . In OSDI ( 1999 ). BANGA, G., DRUSCHEL, P., AND MOGUL, J. C. Resource containers: A new facility for resource management in server systems. In OSDI (1999)."},{"key":"e_1_3_2_1_13_1","doi-asserted-by":"publisher","DOI":"10.1145\/362686.362692"},{"key":"e_1_3_2_1_14_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-12636-9_4"},{"key":"e_1_3_2_1_15_1","unstructured":"CLOUD SECURITY ALLIANCE. Cloud computing vulnerability incidents: A statistical overview. http:\/\/goo.gl\/oaQYaH 2013.  CLOUD SECURITY ALLIANCE. Cloud computing vulnerability incidents: A statistical overview. http:\/\/goo.gl\/oaQYaH 2013."},{"key":"e_1_3_2_1_16_1","volume-title":"https:\/\/www.cloudfoundry.com\/","author":"CLOUDFOUNDRY.","year":"2014","unstructured":"CLOUDFOUNDRY. https:\/\/www.cloudfoundry.com\/ , 2014 . CLOUDFOUNDRY. https:\/\/www.cloudfoundry.com\/, 2014."},{"key":"e_1_3_2_1_17_1","volume-title":"http:\/\/cloudstack.apache.org\/","author":"CLOUDSTACK.","year":"2014","unstructured":"CLOUDSTACK. http:\/\/cloudstack.apache.org\/ , 2014 . CLOUDSTACK. http:\/\/cloudstack.apache.org\/, 2014."},{"key":"e_1_3_2_1_18_1","unstructured":"COMPUTERWEEKLY. Cloud revenues to touch $20bn by 2016 with PaaS as the fastest growing segment. http:\/\/goo.gl\/spqRMF 2013.  COMPUTERWEEKLY. Cloud revenues to touch $20bn by 2016 with PaaS as the fastest growing segment. http:\/\/goo.gl\/spqRMF 2013."},{"key":"e_1_3_2_1_19_1","volume-title":"Introduction to Java Multitenancy. https:\/\/www.ibm.com\/developerworks\/java\/library\/j-multitenant-java\/","author":"DAWSON G.","year":"2013","unstructured":"DAWSON , G. , AND DAWSON , M. Introduction to Java Multitenancy. https:\/\/www.ibm.com\/developerworks\/java\/library\/j-multitenant-java\/ , 2013 . DAWSON, G., AND DAWSON, M. Introduction to Java Multitenancy. https:\/\/www.ibm.com\/developerworks\/java\/library\/j-multitenant-java\/, 2013."},{"key":"e_1_3_2_1_20_1","volume-title":"http:\/\/deis.io","author":"DEIS.","year":"2014","unstructured":"DEIS. http:\/\/deis.io , 2014 . DEIS. http:\/\/deis.io, 2014."},{"key":"e_1_3_2_1_21_1","volume-title":"Digital Ocean API is not told to scrub (securely delete) VM on destroy. https:\/\/github.com\/fog\/fog\/issues\/2525","author":"DIGITALOCEAN.","year":"2013","unstructured":"DIGITALOCEAN. Digital Ocean API is not told to scrub (securely delete) VM on destroy. https:\/\/github.com\/fog\/fog\/issues\/2525 , 2013 . DIGITALOCEAN. Digital Ocean API is not told to scrub (securely delete) VM on destroy. https:\/\/github.com\/fog\/fog\/issues\/2525, 2013."},{"key":"e_1_3_2_1_22_1","volume-title":"https:\/\/www.docker.io\/","author":"DOCKER.","year":"2014","unstructured":"DOCKER. https:\/\/www.docker.io\/ , 2014 . DOCKER. https:\/\/www.docker.io\/, 2014."},{"key":"e_1_3_2_1_23_1","volume-title":"https:\/\/github.com\/progrium\/dokku","author":"DOKKU.","year":"2014","unstructured":"DOKKU. https:\/\/github.com\/progrium\/dokku , 2014 . DOKKU. https:\/\/github.com\/progrium\/dokku, 2014."},{"key":"e_1_3_2_1_24_1","volume-title":"http:\/\/www.w3.org\/","author":"DOM","year":"2014","unstructured":"DOM . The Document Object Model. http:\/\/www.w3.org\/ , 2014 . DOM. The Document Object Model. http:\/\/www.w3.org\/, 2014."},{"key":"e_1_3_2_1_25_1","volume-title":"The Dropbox Blog: Yesterday's Authentication Bug. https:\/\/blog.dropbox.com\/2011\/06\/yesterdaysauthentication-bug\/","author":"DROPBOX.","year":"2011","unstructured":"DROPBOX. The Dropbox Blog: Yesterday's Authentication Bug. https:\/\/blog.dropbox.com\/2011\/06\/yesterdaysauthentication-bug\/ , 2011 . DROPBOX. The Dropbox Blog: Yesterday's Authentication Bug. https:\/\/blog.dropbox.com\/2011\/06\/yesterdaysauthentication-bug\/, 2011."},{"key":"e_1_3_2_1_26_1","volume-title":"LSS: Secure Linux containers. https:\/\/lwn.net\/Articles\/515034\/","author":"EDGE J.","year":"2012","unstructured":"EDGE , J. LSS: Secure Linux containers. https:\/\/lwn.net\/Articles\/515034\/ , 2012 . EDGE, J. LSS: Secure Linux containers. https:\/\/lwn.net\/Articles\/515034\/, 2012."},{"key":"e_1_3_2_1_27_1","volume-title":"http:\/\/www.fastcgi.com\/","author":"FASTCGI.","year":"2014","unstructured":"FASTCGI. http:\/\/www.fastcgi.com\/ , 2014 . FASTCGI. http:\/\/www.fastcgi.com\/, 2014."},{"key":"e_1_3_2_1_28_1","unstructured":"FOFOU. http:\/\/blog.kowalczyk.info\/software\/fofou\/.  FOFOU. http:\/\/blog.kowalczyk.info\/software\/fofou\/."},{"key":"e_1_3_2_1_29_1","unstructured":"FOUNDATION A. S. Apache module mod_so LoadFile directive. http:\/\/httpd.apache.org\/docs\/2.2\/mod\/mod_so.html 2014.  FOUNDATION A. S. Apache module mod_so LoadFile directive. http:\/\/httpd.apache.org\/docs\/2.2\/mod\/mod_so.html 2014."},{"key":"e_1_3_2_1_30_1","volume-title":"Financial services information sharing and analysis center. https:\/\/www.fsisac.com","author":"FSISAC.","year":"2014","unstructured":"FSISAC. Financial services information sharing and analysis center. https:\/\/www.fsisac.com , 2014 . FSISAC. Financial services information sharing and analysis center. https:\/\/www.fsisac.com, 2014."},{"key":"e_1_3_2_1_31_1","doi-asserted-by":"publisher","DOI":"10.1287\/isre.1050.0053"},{"key":"e_1_3_2_1_32_1","doi-asserted-by":"publisher","DOI":"10.1145\/2382536.2382549"},{"key":"e_1_3_2_1_33_1","doi-asserted-by":"publisher","DOI":"10.1145\/1165389.945464"},{"key":"e_1_3_2_1_34_1","unstructured":"GARRETT J. J. Ajax: A new approach to web applications. http:\/\/www.adaptivepath.com\/ideas\/ajax-newapproach-web-applications\/ 2005.  GARRETT J. J. Ajax: A new approach to web applications. http:\/\/www.adaptivepath.com\/ideas\/ajax-newapproach-web-applications\/ 2005."},{"key":"e_1_3_2_1_35_1","doi-asserted-by":"publisher","DOI":"10.1145\/1536414.1536440"},{"key":"e_1_3_2_1_36_1","volume-title":"https:\/\/developers.google.com\/appengine\/","author":"GOOGLE","year":"2014","unstructured":"GOOGLE . Google AppEngine. https:\/\/developers.google.com\/appengine\/ , 2014 . GOOGLE. Google AppEngine. https:\/\/developers.google.com\/appengine\/, 2014."},{"key":"e_1_3_2_1_37_1","volume-title":"Google AppEngine Memcache Java API overview. https:\/\/developers.google.com\/appengine\/docs\/java\/memcache\/","author":"GOOGLE.","year":"2014","unstructured":"GOOGLE. Google AppEngine Memcache Java API overview. https:\/\/developers.google.com\/appengine\/docs\/java\/memcache\/ , 2014 . GOOGLE. Google AppEngine Memcache Java API overview. https:\/\/developers.google.com\/appengine\/docs\/java\/memcache\/, 2014."},{"key":"e_1_3_2_1_38_1","volume-title":"Implementing multitenancy using namespaces. https:\/\/developers.google.com\/appengine\/docs\/java\/multitenancy\/multitenancy","author":"GOOGLE.","year":"2014","unstructured":"GOOGLE. Implementing multitenancy using namespaces. https:\/\/developers.google.com\/appengine\/docs\/java\/multitenancy\/multitenancy , 2014 . GOOGLE. Implementing multitenancy using namespaces. https:\/\/developers.google.com\/appengine\/docs\/java\/multitenancy\/multitenancy, 2014."},{"key":"e_1_3_2_1_39_1","volume-title":"The JRE class white list. https:\/\/developers. google.com\/appengine\/docs\/java\/jrewhitelist","author":"GOOGLE.","year":"2014","unstructured":"GOOGLE. The JRE class white list. https:\/\/developers. google.com\/appengine\/docs\/java\/jrewhitelist , 2014 . GOOGLE. The JRE class white list. https:\/\/developers. google.com\/appengine\/docs\/java\/jrewhitelist, 2014."},{"key":"e_1_3_2_1_40_1","volume-title":"Storing data in Google AppEngine. https:\/\/developers.google.com\/appengine\/docs\/python\/storage","author":"GOOGLE.","year":"2014","unstructured":"GOOGLE. Storing data in Google AppEngine. https:\/\/developers.google.com\/appengine\/docs\/python\/storage , 2014 . GOOGLE. Storing data in Google AppEngine. https:\/\/developers.google.com\/appengine\/docs\/python\/storage, 2014."},{"key":"e_1_3_2_1_41_1","doi-asserted-by":"publisher","DOI":"10.1145\/1773912.1773926"},{"key":"e_1_3_2_1_42_1","volume-title":"Accountable virtual machines. OSDI","author":"HAEBERLEN A.","year":"2010","unstructured":"HAEBERLEN , A. , ADITYA , P. , RODRIGUES , R. , AND DRUSCHEL , P. Accountable virtual machines. OSDI ( 2010 ). HAEBERLEN, A., ADITYA, P., RODRIGUES, R., AND DRUSCHEL, P. Accountable virtual machines. OSDI (2010)."},{"key":"e_1_3_2_1_43_1","doi-asserted-by":"publisher","DOI":"10.1145\/1323293.1294279"},{"key":"e_1_3_2_1_44_1","volume-title":"USENIX Virtual Machine Research and Technology Symposium","author":"HALDAR V.","year":"2004","unstructured":"HALDAR , V. , CHANDRA , D. , AND FRANZ , M. Semantic remote attestation: a virtual machine directed approach to trusted computing . In USENIX Virtual Machine Research and Technology Symposium ( 2004 ). HALDAR, V., CHANDRA, D., AND FRANZ, M. Semantic remote attestation: a virtual machine directed approach to trusted computing. In USENIX Virtual Machine Research and Technology Symposium (2004)."},{"key":"e_1_3_2_1_45_1","volume-title":"http:\/\/haproxy.1wt.eu","author":"HAPROXY.","year":"2014","unstructured":"HAPROXY. http:\/\/haproxy.1wt.eu , 2014 . HAPROXY. http:\/\/haproxy.1wt.eu, 2014."},{"key":"e_1_3_2_1_46_1","doi-asserted-by":"publisher","DOI":"10.1109\/5.771066"},{"key":"e_1_3_2_1_47_1","volume-title":"http:\/\/stopdisablingselinux.com\/","author":"HAYDEN M.","year":"2014","unstructured":"HAYDEN , M. http:\/\/stopdisablingselinux.com\/ , 2014 . HAYDEN, M. http:\/\/stopdisablingselinux.com\/, 2014."},{"key":"e_1_3_2_1_48_1","unstructured":"IDG ENTERPRISE. Cloud computing survey. http:\/\/goo.gl\/hGDus0 2012.  IDG ENTERPRISE. Cloud computing survey. http:\/\/goo.gl\/hGDus0 2012."},{"key":"e_1_3_2_1_49_1","unstructured":"ITISAC. Information technology information sharing and analysis center. http:\/\/www.it-isac.org 2014.  ITISAC. Information technology information sharing and analysis center. http:\/\/www.it-isac.org 2014."},{"key":"e_1_3_2_1_50_1","volume-title":"AND SHMATIKOV","author":"JANA S.","year":"2011","unstructured":"JANA , S. , AND SHMATIKOV , V. EVE : Verifying correct execution of cloud-hosted web applications. In HotCloud ( 2011 ). JANA, S., AND SHMATIKOV, V. EVE: Verifying correct execution of cloud-hosted web applications. In HotCloud (2011)."},{"key":"e_1_3_2_1_51_1","unstructured":"KERRISK M. Namespaces in operation part 5: User namespaces. http:\/\/lwn.net\/Articles\/532593\/ 2013.  KERRISK M. Namespaces in operation part 5: User namespaces. http:\/\/lwn.net\/Articles\/532593\/ 2013."},{"key":"e_1_3_2_1_52_1","doi-asserted-by":"publisher","DOI":"10.1145\/1323293.1294293"},{"key":"e_1_3_2_1_53_1","volume-title":"http:\/\/www.lighttpd.net","author":"LIGHTTPD.","year":"2014","unstructured":"LIGHTTPD. http:\/\/www.lighttpd.net , 2014 . LIGHTTPD. http:\/\/www.lighttpd.net, 2014."},{"key":"e_1_3_2_1_54_1","volume-title":"http:\/\/linuxcontainers.org","author":"LXC","year":"2014","unstructured":"LXC . Linux Containers. http:\/\/linuxcontainers.org , 2014 . LXC. Linux Containers. http:\/\/linuxcontainers.org, 2014."},{"key":"e_1_3_2_1_55_1","unstructured":"MARNIX DEKKER DIMITRA LIVERI M. L. Incident reporting for cloud computing. http:\/\/www.enisa.europa.eu\/activities\/Resilience-and-CIIP\/cloudcomputing\/incident-reporting-for-cloud-computing 2010.  MARNIX DEKKER DIMITRA LIVERI M. L. Incident reporting for cloud computing. http:\/\/www.enisa.europa.eu\/activities\/Resilience-and-CIIP\/cloudcomputing\/incident-reporting-for-cloud-computing 2010."},{"key":"e_1_3_2_1_56_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.17"},{"key":"e_1_3_2_1_57_1","volume-title":"NSDI","author":"MICHALAKIS N.","year":"2007","unstructured":"MICHALAKIS , N. , SOUL\u00c9 , R. , AND GRIMM , R. Ensuring content integrity for untrusted peer-to-peer content distribution networks . In NSDI ( 2007 ). MICHALAKIS, N., SOUL\u00c9, R., AND GRIMM, R. Ensuring content integrity for untrusted peer-to-peer content distribution networks. In NSDI (2007)."},{"key":"e_1_3_2_1_58_1","volume-title":"Middleware","author":"MIGLIAVACCA M.","year":"2010","unstructured":"MIGLIAVACCA , M. , PAPAGIANNIS , I. , EYERS , D. M. , SHAND , B. , BACON , J. , AND PIETZUCH , P. Distributed middleware enforcement of event flow security policy . In Middleware ( 2010 ). MIGLIAVACCA, M., PAPAGIANNIS, I., EYERS, D. M., SHAND, B., BACON, J., AND PIETZUCH, P. Distributed middleware enforcement of event flow security policy. In Middleware (2010)."},{"key":"e_1_3_2_1_59_1","unstructured":"MORGAN A. G. AND KUKUK T. The Linux-PAM System Administrator's Guide. http:\/\/www.linuxpam.org\/Linux-PAM-html\/Linux-PAM%5FSAG.html 2010.  MORGAN A. G. AND KUKUK T. The Linux-PAM System Administrator's Guide. http:\/\/www.linuxpam.org\/Linux-PAM-html\/Linux-PAM%5FSAG.html 2010."},{"key":"e_1_3_2_1_60_1","volume-title":"HotCloud","author":"MUNDADA Y.","year":"2011","unstructured":"MUNDADA , Y. , RAMACHANDRAN , A. , AND FEAMSTER , N. SilverLine: data and network isolation for cloud services . In HotCloud ( 2011 ). MUNDADA, Y., RAMACHANDRAN, A., AND FEAMSTER, N. SilverLine: data and network isolation for cloud services. In HotCloud (2011)."},{"key":"e_1_3_2_1_61_1","doi-asserted-by":"publisher","DOI":"10.1145\/1346256.1346278"},{"key":"e_1_3_2_1_62_1","volume-title":"https:\/\/www.openshift.com\/","author":"OPENSHIFT.","year":"2014","unstructured":"OPENSHIFT. https:\/\/www.openshift.com\/ , 2014 . OPENSHIFT. https:\/\/www.openshift.com\/, 2014."},{"key":"e_1_3_2_1_63_1","unstructured":"OPENSHIFT. External load balancing in OpenShift. http:\/\/goo.gl\/aLZVQN 2014.  OPENSHIFT. External load balancing in OpenShift. http:\/\/goo.gl\/aLZVQN 2014."},{"key":"e_1_3_2_1_64_1","volume-title":"The future of OpenShift and Docker containers. https:\/\/www.openshift.com\/blogs\/thefuture-of-openshift-and-docker-containers","author":"OPENSHIFT.","year":"2014","unstructured":"OPENSHIFT. The future of OpenShift and Docker containers. https:\/\/www.openshift.com\/blogs\/thefuture-of-openshift-and-docker-containers , 2014 . OPENSHIFT. The future of OpenShift and Docker containers. https:\/\/www.openshift.com\/blogs\/thefuture-of-openshift-and-docker-containers, 2014."},{"key":"e_1_3_2_1_65_1","volume-title":"http:\/\/openshift.github.io\/documentation\/oo_system_architecture_guide.html","author":"OPENSHIFT","year":"2014","unstructured":"OPENSHIFT . OpenShift Gears. http:\/\/openshift.github.io\/documentation\/oo_system_architecture_guide.html , 2014 . OPENSHIFT. OpenShift Gears. http:\/\/openshift.github.io\/documentation\/oo_system_architecture_guide.html, 2014."},{"key":"e_1_3_2_1_66_1","volume-title":"http:\/\/openvz.org","author":"OPENVZ.","year":"2014","unstructured":"OPENVZ. http:\/\/openvz.org , 2014 . OPENVZ. http:\/\/openvz.org, 2014."},{"key":"e_1_3_2_1_67_1","volume-title":"USENIX WebApps","author":"PAPAGIANNIS I.","year":"2011","unstructured":"PAPAGIANNIS , I. , MIGLIAVACCA , M. , AND PIETZUCH , P. PHP Aspis: using partial taint tracking to protect against injection attacks . In USENIX WebApps ( 2011 ). PAPAGIANNIS, I., MIGLIAVACCA, M., AND PIETZUCH, P. PHP Aspis: using partial taint tracking to protect against injection attacks. In USENIX WebApps (2011)."},{"key":"e_1_3_2_1_68_1","volume-title":"Research in Attacks, Intrusions, and Defenses","author":"PAPPAS V.","year":"2013","unstructured":"PAPPAS , V. , KEMERLIS , V. P. , ZAVOU , A. , ET AL . CloudFence: data flow tracking as a cloud service . In Research in Attacks, Intrusions, and Defenses . Springer , 2013 . PAPPAS, V., KEMERLIS, V. P., ZAVOU, A., ET AL. CloudFence: data flow tracking as a cloud service. In Research in Attacks, Intrusions, and Defenses. Springer, 2013."},{"key":"e_1_3_2_1_69_1","unstructured":"PCWORLD. Microsoft BPOS service hit with data breach. http:\/\/goo.gl\/xLuPAZ 2010.  PCWORLD. Microsoft BPOS service hit with data breach. http:\/\/goo.gl\/xLuPAZ 2010."},{"key":"e_1_3_2_1_70_1","volume-title":"USENIX Security","author":"PEREZ R.","year":"2006","unstructured":"PEREZ , R. , SAILER , R. , AND VAN DOORN , L. vTPM: virtualizing the trusted platform module . In USENIX Security ( 2006 ). PEREZ, R., SAILER, R., AND VAN DOORN, L. vTPM: virtualizing the trusted platform module. In USENIX Security (2006)."},{"key":"e_1_3_2_1_71_1","volume-title":"USENIX ATC","author":"PETER LOSCOCCO N. S.","year":"2001","unstructured":"PETER LOSCOCCO , N. S. A. Integrating flexible support for security policies into the linux operating system . In USENIX ATC ( 2001 ). PETER LOSCOCCO, N. S. A. Integrating flexible support for security policies into the linux operating system. In USENIX ATC (2001)."},{"key":"e_1_3_2_1_72_1","unstructured":"PHAM T. The importance of information-sharing in countering security threats. http:\/\/goo.gl\/Iz4HmB 2014.  PHAM T. The importance of information-sharing in countering security threats. http:\/\/goo.gl\/Iz4HmB 2014."},{"key":"e_1_3_2_1_73_1","volume-title":"https:\/\/www.pidder.de\/pidcrypt","author":"PIDCRYPT.","year":"2014","unstructured":"PIDCRYPT. https:\/\/www.pidder.de\/pidcrypt , 2014 . PIDCRYPT. https:\/\/www.pidder.de\/pidcrypt, 2014."},{"key":"e_1_3_2_1_74_1","unstructured":"PONEMON INSTITUTE. Security of cloud computing providers study. http:\/\/goo.gl\/SkT3Jx 2011.  PONEMON INSTITUTE. Security of cloud computing providers study. http:\/\/goo.gl\/SkT3Jx 2011."},{"key":"e_1_3_2_1_75_1","doi-asserted-by":"publisher","DOI":"10.1145\/2043556.2043566"},{"key":"e_1_3_2_1_76_1","doi-asserted-by":"publisher","DOI":"10.1145\/2038916.2038926"},{"key":"e_1_3_2_1_77_1","unstructured":"REED J. Following incidents into the cloud. http:\/\/www.sans.org\/readingroom\/whitepapers\/incident\/incidents-cloud-33619 2010.  REED J. Following incidents into the cloud. http:\/\/www.sans.org\/readingroom\/whitepapers\/incident\/incidents-cloud-33619 2010."},{"key":"e_1_3_2_1_78_1","doi-asserted-by":"publisher","DOI":"10.1145\/1653662.1653687"},{"key":"e_1_3_2_1_79_1","volume-title":"USENIX Security","volume":"13","author":"SAILER R.","year":"2004","unstructured":"SAILER , R. , ZHANG , X. , JAEGER , T. , AND VAN DOORN , L. Design and implementation of a TCG-based integrity measurement architecture . In USENIX Security ( 2004 ), vol. 13 . SAILER, R., ZHANG, X., JAEGER, T., AND VAN DOORN, L. Design and implementation of a TCG-based integrity measurement architecture. In USENIX Security (2004), vol. 13."},{"key":"e_1_3_2_1_80_1","volume-title":"USENIX Security","author":"SANTOS N.","year":"2012","unstructured":"SANTOS , N. , RODRIGUES , R. , GUMMADI , K. P. , AND SAROIU , S. Policy-sealed data: A new abstraction for building trusted cloud services . In USENIX Security ( 2012 ). SANTOS, N., RODRIGUES, R., GUMMADI, K. P., AND SAROIU, S. Policy-sealed data: A new abstraction for building trusted cloud services. In USENIX Security (2012)."},{"key":"e_1_3_2_1_81_1","doi-asserted-by":"publisher","DOI":"10.1145\/1866835.1866843"},{"key":"e_1_3_2_1_82_1","doi-asserted-by":"publisher","DOI":"10.1145\/2465351.2465357"},{"key":"e_1_3_2_1_83_1","doi-asserted-by":"publisher","DOI":"10.1109\/SP.2010.26"},{"key":"e_1_3_2_1_84_1","volume-title":"Oddjob can't work. https:\/\/www.openshift. com\/forums\/openshift\/oddjob-cant-work","author":"SELINUX.","year":"2012","unstructured":"SELINUX. Oddjob can't work. https:\/\/www.openshift. com\/forums\/openshift\/oddjob-cant-work , 2012 . SELINUX. Oddjob can't work. https:\/\/www.openshift. com\/forums\/openshift\/oddjob-cant-work, 2012."},{"key":"e_1_3_2_1_85_1","doi-asserted-by":"publisher","DOI":"10.1145\/1095809.1095812"},{"key":"e_1_3_2_1_86_1","volume-title":"Swatt: Software-based attestation for embedded devices","author":"SESHADRI A.","year":"2004","unstructured":"SESHADRI , A. , PERRIG , A. , VAN DOORN , L. , AND KHOSLA , P. Swatt: Software-based attestation for embedded devices . In IEEE Security and Privacy (S &P) ( 2004 ). SESHADRI, A., PERRIG, A., VAN DOORN, L., AND KHOSLA, P. Swatt: Software-based attestation for embedded devices. In IEEE Security and Privacy (S&P) (2004)."},{"key":"e_1_3_2_1_87_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-642-36883-7_14"},{"key":"e_1_3_2_1_88_1","doi-asserted-by":"publisher","DOI":"10.1145\/2002259.2002283"},{"key":"e_1_3_2_1_89_1","unstructured":"TRUSTED COMPUTING GROUP. Collaborative defense. http:\/\/goo.gl\/3A7Ke8 2013.  TRUSTED COMPUTING GROUP. Collaborative defense. http:\/\/goo.gl\/3A7Ke8 2013."},{"key":"e_1_3_2_1_90_1","unstructured":"TRUSTED COMPUTING GROUP. Trusted Platform Module (TPM). http:\/\/www.trustedcomputinggroup.org\/ 2014.  TRUSTED COMPUTING GROUP. Trusted Platform Module (TPM). http:\/\/www.trustedcomputinggroup.org\/ 2014."},{"key":"e_1_3_2_1_91_1","volume-title":"OUP Oxford","author":"KUAN HON C. M.","year":"2013","unstructured":"W KUAN HON , C. M. , AND WALDEN , I. Cloud Computing Law . OUP Oxford , 2013 , ch. Negotiated Contracts for Cloud Services. W KUAN HON, C. M., AND WALDEN, I. Cloud Computing Law. OUP Oxford, 2013, ch. Negotiated Contracts for Cloud Services."},{"key":"e_1_3_2_1_92_1","volume-title":"https:\/\/www.wordpress.com","author":"WORDPRESS.","year":"2014","unstructured":"WORDPRESS. https:\/\/www.wordpress.com , 2014 . WORDPRESS. https:\/\/www.wordpress.com, 2014."},{"key":"e_1_3_2_1_93_1","doi-asserted-by":"publisher","DOI":"10.1145\/1629575.1629604"},{"key":"e_1_3_2_1_94_1","doi-asserted-by":"publisher","DOI":"10.1145\/1133572.1133585"},{"key":"e_1_3_2_1_95_1","volume-title":"HotDep","author":"YUMEREFENDI A. R.","year":"2005","unstructured":"YUMEREFENDI , A. R. , AND CHASE , J. S. The role of accountability in dependable distributed systems . In HotDep ( 2005 ). YUMEREFENDI, A. R., AND CHASE, J. S. The role of accountability in dependable distributed systems. In HotDep (2005)."},{"key":"e_1_3_2_1_96_1","doi-asserted-by":"publisher","DOI":"10.1145\/1288783.1288786"},{"key":"e_1_3_2_1_97_1","volume-title":"OSDI","author":"ZELDOVICH N.","year":"2006","unstructured":"ZELDOVICH , N. , BOYD-WICKIZER , S. , KOHLER , E. , AND MAZI\u00c3\u0139RES , D. Making information flow explicit in HiStar . In OSDI ( 2006 ). ZELDOVICH, N., BOYD-WICKIZER, S., KOHLER, E., AND MAZI\u00c3\u0139RES, D. Making information flow explicit in HiStar. In OSDI (2006)."},{"key":"e_1_3_2_1_98_1","volume-title":"NSDI","author":"ZELDOVICH N.","year":"2008","unstructured":"ZELDOVICH , N. , BOYD-WICKIZER , S. , AND MAZIERES , D. Securing distributed systems with information flow control . In NSDI ( 2008 ). ZELDOVICH, N., BOYD-WICKIZER, S., AND MAZIERES, D. Securing distributed systems with information flow control. In NSDI (2008)."},{"key":"e_1_3_2_1_99_1","doi-asserted-by":"publisher","DOI":"10.1145\/2043556.2043576"}],"event":{"name":"CCS'14: 2014 ACM SIGSAC Conference on Computer and Communications Security","location":"Scottsdale Arizona USA","acronym":"CCS'14","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 6th edition of the ACM Workshop on Cloud Computing Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2664168.2664174","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/2664168.2664174","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,18]],"date-time":"2025-06-18T06:12:01Z","timestamp":1750227121000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/2664168.2664174"}},"subtitle":["Detecting Data Leakage between Cloud Tenants"],"short-title":[],"issued":{"date-parts":[[2014,11,7]]},"references-count":99,"alternative-id":["10.1145\/2664168.2664174","10.1145\/2664168"],"URL":"https:\/\/doi.org\/10.1145\/2664168.2664174","relation":{},"subject":[],"published":{"date-parts":[[2014,11,7]]},"assertion":[{"value":"2014-11-07","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}