{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,7,18]],"date-time":"2026-07-18T11:13:01Z","timestamp":1784373181737,"version":"3.55.0"},"reference-count":72,"publisher":"Frontiers Media SA","license":[{"start":{"date-parts":[[2023,11,30]],"date-time":"2023-11-30T00:00:00Z","timestamp":1701302400000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":["frontiersin.org"],"crossmark-restriction":true},"short-container-title":["Front. Big Data"],"abstract":"<jats:sec><jats:title>Introduction<\/jats:title><jats:p>Big graphs like social network user interactions and customer rating matrices require significant computing resources to maintain. Data owners are now using public cloud resources for storage and computing elasticity. However, existing solutions do not fully address the privacy and ownership protection needs of the key involved parties: data contributors and the data owner who collects data from contributors.<\/jats:p><\/jats:sec><jats:sec><jats:title>Methods<\/jats:title><jats:p>We propose a Trusted Execution Environment (TEE) based solution: TEE-Graph for graph spectral analysis of outsourced graphs in the cloud. TEEs are new CPU features that can enable much more efficient confidential computing solutions than traditional software-based cryptographic ones. Our approach has several unique contributions compared to existing confidential graph analysis approaches. (1) It utilizes the unique TEE properties to ensure contributors' new privacy needs, e.g., the right of revocation for shared data. (2) It implements efficient access-pattern protection with a differentially private data encoding method. And (3) it implements TEE-based special analysis algorithms: the Lanczos method and the Nystrom method for efficiently handling big graphs and protecting confidentiality from compromised cloud providers.<\/jats:p><\/jats:sec><jats:sec><jats:title>Results<\/jats:title><jats:p>The TEE-Graph approach is much more efficient than software crypto approaches and also immune to access-pattern-based attacks. Compared with the best-known software crypto approach for graph spectral analysis, PrivateGraph, we have seen that TEE-Graph has 10<jats:sup>3<\/jats:sup>\u221210<jats:sup>5<\/jats:sup>times lower computation, storage, and communication costs. Furthermore, the proposed access-pattern protection method incurs only about 10%-25% of the overall computation cost.<\/jats:p><\/jats:sec><jats:sec><jats:title>Discussion<\/jats:title><jats:p>Our experimentation showed that TEE-Graph performs significantly better and has lower costs than typical software approaches. It also addresses the unique ownership and access-pattern issues that other TEE-related graph analytics approaches have not sufficiently studied. The proposed approach can be extended to other graph analytics problems with strong ownership and access-pattern protection.<\/jats:p><\/jats:sec>","DOI":"10.3389\/fdata.2023.1296469","type":"journal-article","created":{"date-parts":[[2023,12,1]],"date-time":"2023-12-01T09:40:48Z","timestamp":1701423648000},"update-policy":"https:\/\/doi.org\/10.3389\/crossmark-policy","source":"Crossref","is-referenced-by-count":3,"title":["TEE-Graph: efficient privacy and ownership protection for cloud-based graph spectral analysis"],"prefix":"10.3389","volume":"6","author":[{"given":"A. K. M. Mubashwir","family":"Alam","sequence":"first","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Keke","family":"Chen","sequence":"additional","affiliation":[],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"1965","published-online":{"date-parts":[[2023,11,30]]},"reference":[{"key":"B1","doi-asserted-by":"crossref","first-page":"282","DOI":"10.1109\/CLOUD60044.2023.00040","article-title":"\u201cMaking your program oblivious: a comparative study for side-channel-safe confidential computing,\u201d","author":"Alam","year":"2023","journal-title":"2023 IEEE 16th International Conference on Cloud Computing (CLOUD)"},{"key":"B2","doi-asserted-by":"publisher","first-page":"5","DOI":"10.2478\/popets-2021-0002","article-title":"SGX-MR: regulating dataflows for protecting access patterns of data-intensive SGX applications","volume":"2021","author":"Alam","year":"2021","journal-title":"Proc. Privacy Enhan. Technol."},{"key":"B3","unstructured":"Alibaba Cloud's SGX Encrypted Computing Environment2023"},{"key":"B4","doi-asserted-by":"crossref","first-page":"1511","DOI":"10.1145\/3318464.3386141","article-title":"\u201cAzure SQL database always encrypted,\u201d","volume-title":"Proceedings of the 2020 ACM SIGMOD International Conference on Management of Data, SIGMOD '20","author":"Antonopoulos","year":"2020"},{"key":"B5","doi-asserted-by":"crossref","first-page":"44","DOI":"10.1145\/1150402.1150412","article-title":"\u201cGroup formation in large social networks: membership, growth, and evolution,\u201d","author":"Backstrom","year":"2006","journal-title":"Proceedings of the 12th ACM SIGKDD International Conference on Knowledge Discovery and Data Mining"},{"key":"B6","first-page":"307","article-title":"\u201cSorting networks and their applications,\u201d","volume-title":"Proceedings of the Spring Joint Computer Conference, AFIPS '68","author":"Batcher","year":"1968"},{"key":"B7","doi-asserted-by":"publisher","first-page":"73","DOI":"10.1080\/15427951.2005.10129098","article-title":"A survey on pagerank computing","volume":"2","author":"Berkhin","year":"2005","journal-title":"Internet Math."},{"key":"B8","first-page":"868","article-title":"\u201cFully homomorphic encryption without modulus switching from classical GapSVP,\u201d","volume-title":"Annual Cryptology Conference","author":"Brakerski","year":"2012"},{"key":"B9","first-page":"505","article-title":"\u201cFully homomorphic encryption from ring-LWE and security for key dependent messages,\u201d","volume-title":"Proceedings of the 31st Annual Conference on Advances in Cryptology, CRYPTO'11","author":"Brakerski","year":"2011"},{"key":"B10","article-title":"\u201cSoftware grand exposure: SGX cache attacks are practical,\u201d","volume-title":"11th USENIX Workshop on Offensive Technologies (WOOT 17)","author":"Brasser","year":"2017"},{"key":"B11","first-page":"991","article-title":"\u201cForeshadow: extracting the keys to the intel SGX kingdom with transient out-of-order execution,\u201d","volume-title":"27th USENIX Security Symposium (USENIX Security 18)","author":"Bulck","year":"2018"},{"key":"B12","doi-asserted-by":"crossref","first-page":"847","DOI":"10.1145\/3243734.3243786","article-title":"\u201cHYCC: compilation of hybrid protocols for practical secure computation,\u201d","author":"B\u00fcscher","year":"2018","journal-title":"Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security"},{"key":"B13","doi-asserted-by":"crossref","DOI":"10.1142\/6602","author":"Butenko","year":"2009","journal-title":"Clustering Challenges in Biological Networks"},{"key":"B14","first-page":"668","article-title":"\u201cLeakage-abuse attacks against searchable encryption,\u201d","volume-title":"Proceedings of the 22nd ACM SIGSAC Conference on Computer and Communications Security, CCS '15","author":"Cash","year":"2015"},{"key":"B15","doi-asserted-by":"publisher","first-page":"2","DOI":"10.1145\/1132952.1132954","article-title":"Graph mining: laws, generators, and algorithms","volume":"38","author":"Chakrabarti","year":"2006","journal-title":"ACM Comput. Surv."},{"key":"B16","doi-asserted-by":"publisher","first-page":"1733","DOI":"10.2139\/ssrn.3433922","article-title":"Catalyzing privacy law","volume":"105","author":"Chander","year":"2020","journal-title":"Minn. L. Rev."},{"key":"B17","first-page":"86","article-title":"Intel SGX explained","volume":"2016","author":"Costan","year":"2016","journal-title":"IACR Cryptol. ePrint Arch."},{"key":"B18","author":"Cullum","year":"1985","journal-title":"Lanczos Algorithms for Large Symmetric Eigenvalue Computations: Vol. I: Theory"},{"key":"B19","doi-asserted-by":"crossref","first-page":"769","DOI":"10.1145\/3548606.3560627","article-title":"\u201cStrongbox: a GPU tee on arm endpoints,\u201d","author":"Deng","year":"2022","journal-title":"Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security"},{"key":"B20","first-page":"447","article-title":"\u201cM2R: enabling stronger privacy in MapReduce computation,\u201d","author":"Dinh","year":"2015","journal-title":"USENIX Security Symposium"},{"key":"B21","doi-asserted-by":"publisher","first-page":"5102","DOI":"10.1109\/TDSC.2023.3241164","article-title":"Shielding graph for eXact analytics with SGX","volume":"20","author":"Du","year":"2023","journal-title":"IEEE Trans. Depend. Sec. Comput."},{"key":"B22","first-page":"429","article-title":"\u201cLocal privacy and statistical minimax rates,\u201d","author":"Duchi","year":"2013","journal-title":"Annual Symposium on Foundations of Computer Science"},{"key":"B23","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1007\/11787006_1","article-title":"\u201cDifferential privacy,\u201d","volume-title":"International Colloquium on Automata, Languages and Programming","author":"Dwork","year":"2006"},{"key":"B24","first-page":"1054","article-title":"\u201cRappor: randomized aggregatable privacy-preserving ordinal response,\u201d","volume-title":"Proceedings of the 2014 ACM SIGSAC Conference on Computer and Communications Security, CCS '14","author":"Erlingsson","year":"2014"},{"key":"B25","doi-asserted-by":"publisher","first-page":"169","DOI":"10.14778\/3364324.3364331","article-title":"ObliDB: oblivious query processing for secure databases","volume":"13","author":"Eskandarian","year":"2019","journal-title":"Proc. VLDB Endow."},{"key":"B26","doi-asserted-by":"publisher","first-page":"214","DOI":"10.1109\/TPAMI.2004.1262185","article-title":"Spectral grouping using the nystr\u00f6m method","volume":"26","author":"Fowlkes","year":"2004","journal-title":"IEEE Trans. Pattern Anal. Mach. Intell."},{"key":"B27","article-title":"Power analysis based side channel attack","author":"Gamaarachchi","year":"2018","journal-title":"arXiv preprint arXiv:1801.00932"},{"key":"B28","doi-asserted-by":"crossref","first-page":"1","DOI":"10.1145\/3065913.3065915","article-title":"\u201cCache attacks on intel SGX,\u201d","volume-title":"Proceedings of the 10th European Workshop on Systems Security, EuroSec'17","author":"G\u00f6tzfried","year":"2017"},{"key":"B29","first-page":"35","article-title":"\u201cFaster secure two-party computation using garbled circuits,\u201d","author":"Huang","year":"2011","journal-title":"USENIX Conference on Security"},{"key":"B30","first-page":"817","article-title":"\u201cTelekine: Secure computing with cloud GPUs,\u201d","volume-title":"17th USENIX Symposium on Networked Systems Design and Implementation (NSDI 20)","author":"Hunt","year":"2020"},{"key":"B31","unstructured":"Intel's Recent Server CPU with SGX Support2023"},{"key":"B32","doi-asserted-by":"crossref","DOI":"10.1007\/978-1-4757-1904-8","author":"Jolliffe","year":"1986","journal-title":"Principal Component Analysis"},{"key":"B33","article-title":"\u201cSGX-Log: securing system logs with SGX,\u201d","author":"Karande","year":"2017","journal-title":"Proceedings of the 2017 ACM on Asia Conference on Computer and Communications Security"},{"key":"B34","first-page":"457","article-title":"\u201cAnalyzing graphs with node differential privacy,\u201d","volume-title":"Proceedings of 10th Theory of Cryptography Conference, TCC 2013","author":"Kasiviswanathan","year":"2013"},{"key":"B35","doi-asserted-by":"publisher","first-page":"2132","DOI":"10.14778\/3407790.3407814","article-title":"Efficient oblivious database joins","volume":"13","author":"Krastnikov","year":"2020","journal-title":"Proc. VLDB Endow."},{"key":"B36","doi-asserted-by":"publisher","first-page":"87","DOI":"10.1145\/2775054.2694385","article-title":"Ghostrider: a hardware-software system for memory trace oblivious computation","volume":"50","author":"Liu","year":"2015","journal-title":"ACM SIGPLAN Not."},{"key":"B37","first-page":"504","article-title":"\u201cGRECS: graph encryption for approximate shortest distance queries,\u201d","volume-title":"ACM CCS","author":"Meng","year":"2015"},{"key":"B38","doi-asserted-by":"crossref","first-page":"19","DOI":"10.1109\/SP.2017.12","article-title":"\u201cSecureML: a system for scalable privacy-preserving machine learning,\u201d","author":"Mohassel","year":"2017","journal-title":"2017 IEEE Symposium on Security and Privacy (SP)"},{"key":"B39","doi-asserted-by":"publisher","first-page":"042822","DOI":"10.1103\/PhysRevE.88.042822","article-title":"Spectral methods for community detection and graph partitioning","volume":"88","author":"Newman","year":"2013","journal-title":"Phys. Rev. E"},{"key":"B40","article-title":"\u201cOn spectral clustering: analysis and algorithm,\u201d","author":"Ng","year":"2001","journal-title":"Proceedings of Neural Information Processing Systems (NIPS)"},{"key":"B41","first-page":"619","article-title":"\u201cOblivious Multi-Party machine learning on trusted processors,\u201d","volume-title":"25th USENIX Security Symposium (USENIX Security 16)","author":"Ohrimenko","year":"2016"},{"key":"B42","doi-asserted-by":"crossref","first-page":"2248","DOI":"10.1109\/SP46214.2022.9833782","article-title":"\u201cCIRC: compiler infrastructure for proof systems, software verification, and more,\u201d","author":"Ozdemir","year":"2022","journal-title":"2022 IEEE Symposium on Security and Privacy (SP)"},{"key":"B43","first-page":"223","article-title":"\u201cPublic-key cryptosystems based on composite degree residuosity classes,\u201d","author":"Paillier","year":"1999","journal-title":"The Proceedings of EUROCRYPT"},{"key":"B44","unstructured":"Microsoft Azure Database2023"},{"key":"B45","doi-asserted-by":"publisher","first-page":"610","DOI":"10.1016\/j.parco.2011.02.004","article-title":"Mapreduce in MPI for large-scale graph algorithms","volume":"37","author":"Plimpton","year":"2011","journal-title":"Parallel Comput."},{"key":"B46","article-title":"\u201cEnclaveDB - a secure database using SGX,\u201d","author":"Priebe","year":"2018","journal-title":"IEEE Symposium on Security and Privacy"},{"key":"B47","doi-asserted-by":"crossref","first-page":"425","DOI":"10.1145\/3133956.3134086","article-title":"\u201cGenerating synthetic decentralized social graphs with local differential privacy,\u201d","volume-title":"Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security","author":"Qin","year":"2017"},{"key":"B48","first-page":"431","article-title":"\u201cRaccoon: closing digital side-channels through obfuscated execution,\u201d","author":"Rane","year":"2015","journal-title":"Proceedings of the 24th USENIX Conference on Security Symposium, SEC' 15"},{"key":"B49","first-page":"84","article-title":"\u201cOn lattices, learning with errors, random linear codes, and cryptography,\u201d","author":"Regev","year":"2005","journal-title":"Annual ACM symposium on Theory of computing"},{"key":"B50","doi-asserted-by":"publisher","first-page":"211","DOI":"10.1007\/s11263-015-0816-y","article-title":"ImageNet large scale visual recognition challenge","volume":"115","author":"Russakovsky","year":"2015","journal-title":"Int. J. Comput. Vis."},{"key":"B51","doi-asserted-by":"crossref","DOI":"10.14722\/ndss.2018.23239","article-title":"\u201cZerotrace : oblivious memory primitives from intel SGX,\u201d","volume-title":"25th Annual Network and Distributed System Security Symposium, NDSS 2018","author":"Sasy","year":"2018"},{"key":"B52","author":"Scholkopf","year":"2002","journal-title":"Learning with Kernels"},{"key":"B53","doi-asserted-by":"crossref","DOI":"10.1109\/SP.2015.10","article-title":"\u201cVC3: trustworthy data analytics in the cloud using SGX,\u201d","volume-title":"36th IEEE Symposium on Security and Privacy","author":"Schuster","year":"2015"},{"key":"B54","doi-asserted-by":"crossref","first-page":"1211","DOI":"10.1145\/3133956.3134095","article-title":"\u201cSGX-bigmatrix: a practical encrypted data analytic framework with trusted processors,\u201d","author":"Shaon","year":"2017","journal-title":"Proceedings of the 2017 ACM SIGSAC Conference on Computer and Communications Security"},{"key":"B55","doi-asserted-by":"crossref","first-page":"41","DOI":"10.1007\/978-3-030-29959-0_3","article-title":"\u201cConfidential boosting with random linear classifiers for outsourced user-generated data,\u201d","volume-title":"Computer Security - ESORICS 2019 - 24th European Symposium on Research in Computer Security","author":"Sharma","year":"2019"},{"key":"B56","doi-asserted-by":"publisher","first-page":"981","DOI":"10.1109\/TKDE.2018.2847662","article-title":"Privategraph: privacy-preserving spectral analysis of encrypted graphs in the cloud","volume":"31","author":"Sharma","year":"2019","journal-title":"IEEE Trans. Knowledge Data Eng."},{"key":"B57","doi-asserted-by":"publisher","first-page":"67","DOI":"10.1109\/MIC.2019.2928449","article-title":"Knowledge graphs and knowledge networks: the story in brief","volume":"23","author":"Sheth","year":"2019","journal-title":"IEEE Internet Comput."},{"key":"B58","first-page":"317","article-title":"\u201cPreventing page faults from telling your secrets,\u201d","volume-title":"Proceedings of the 11th ACM on Asia Conference on Computer and Communications Security, ASIACCS16","author":"Shinde","year":"2016"},{"key":"B59","doi-asserted-by":"publisher","first-page":"57","DOI":"10.1007\/s10623-012-9720-4","article-title":"Fully homomorphic SIMD operations","volume":"71","author":"Smart","year":"2012","journal-title":"Designs Codes Cryptogr."},{"key":"B60","doi-asserted-by":"publisher","first-page":"1019","DOI":"10.14778\/3447689.3447705","article-title":"Building enclave-native storage engines for practical encrypted databases","volume":"14","author":"Sun","year":"2021","journal-title":"Proc. VLDB Endow."},{"key":"B61","article-title":"LVI: Hijacking transient execution through microarchitectural load value injection","author":"Van Bulck","year":"2020","journal-title":"41th IEEE Symposium on Security and Privacy (S&P'20)"},{"key":"B62","unstructured":"Van SchaikS. KwongA. GenkinD. YaromY. SGAxe: How SGX Fails in Practice2020"},{"key":"B63","first-page":"729","article-title":"\u201cLocally differentially private protocols for frequency estimation,\u201d","author":"Wang","year":"2017","journal-title":"26th USENIX Security Symposium"},{"key":"B64","doi-asserted-by":"crossref","first-page":"329","DOI":"10.1007\/978-3-642-37456-2_28","article-title":"\u201cDifferential privacy preserving spectral graph analysis,\u201d","volume-title":"Advances in Knowledge Discovery and Data Mining","author":"Wang","year":"2013"},{"key":"B65","doi-asserted-by":"crossref","first-page":"63","DOI":"10.1080\/01621459.1965.10480775","article-title":"Randomized response: A survey technique for eliminating evasive answer bias","volume":"60","author":"Warner","year":"1965","journal-title":"J. Am. Stat. Assoc"},{"key":"B66","doi-asserted-by":"crossref","first-page":"640","DOI":"10.1109\/SP.2015.45","article-title":"\u201cControlled-channel attacks: deterministic side channels for untrusted operating systems,\u201d","volume-title":"Proceedings of the 2015 IEEE Symposium on Security and Privacy, SP '15","author":"Xu","year":"2015"},{"key":"B67","first-page":"162","article-title":"\u201cHow to generate and exhange secrets,\u201d","author":"Yao","year":"1986","journal-title":"IEEE Symposium on Foundations of Computer Science"},{"key":"B68","doi-asserted-by":"crossref","first-page":"4905","DOI":"10.1109\/TKDE.2020.3047124","article-title":"Lf-gdpr: A framework for estimating graph metrics with local differential privacy","volume":"34","author":"Ye","year":"2020","journal-title":"IEEE Trans. Knowledge and Data Eng"},{"key":"B69","first-page":"1","article-title":"\u201cLite: a low-cost practical inter-operable GPU tee,\u201d","author":"Yudha","year":"2022","journal-title":"Proceedings of the 36th ACM International Conference on Supercomputing"},{"key":"B70","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1145\/3389685","article-title":"The effect of the GDPR on privacy policies: recent progress and future promise","volume":"12","author":"Zaeem","year":"2020","journal-title":"ACM Trans. Manage. Inform. Syst."},{"key":"B71","article-title":"\u201cOpaque: an oblivious and encrypted distributed analytics platform,\u201d","author":"Zheng","year":"2017","journal-title":"USENIX Symposium on Networked Systems Design and Implementation"},{"key":"B72","doi-asserted-by":"publisher","first-page":"12","DOI":"10.1145\/1540276.1540279","article-title":"A brief survey on anonymization techniques for privacy preserving publishing of social network data","volume":"10","author":"Zhou","year":"2008","journal-title":"SIGKDD Explor. Newsl."}],"container-title":["Frontiers in Big Data"],"original-title":[],"link":[{"URL":"https:\/\/www.frontiersin.org\/articles\/10.3389\/fdata.2023.1296469\/full","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2023,12,27]],"date-time":"2023-12-27T04:20:36Z","timestamp":1703650836000},"score":1,"resource":{"primary":{"URL":"https:\/\/www.frontiersin.org\/articles\/10.3389\/fdata.2023.1296469\/full"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2023,11,30]]},"references-count":72,"alternative-id":["10.3389\/fdata.2023.1296469"],"URL":"https:\/\/doi.org\/10.3389\/fdata.2023.1296469","relation":{},"ISSN":["2624-909X"],"issn-type":[{"value":"2624-909X","type":"electronic"}],"subject":[],"published":{"date-parts":[[2023,11,30]]},"article-number":"1296469"}}