{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,6,10]],"date-time":"2026-06-10T16:36:19Z","timestamp":1781109379169,"version":"3.54.1"},"reference-count":20,"publisher":"IGI Global Scientific Publishing","issue":"3","content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[2012,7,1]]},"abstract":"<p>In current cloud computing systems, because users\u2019 data is stored and processed by computing systems managed and operated by various service providers, users are concerned with the risks of unauthorized usage of their sensitive data by various entities, including service providers. The current cloud computing systems protect users\u2019 data confidentiality from all entities, except service providers. In this paper, an approach is presented for improving the protection of users\u2019 data confidentiality in cloud computing systems from all entities, including service providers. The authors\u2019 approach has the following features: (1) separation of cloud application providers, data processing service providers and data storage providers, (2) anonymization of users\u2019 identities, (3) grouping cloud application components and distributing their execution to distinct cloud infrastructures of data processing service providers, and (4) use of data obfuscation and cryptography for protecting the sensitive data from unauthorized access by all entities, including service providers. The proposed approach ensures that users\u2019 sensitive data can be protected from their service providers even if the users do not have full cooperation from their service providers.<\/p>","DOI":"10.4018\/jwsr.2012070104","type":"journal-article","created":{"date-parts":[[2013,1,29]],"date-time":"2013-01-29T16:34:00Z","timestamp":1359477240000},"page":"67-83","source":"Crossref","is-referenced-by-count":6,"title":["An Approach to Data Confidentiality Protection in Cloud Environments"],"prefix":"10.4018","volume":"9","author":[{"given":"Stephen S.","family":"Yau","sequence":"first","affiliation":[{"name":"Information Assurance Center and School of Computing, Informatics and Decision Systems Engineering, Arizona State University, Tempe, AZ, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Ho G.","family":"An","sequence":"additional","affiliation":[{"name":"Information Assurance Center and School of Computing, Informatics and Decision Systems Engineering, Arizona State University, Tempe, AZ, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]},{"given":"Arun Balaji","family":"Buduru","sequence":"additional","affiliation":[{"name":"Information Assurance Center and School of Computing, Informatics and Decision Systems Engineering, Arizona State University, Tempe, AZ, USA"}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"2432","reference":[{"key":"jwsr.2012070104-0","doi-asserted-by":"publisher","DOI":"10.1109\/32.4636"},{"key":"jwsr.2012070104-1","unstructured":"Amazon Web Services LLC. (2009). AWS Case Study: TC3 Health. Retrieved April 12, 2012, from http:\/\/aws.amazon.com\/solutions\/case-studies\/tc3-health\/"},{"key":"jwsr.2012070104-2","doi-asserted-by":"publisher","DOI":"10.1109\/MSP.2004.97"},{"key":"jwsr.2012070104-3","doi-asserted-by":"crossref","unstructured":"Bayardo, R., & Agrawal, R. (2005, April 5-8). Data privacy through optimal k-anonymization. In Proceedings of International Conference on Data Engineering, Tokyo, Japan (pp. 217-228).","DOI":"10.1109\/ICDE.2005.42"},{"key":"jwsr.2012070104-4","doi-asserted-by":"publisher","DOI":"10.1109\/MC.2011.353"},{"key":"jwsr.2012070104-5","doi-asserted-by":"crossref","unstructured":"Chaum, D., Fiat, A., & Naor, M. (1990, August 11-15). Untraceable electronic cash. In Proceedings of Advances in Cryptology, Santa Barbara, CA (pp. 319-327).","DOI":"10.1007\/0-387-34799-2_25"},{"key":"jwsr.2012070104-6","doi-asserted-by":"crossref","unstructured":"Dingledine, R., Mathewson, N., & Syverson, P. (2004, August 9-13). Tor: The second-generation onion router. In Proceedings of 13th USENIX Security Symposium, San Diego, CA (pp. 82-88).","DOI":"10.21236\/ADA465464"},{"key":"jwsr.2012070104-7","unstructured":"Halang, W. (1989, September 18-20). A function oriented design for industrial distributed real time control systems. In Proceedings of 2nd International Conference on Software Engineering for Real Time Systems, Cirencester, UK (pp. 116-120)."},{"key":"jwsr.2012070104-8","doi-asserted-by":"publisher","DOI":"10.1016\/j.eswa.2005.04.005"},{"key":"jwsr.2012070104-9","doi-asserted-by":"crossref","unstructured":"Mowbray, M., & Pearson, S. (2009, June 15-19). A client-based privacy manager for cloud computing. In Proceedings of Conference on Communication System Software and Middleware, Dublin, Ireland (pp. 138-145).","DOI":"10.1145\/1621890.1621897"},{"key":"jwsr.2012070104-10","unstructured":"Reardon, J., & Goldberg, I. (2009, August 10-14). Improving Tor using a TCP-over-DTLS tunnel. In Proceedings of the 18th Conference on USENIX Security Symposium, Montreal, Canada (pp. 39-41)."},{"key":"jwsr.2012070104-11","doi-asserted-by":"publisher","DOI":"10.1109\/MC.2011.223"},{"key":"jwsr.2012070104-12","unstructured":"Schrittwieser, S., & Katzenbeisser, S. (2011, May 18-20). Code obfuscation against static and dynamic reverse engineering. In Proceedings of 13th International Conference Information Hiding, Prague, Czech Republic (pp. 45-60)."},{"key":"jwsr.2012070104-13","author":"W.Stallings","year":"2010","journal-title":"Cryptography and network security: Principles and practice"},{"key":"jwsr.2012070104-14","unstructured":"Voltage Security. (2009). Format-preserving encryption. Retrieved from http:\/\/www.voltage.com\/technology\/Technology_FormatPreservingEncryption.htm"},{"issue":"92","key":"jwsr.2012070104-15","doi-asserted-by":"crossref","first-page":"581","DOI":"10.1016\/0167-4048(92)90193-U","article-title":"On blind signatures and perfect crimes.","volume":"11","author":"S.Von","year":"1992","journal-title":"Computers & Security"},{"issue":"4","key":"jwsr.2012070104-16","first-page":"351","article-title":"Confidentiality protection in cloud computing systems.","volume":"4","author":"S.Yau","year":"2010","journal-title":"International Journal of Software Informatics"},{"key":"jwsr.2012070104-17","doi-asserted-by":"crossref","unstructured":"Yau, S., & An, H. (2011a, September 2-4). Anonymous service usage and payment in service-based systems. In Proceedings of 13th IEEE International Workshop on Future Trends of Distributed Computing Systems (FTDCS2011), Banff, Canada (pp. 714-720).","DOI":"10.1109\/HPCC.2011.101"},{"key":"jwsr.2012070104-18","doi-asserted-by":"publisher","DOI":"10.1109\/MC.2011.267"},{"key":"jwsr.2012070104-19","doi-asserted-by":"crossref","unstructured":"Yu, S., Wang, C., Ren, K., & Lou, W. (2010, March 15-19). Achieving secure, scalable, and fine-grained data access control in cloud computing. In Proceedings of IEEE International Conference Computer Communications (INFOCOM), San Diego, CA (pp. 1-9).","DOI":"10.1109\/INFCOM.2010.5462174"}],"container-title":["International Journal of Web Services Research"],"original-title":[],"language":"ng","link":[{"URL":"https:\/\/www.igi-global.com\/viewtitle.aspx?TitleId=74707","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,4,29]],"date-time":"2025-04-29T14:48:54Z","timestamp":1745938134000},"score":1,"resource":{"primary":{"URL":"https:\/\/services.igi-global.com\/resolvedoi\/resolve.aspx?doi=10.4018\/jwsr.2012070104"}},"subtitle":[""],"short-title":[],"issued":{"date-parts":[[2012,7,1]]},"references-count":20,"journal-issue":{"issue":"3","published-print":{"date-parts":[[2012,7]]}},"URL":"https:\/\/doi.org\/10.4018\/jwsr.2012070104","relation":{},"ISSN":["1545-7362","1546-5004"],"issn-type":[{"value":"1545-7362","type":"print"},{"value":"1546-5004","type":"electronic"}],"subject":[],"published":{"date-parts":[[2012,7,1]]}}}