Formal Analysis of Information Flow Using Min-Entropy and Belief Min-Entropy

نویسندگان

  • Ghassen Helali
  • Osman Hasan
  • Sofiène Tahar
چکیده

Quantitative theories in information flow is becoming nowadays very important in the area of information system security. It is so indispensable in different fields such as secure information flow, anonymity protocols and side-channel analysis. In fact, there is a growing interest in applying these theories in electronic communication, auctioning, voting and payment. The consensus of quantitative information flow was introduced under the context of Shannon entropy and mutual information. The main goal of quantitative information flow is to compute the bounds of the threat that a secret information is leaked due to an external attack. Our major focus in this work is to model the risk that the secret is correctly guessed in one try. Considering this model, we argue that the proposed consensus based on Shannon entropy failed to give good security guarantees; it sometimes leads to a confusion, this was mentioned by G. Smith, where the problem is that a random variable with high vulnerability to be guessed can have a large Shannon entropy. We propose to use min-entropy and belief-min-entropy as better alternatives. The latter one is taking into account the attackers’ extra knowledge. Both of these notions will be used in order to model and analyze the information leakage in deterministic and probabilistic systems. We will conduct our work in the core of the Higher-Order-Logic Theorem Proving in which we are going to formalize the new concepts previously presented. We will then apply our theory to analyze the information behavior in a cascade of channels. We prove that the leakage of two cascade channels can not exceed the leakage of the first channel.

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Min-Entropy Leakage of Channels in Cascade

Theories of quantitative information flow offer an attractive framework for analyzing confidentiality in practical systems, which often cannot avoid “small” leaks of confidential information. Recently there has been growing interest in the theory of min-entropy leakage, which measures uncertainty based on a random variable’s vulnerability to being guessed in one try by an adversary. Here we con...

متن کامل

On Bounding Problems of Quantitative Information Flow

Researchers have proposed formal definitions of quantitative information flow based on information theoretic notions such as the Shannon entropy, the min entropy, the guessing entropy, belief, and channel capacity. This paper investigates the hardness of precisely checking the quantitative information flow of a program according to such definitions. More precisely, we study the “bounding proble...

متن کامل

Quantifying leakage in the presence of unreliable sources of information

Belief and min-entropy leakage are two well-known approaches to quantify information flow in security systems. Both concepts stand as alternatives to the traditional approaches founded on Shannon entropy and mutual information, which were shown to provide inadequate security guarantees. In this paper we unify the two concepts in one model so as to cope with the frequent (potentially inaccurate,...

متن کامل

Entropy Generation of Variable Viscosity and Thermal Radiation on Magneto Nanofluid Flow with Dusty Fluid

The present work illustrates the variable viscosity of dust nanofluid runs over a permeable stretched sheet with thermal radiation. The problem has been modelled mathematically introducing the mixed convective condition and magnetic effect. Additionally analysis of entropy generation and Bejan number provides the fine points of the flow. The of model equations are transformed into non-linear or...

متن کامل

Max-flow min-cut theorem for Rényi entropy in communication networks

A symbolic approach to communication networks, where the topology of the underlying network is contained in a set of formal terms, was recently introduced. Many communication problems can be recast as dispersion problems in this setup. The so-called min-cut of a term set represents its number of degrees of freedom. For any assignment of function symbols, its dispersion measures the amount of in...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

برای دانلود متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2013