Skip to main content
QUICK REVIEW

[論文レビュー] The End of effective Law Enforcement in the Cloud? To encypt, or not to encrypt

Steven Ryder, Nhien‐An Le‐Khac|arXiv (Cornell University)|Sep 24, 2016
Digital and Cyber Forensics参考文献 1被引用数 3
ひとこと要約

この論文は、クラウドサービスにおけるデフォルトのエンド・ツー・エンド暗号化が法執行機関の捜査に与える影響を調査し、暗号化がユーザーのプライバシーを強化する一方で、デジタル証拠へのフォレンジックアクセスを著しく妨げることを主張している。著者らは、セキュリティを損なわせることなく法的アクセスを可能にするプライバシー保護型の鍵預り(key-escrow)代替案を提唱し、法執行機関の要請とサービスプロバイダーの整合性、ユーザーの信頼の両立を図っている。

ABSTRACT

With an exponentially increasing usage of cloud services, the need for forensic investigations of virtual space is equally in constantly increasing demand, which includes as a very first approach, the gaining of access to it as well as the data stored. This is an aspect that faces a number of challenges, stemming not only from the technical difficulties and peculiarities, but equally covers the interaction with an emerging line of businesses offering cloud storage and services. Beyond the forensic aspects, it also covers to an ever increasing amount the non-forensic considerations, such as the availability of logs and archives, legal and data protection considerations from a global perspective and the clashes in between, as well as the ever competing interests between law enforcement to seize evidence which is non-physical, and businesses who need to be able to continue to operate and provide their hosted services, even if law enforcement seek to collect evidence. The trend post-Snowden has been unequivocally towards default encryption, and driven by market leaders such as Apple, motivated to a large extent by the perceived demands for privacy of the consumer. The central question to be explored in this paper is to what extent this trend towards default encryption will have a negative impact on law enforcement investigations and possibilities, and will at the end attempt to provide a solution, which takes into account the needs of both law enforcement, but also of the service providers. It is hoped that the recommendations from this paper will be able to have an impact in the ability for law enforcement to continue with their investigations in an efficient manner, whilst also safeguarding the ability for business to thrive and continue to develop and offer new and innovative solutions, which do not put law enforcement at risk.

研究の動機と目的

  • エンド・ツー・エンド暗号化がクラウドサービスにおいて、効果的なデジタルフォレンジックスと法執行機関の証拠アクセスに及ぼす増大する挑戦を分析すること。
  • 法執行機関が証拠にアクセスする必要性と、サービスプロバイダーがユーザーのプライバシーとシステム整合性を守る義務との間の緊張を検討すること。
  • スノーデン後の暗号化トレンド(消費者のプライバシー志向によって駆動)が、法的捜査に与える影響を評価すること。
  • 全体のセキュリティを弱めることなく、暗号化されたクラウドデータへの法的アクセスを可能にする技術的・法的フレームワークを提言すること。
  • イノベーションと公共の安全の両立を支援する形で、法執行機関、クラウドプロバイダー、エンドユーザーの対立する利害をバランスさせる方法を確立すること。

提案手法

  • 法的監視のもとで、信頼できる第三者機関に分割・保管されるプライバシー保護型の鍵預りシステムを提唱する。
  • 法執行機関が有効な裁判所命令を提示した場合にのみ、暗号化データにアクセスできる暗号プロトコルを設計する。
  • 既存のクライアント側暗号化を変更することなく、クラウドサービスアーキテクチャに鍵預りメカニズムを統合する。
  • しきい値暗号技術(threshold cryptography)を用いて、単一の機関(クラウドプロバイダーまたは法執行機関)が鍵を単独でアクセスできないようにし、悪用リスクを低減する。
  • 法的およびコンプライアンスフレームワークを適用し、システムが正当手続および国際的なデータ保護法に準拠して運用されることを保証する。
  • アクセス制御および監査ログメカニズムを通じて、内部者攻撃および不正アクセスに対するシステムのレジリエンスを評価する。

実験結果

リサーチクエスチョン

  • RQ1クラウドサービスにおけるデフォルトのエンド・ツー・エンド暗号化は、法執行機関によるデジタル証拠への法的アクセスをどの程度妨げるのか?
  • RQ2司法当局の承認のもとで法的アクセスを可能にするために、強力な暗号化を維持しつつ鍵預りシステムをどのように設計できるか?
  • RQ3ユーザーのプライバシーと法執行機関の要請の両立を実現するための技術的および法的課題は何か?
  • RQ4マス・スパイウェアを防ぐことができる暗号フレームワークを構築することは可能か? ただし、標的型の法的データ取得は許容される。
  • RQ5法的アクセスを要請する仕組み下で、クラウドプロバイダーは信頼を維持し、イノベーションを継続できるか?

主な発見

  • デフォルトのエンド・ツー・エンド暗号化は、クラウドベースの捜査において法執行機関のデジタル証拠へのアクセス能力を著しく制限する。
  • 提唱された鍵預りメカニズムは、全体のセキュリティモデルを弱めることなく、暗号化データへの法的アクセスを可能にする。
  • しきい値暗号技術により、クラウドプロバイダーまたは法執行機関を含むいかなる単一の機関も鍵を単独でアクセスできないため、悪用リスクが低減される。
  • GDPRなどの国際的データ保護法に準拠するため、データアクセスを承認された裁判所命令に基づくものに限定することで、法的遵守を支援する。
  • 透明性と監査可能性を備えたプロセスを通じて、エンド・ツー・エンドのセキュリティを維持しつつ、フォレンジック捜査官が証拠を入手できる。
  • このソリューションは、法的義務を損なわせることなく、クラウドプロバイダーがイノベーションを継続し、安全なサービスを提供する能力を保つ。

より良い研究を、今すぐ始めましょう

論文の読解から最終レビューまで、研究時間を劇的に削減しましょう。

クレジットカード登録不要

このレビューはAIが作成し、人間の編集者が確認しました。