Making programs forget: enforcing lifetime for sensitive data

  • Authors:
  • Jayanthkumar Kannan;Gautam Altekar;Petros Maniatis;Byung-Gon Chun

  • Affiliations:
  • Google Inc.;UC, Berkeley;Intel Labs Berkeley;Intel Labs Berkeley

  • Venue:
  • HotOS'13 Proceedings of the 13th USENIX conference on Hot topics in operating systems
  • Year:
  • 2011

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper introduces guaranteed data lifetime, a novel system property ensuring that sensitive data cannot be retrieved from a system beyond a specified time. The trivial way to achieve this is to "reboot"; however, this is disruptive from the user's perspective, and may not even eliminate disk copies. We discuss an alternate approach based on state re-incarnation where data expiry is completely transparent to the user, and can be used even if the system is not designed a priori to provide the property.