Chunking Attacks on File Backup Services using Content-Defined Chunking

Chunking Attacks on File Backup Services using Content-Defined Chunking

简介:

文件备份服务等系统通常使用内容定义分块 (CDC) 算法,尤其是基于滚动哈希技术的算法,以允许数据重复数据删除的方式将文件拆分为块。这些分块算法通常依赖于每个用户的参数,以避免泄露有关存储数据的信息。我们介绍了提取这些分块参数的攻击,并讨论了协议无关的攻击以及一旦参数被破坏(包括这些参数根本没有设置,这通常是可选的)的安全性损失。我们的参数提取攻击本身是特定于协议的,但它们的思想可以推广到许多潜在的 CDC 方案。

英文简介:

Systems such as file backup services often use content-defined chunking (CDC) algorithms, especially those based on rolling hash techniques, to split files into chunks in a way that allows for data deduplication. These chunking algorithms often depend on per-user parameters in an attempt to avoid leaking information about the data being stored. We present attacks to extract these chunking parameters and discuss protocol-agnostic attacks and loss of security once the parameters are breached (including when these parameters are not setup at all, which is often available as an option). Our parameter-extraction attacks themselves are protocol-specific but their ideas are generalizable to many potential CDC schemes.

书名
Chunking Attacks on File Backup Services using Content-Defined Chunking
语言
英语
年份
2025
页数
23页
大小
358.86 kB
标签
  • 信息安全
  • 下载
    pdf iconChunking Attacks on File Backup Services using Content-Defined Chunking.pdf
    密码
    65536

    最后更新:2025-04-12 23:58:19

    ←Understanding R1-Zero-Like Training: A Critical Perspective

    →Binary Trees by Nick Parlante