Close
  • Latest News
  • Artificial Intelligence
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Logo
  • Latest News
  • Artificial Intelligence
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Home Cloud
    • Cloud
    • Cybersecurity

    Microsoft Research Unveils VC3 Cloud Workload Privacy Project

    By
    Pedro Hernandez
    -
    May 18, 2015
    Share
    Facebook
    Twitter
    Linkedin
      cloud security and privacy

      Extending its “lockbox” approach to securing data on the cloud, Microsoft’s research arm today announced a new technology dubbed Verifiable Confidential Cloud Computing, or VC3.

      Last year, the Redmond, Wash.-based software giant announced a new process for safeguarding cloud data called a lockbox. Encompassing a set of technologies, along with strict policies and IT practices at the company’s cloud data centers, the approach essentially places customers in complete control of their data and requires that they issue their approval before even Microsoft’s own administrators can access protected information.

      Now, Microsoft is using a similar strategy to protect cloud workloads.

      “This new technology, called VC3, uses enhanced security measures to make sure that your data is locked in a special lockbox, even when you are accessing it, to make calculations or other transactions,” stated Allison Linn, a Microsoft Research writer, in a May 18 announcement. “The technology ensures that even the employees of the company hosting you in the cloud have no way of accessing or manipulating your data.”

      In an abstract of a paper presented during this week’s IEEE Symposium on Security and Privacy in San Jose, Calif., Microsoft’s researchers stated that VC3 is “the first system that allows users to run distributed MapReduce computations in the cloud while keeping their code and data secret, and ensuring the correctness and completeness of their results.” MapReduce is a popular framework used to harness the power of several servers to process massive data sets.

      “VC3 runs on unmodified Hadoop, but crucially keeps Hadoop, the operating system and the hypervisor out of the TCB; thus, confidentiality and integrity are preserved even if these large components are compromised,” they continued. Microsoft’s researchers also asserted that delivering these protections comes at a small price, performance-wise. Compared with unprotected Hadoop, “VC3’s average runtime overhead is negligible for its base security guarantees,” they noted.

      Even administrators with physical access to VC3-protected servers will find the technology tough to crack, wrote the researchers. “Our threat model accounts for powerful adversaries that may control the whole cloud provider’s software and hardware infrastructure, except for the certified physical processors involved in the computation.”

      A hypothetical financial services company can load client data “into the secure hardware in the cloud, where the data is decrypted, processed and re-encrypted,” Linn said. “No one else—including the people who work at the company running the cloud-based service—can see or access the data.”

      Cloud companies have zero visibility into what goes on within the VC3 environment, reiterated Manuel Costa, Microsoft Research Cambridge principal researcher. “The cloud provider cannot see the data or the code that the customers are using for the analysis,” he said in a statement.

      Sriram Rajamani, assistant managing director of Microsoft Research India, said in a statement that the technology can help close the trust gap between on-premise and cloud-based IT systems. “We are investigating ways by which we can tell the customer, ‘Even though you move your data to the cloud, you are still in control,'” he said.

      Pedro Hernandez
      Pedro Hernandez is a contributor to eWEEK and the IT Business Edge Network, the network for technology professionals. Previously, he served as a managing editor for the Internet.com network of IT-related websites and as the Green IT curator for GigaOM Pro.
      Get the Free Newsletter!
      Subscribe to Daily Tech Insider for top news, trends & analysis
      This email address is invalid.
      Get the Free Newsletter!
      Subscribe to Daily Tech Insider for top news, trends & analysis
      This email address is invalid.

      MOST POPULAR ARTICLES

      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Applications

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Cloud

      IGEL CEO Jed Ayres on Edge and...

      James Maguire - June 14, 2022 0
      I spoke with Jed Ayres, CEO of IGEL, about the endpoint sector, and an open source OS for the cloud; we also spoke about...
      Read more
      IT Management

      Intuit’s Nhung Ho on AI for the...

      James Maguire - May 13, 2022 0
      I spoke with Nhung Ho, Vice President of AI at Intuit, about adoption of AI in the small and medium-sized business market, and how...
      Read more
      Applications

      Kyndryl’s Nicolas Sekkaki on Handling AI and...

      James Maguire - November 9, 2022 0
      I spoke with Nicolas Sekkaki, Group Practice Leader for Applications, Data and AI at Kyndryl, about how companies can boost both their AI and...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2022 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.

      ×