PrivDRM

Tarek Gaber, Ali Ahmed, Amira Mostafa
2020 Proceedings of the Evaluation and Assessment in Software Engineering  
P rivDR M : a p riv a cy-p r e s e r vi n g s e c u r e Di git al Ri g h t M a n a g e m e n t sy s t e m G a b er, T, Ah m e d , A a n d M o s t af a, A h t t p:// dx. d oi.o r g/ 1 0. 1 1 4 5/ 3 3 8 3 2 1 9. 3 3 8 3 2 8 9 Ti t l e P rivDR M : a p riv a cy-p r e s e rvi n g s e c u r e Digit al Ri g h t M a n a g e m e n t sy s t e m A u t h o r s G a b er, T, Ah m e d, A a n d M o s t af a, A Typ e Co nf e r e n c e o r Work s h o p It e m U RL This ve r sio n is a v ail a bl e a t : h t t
more » ... / u sir.s alfo r d. a c. u k/id/ e p ri n t/ 5 8 0 7 7/ P u b l i s h e d D a t e 2 0 2 0 U SIR is a di git al c oll e c tio n of t h e r e s e a r c h o u t p u t of t h e U niv e r si ty of S alfo r d. W h e r e c o py ri g h t p e r mi t s, full t e x t m a t e ri al h el d in t h e r e p o si to ry is m a d e fr e ely a v ail a bl e o nli n e a n d c a n b e r e a d , d o w nlo a d e d a n d c o pi e d fo r n o nc o m m e r ci al p riv a t e s t u dy o r r e s e a r c h p u r p o s e s . Pl e a s e c h e c k t h e m a n u s c ri p t fo r a n y fu r t h e r c o py ri g h t r e s t ri c tio n s. Fo r m o r e info r m a tio n, in cl u di n g o u r p olicy a n d s u b mi s sio n p r o c e d u r e , pl e a s e c o n t a c t t h e R e p o si to ry Te a m a t: u si r@ s alfo r d. a c. u k . ABSTRACT Digital Right Management (DRM) is a technology developed to prevent illegal reproduction and distribution of digital contents. It protects the rights of content owners by allowing only authorised consumers to legitimately access associated digital content. DRM systems typically use a consumer's identity for authentication. In addition, some DRM systems collect consumer's preferences to obtain a content license. Thus, the behaviour of DRM systems disadvantages the digital content consumers (i.e. neglecting consumers' privacy) focusing more on securing the digital content (i.e. biased towards content owners). This paper proposes the Privacy-Preserving Digital Rights Management System (PrivDRM) that allows a consumer to acquire digital content with its license without disclosing complete personal information and without using any third parties. To evaluate the performance of the proposed solution, a prototype of the PrivDRM system has been developed and investigated. The security analysis (attacks and threats) are analysed and showed that PrivDRM supports countermeasures for well-known attacks and achieving the privacy requirements. In addition, a comparison with some well-known proposals shows that PrivDRM outperforms those proposals in terms of processing overhead.
doi:10.1145/3383219.3383289 dblp:conf/ease/GaberAM20 fatcat:yose66gj5bfx7khdk2tm2vefva