Professional Documents
Culture Documents
Alan Mislove
Web 1.0
Web 2.0
Alan Mislove
My groups research
Thesis: OSNs (Web 2.0) fundamentally different from Web 1.0 Introducing new and unforeseen challenges
Need new approaches to address these challenges
Alan Mislove
Alan Mislove
Telvia
Telecom Italia
Fastweb
NGI
Alan Mislove
Fraction of documents
(ranked from most to least popular)
[1] Breslau et al., INFOCOM, 1999, [2] Mislove et al., WSDM, 2010
22.02.12 Networks Class Alan Mislove 7
In classic Web:
Caching top 10% serves between 55% [1] and 95% [2] of requests Success of CDNs, web caches, ...
[1] Breslau et al., INFOCOM, 1999, [2] Arlitt et al. IEEE Network, 2000, [3] Mislove et al., WSDM, 2010
22.02.12 Networks Class Alan Mislove 8
Telvia
Telecom Italia
Fastweb
NGI
Alan Mislove
In classic Web:
Workload was center-to-edge Caching, CDNs take load off origin server
Alan Mislove
10
Alan Mislove
11
Idea: Introduce a middlebox to allow browsers to communicate To build WebCloud, need to make
Client-side changes Deploy middleboxes
Alan Mislove
13
Client-side changes
Want to turn web browser into web server
Implement WebCloud in Javascript Add it to the sites pages
Alan Mislove
14
Middleboxes
Add redirector proxies in each ISP
Like Akamai proxy, but doesnt store any content Maintains open connect to online web visitors Run by OSN provider
Alan Mislove
15
Client A
Client B
Privacy implications
k-anonymity for viewers
22.02.12 Networks Class Alan Mislove 16
(MB/s)
100 80 60 40 20 00:00 Fri 00:00 Sat 00:00 Sun 00:00 Mon 00:00 Tue 00:00 Wed 00:00 Thu 00:00 Fri
Time
(one week)
Summary
Beginnings of shift in patterns of content creation + exchange
Patterns changing from center to edge to edge to edge Less biased popularity distribution
But, still using centralized delivery architectures WebCloud: Step towards decentralized Web content delivery
Users help serve content they create Implemented using existing browser features; no client changes
Alan Mislove
18
Alan Mislove
19
User accounts
Account abstraction now ubiquitous
Represents one or more people in a computer system Encapsulates privileges
Traditionally verified by service operators Trend: Online services with free accounts
Not verified by operators
Sybils
Free accounts with privileges leading to Sybil attacks [IPTPS 2002]
Single person creates many accounts
Why?
Natural: Gain extra privileges Incentives set up to encourage this
Alan Mislove
21
Auctions
Marketplace
Among most successful Web sites
eBay alone: $62 b in 2010
$90
Significant monetary losses
Recent arrest of user who stole $717 k from 5,000 users Used >250 accounts
22.02.12 Networks Class Alan Mislove 23
Alan Mislove
24
Estimating risk
Max-flow: $5
$300 $5 $100 $4000 $50
Buyer
Seller
$200
Summary
Increasing trend of online services with free accounts
Opens new vector for attack
Alan Mislove
28
Privacy on OSNs
Privacy is a signicant issue on OSNs
Received recent press, research attention
What is underlying privacy debate? 1. Sites control personal information of millions of users 2. Users are expected to manage their privacy
5,830 word privacy policy Over 100 dierent settings Default is open-to-the-world (over 800 million users)
Alan Mislove
29
Alan Mislove
31
Default
Fraction of Content
Photo
Video
Status
Link
Note
36% of all content shared with the default (visible to all users)
Photos have the most privacy-conscious settings
16.10.2009 CCIS/COE Retreat Alan Mislove 33
Me 2 2 40 39 0
All 4 11 69 47 0
218 (28%)
296 (39%)
Alan Mislove
37
Summary
Privacy an important issue on OSNs
But, to date, no quantication of privacy problem
Findings:
36% of all content shared with the default settings Privacy settings match expectations less than 40% of the time
Even when users has already modied setting
Conclusion
Social networks and computer systems increasingly integrated
New way of organizing information Leading to new opportunities, challenges
My groups goal: Leverage social networks in systems design WebCloud: Addresses challenges with emerging workloads Bazaar: Addresses challenges with free accounts Privacy: Addresses difference between privacy perception and reality
Alan Mislove
39
Questions?
Work done in collaboration with
Ben Adams (MPI-I), Bobby Bhattacharjee (University of Maryland), Meeyoung Cha (KAIST), Peter Druschel (MPI-SWS), Krishna P. Gummadi (MPI-SWS), Andreas Haeberlen (University of Pennsylvania), Ancsa Hannk (Northeastern University), Jonathan Katz (University of Maryland), Hema Swetha Koppula (Yahoo Research India), Sune Lehmann (TU Copenhagen), Yabing Liu (Northeastern University), Arash Molavi (Northeastern University), Jukka-Pekka Onnela (Harvard University), Ansley Post (Google), J. Niels Rosenquist (Harvard Medical School), Neil Spring (University of Maryland), Ravi Sundaram (Northeastern University), Malveeka Tewari (University of California, San Diego), Bimal Viswanath (MPI-SWS), Liang Zhang (Northeastern University), Fangfei Zhou (Northeastern University)
Alan Mislove
40