{"id":"https://openalex.org/W4200317998","doi":"https://doi.org/10.1109/istas52410.2021.9629173","title":"Cloud computing data breaches: A review of U.S. regulation and data breach notification literature","display_name":"Cloud computing data breaches: A review of U.S. regulation and data breach notification literature","publication_year":2021,"publication_date":"2021-10-28","ids":{"openalex":"https://openalex.org/W4200317998","doi":"https://doi.org/10.1109/istas52410.2021.9629173"},"language":"en","primary_location":{"id":"doi:10.1109/istas52410.2021.9629173","is_oa":false,"landing_page_url":"https://doi.org/10.1109/istas52410.2021.9629173","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Symposium on Technology and Society (ISTAS)","raw_type":"proceedings-article"},"type":"review","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5020175023","display_name":"David Kolevski","orcid":"https://orcid.org/0009-0006-0885-6083"},"institutions":[{"id":"https://openalex.org/I204824540","display_name":"University of Wollongong","ror":"https://ror.org/00jtmb277","country_code":"AU","type":"education","lineage":["https://openalex.org/I204824540"]}],"countries":["AU"],"is_corresponding":true,"raw_author_name":"David Kolevski","raw_affiliation_strings":["School of Computing and Information Technology, University of Wollongong, Wollongong, Australia"],"affiliations":[{"raw_affiliation_string":"School of Computing and Information Technology, University of Wollongong, Wollongong, Australia","institution_ids":["https://openalex.org/I204824540"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5052796632","display_name":"Katina Michael","orcid":"https://orcid.org/0000-0003-3118-5557"},"institutions":[{"id":"https://openalex.org/I55732556","display_name":"Arizona State University","ror":"https://ror.org/03efmqc40","country_code":"US","type":"education","lineage":["https://openalex.org/I55732556"]},{"id":"https://openalex.org/I4210136895","display_name":"Institute for the Future","ror":"https://ror.org/049tcsg76","country_code":"US","type":"nonprofit","lineage":["https://openalex.org/I4210136895"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Katina Michael","raw_affiliation_strings":["School for the Future of Innovation in Society, Arizona State University, Tempe, Arizona"],"affiliations":[{"raw_affiliation_string":"School for the Future of Innovation in Society, Arizona State University, Tempe, Arizona","institution_ids":["https://openalex.org/I4210136895","https://openalex.org/I55732556"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5075856842","display_name":"Roba Abbas","orcid":"https://orcid.org/0000-0003-2516-4880"},"institutions":[{"id":"https://openalex.org/I204824540","display_name":"University of Wollongong","ror":"https://ror.org/00jtmb277","country_code":"AU","type":"education","lineage":["https://openalex.org/I204824540"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Roba Abbas","raw_affiliation_strings":["School of Business, University of Wollongong, Wollongong, Australia"],"affiliations":[{"raw_affiliation_string":"School of Business, University of Wollongong, Wollongong, Australia","institution_ids":["https://openalex.org/I204824540"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5012397176","display_name":"Mark Freeman","orcid":"https://orcid.org/0000-0002-5142-6007"},"institutions":[{"id":"https://openalex.org/I204824540","display_name":"University of Wollongong","ror":"https://ror.org/00jtmb277","country_code":"AU","type":"education","lineage":["https://openalex.org/I204824540"]}],"countries":["AU"],"is_corresponding":false,"raw_author_name":"Mark Freeman","raw_affiliation_strings":["School of Computing and Information Technology, University of Wollongong, Wollongong, Australia"],"affiliations":[{"raw_affiliation_string":"School of Computing and Information Technology, University of Wollongong, Wollongong, Australia","institution_ids":["https://openalex.org/I204824540"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":4,"corresponding_author_ids":["https://openalex.org/A5020175023"],"corresponding_institution_ids":["https://openalex.org/I204824540"],"apc_list":null,"apc_paid":null,"fwci":0.7618,"has_fulltext":false,"cited_by_count":8,"citation_normalized_percentile":{"value":0.72109533,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"7"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9990000128746033,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T11241","display_name":"Advanced Malware Detection Techniques","score":0.9990000128746033,"subfield":{"id":"https://openalex.org/subfields/1711","display_name":"Signal Processing"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10734","display_name":"Information and Cyber Security","score":0.9979000091552734,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9977999925613403,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/data-breach","display_name":"Data breach","score":0.902159571647644},{"id":"https://openalex.org/keywords/cloud-computing","display_name":"Cloud computing","score":0.7339931130409241},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.6459609270095825},{"id":"https://openalex.org/keywords/health-insurance-portability-and-accountability-act","display_name":"Health Insurance Portability and Accountability Act","score":0.6356077194213867},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5238756537437439},{"id":"https://openalex.org/keywords/internet-privacy","display_name":"Internet privacy","score":0.5036069750785828},{"id":"https://openalex.org/keywords/outsourcing","display_name":"Outsourcing","score":0.44376519322395325},{"id":"https://openalex.org/keywords/big-data","display_name":"Big data","score":0.4140048027038574},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.373380571603775},{"id":"https://openalex.org/keywords/confidentiality","display_name":"Confidentiality","score":0.1151723563671112},{"id":"https://openalex.org/keywords/operating-system","display_name":"Operating system","score":0.09930747747421265}],"concepts":[{"id":"https://openalex.org/C165609540","wikidata":"https://www.wikidata.org/wiki/Q1172486","display_name":"Data breach","level":2,"score":0.902159571647644},{"id":"https://openalex.org/C79974875","wikidata":"https://www.wikidata.org/wiki/Q483639","display_name":"Cloud computing","level":2,"score":0.7339931130409241},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.6459609270095825},{"id":"https://openalex.org/C2778306010","wikidata":"https://www.wikidata.org/wiki/Q606563","display_name":"Health Insurance Portability and Accountability Act","level":3,"score":0.6356077194213867},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5238756537437439},{"id":"https://openalex.org/C108827166","wikidata":"https://www.wikidata.org/wiki/Q175975","display_name":"Internet privacy","level":1,"score":0.5036069750785828},{"id":"https://openalex.org/C46934059","wikidata":"https://www.wikidata.org/wiki/Q61515","display_name":"Outsourcing","level":2,"score":0.44376519322395325},{"id":"https://openalex.org/C75684735","wikidata":"https://www.wikidata.org/wiki/Q858810","display_name":"Big data","level":2,"score":0.4140048027038574},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.373380571603775},{"id":"https://openalex.org/C71745522","wikidata":"https://www.wikidata.org/wiki/Q2476929","display_name":"Confidentiality","level":2,"score":0.1151723563671112},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.09930747747421265},{"id":"https://openalex.org/C162853370","wikidata":"https://www.wikidata.org/wiki/Q39809","display_name":"Marketing","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"id":"doi:10.1109/istas52410.2021.9629173","is_oa":false,"landing_page_url":"https://doi.org/10.1109/istas52410.2021.9629173","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"2021 IEEE International Symposium on Technology and Society (ISTAS)","raw_type":"proceedings-article"},{"id":"pmh:oai:ro.uow.edu.au:test2021-5092","is_oa":false,"landing_page_url":"https://ro.uow.edu.au/test2021/4083","pdf_url":null,"source":{"id":"https://openalex.org/S4306400510","display_name":"Research Online (University of Wollongong)","issn_l":null,"issn":null,"is_oa":false,"is_in_doaj":false,"is_core":false,"host_organization":"https://openalex.org/I204824540","host_organization_name":"University of Wollongong","host_organization_lineage":["https://openalex.org/I204824540"],"host_organization_lineage_names":[],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false,"raw_source_name":"Test Series for Scopus Harvesting 2021","raw_type":"text"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.4699999988079071,"id":"https://metadata.un.org/sdg/16","display_name":"Peace, Justice and strong institutions"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":45,"referenced_works":["https://openalex.org/W44775132","https://openalex.org/W58356759","https://openalex.org/W82799411","https://openalex.org/W194277394","https://openalex.org/W959974061","https://openalex.org/W1980106339","https://openalex.org/W1982409303","https://openalex.org/W2014143000","https://openalex.org/W2068516265","https://openalex.org/W2072566257","https://openalex.org/W2078338966","https://openalex.org/W2092649680","https://openalex.org/W2122589149","https://openalex.org/W2133043886","https://openalex.org/W2150323452","https://openalex.org/W2212352689","https://openalex.org/W2275382523","https://openalex.org/W2285943860","https://openalex.org/W2599457898","https://openalex.org/W2746431160","https://openalex.org/W2763711162","https://openalex.org/W2771902086","https://openalex.org/W2783317467","https://openalex.org/W2784743202","https://openalex.org/W2793573497","https://openalex.org/W2929585781","https://openalex.org/W2949170220","https://openalex.org/W2955853305","https://openalex.org/W2963421739","https://openalex.org/W2964263083","https://openalex.org/W3044221329","https://openalex.org/W3091792111","https://openalex.org/W3106583048","https://openalex.org/W3122401678","https://openalex.org/W3123017391","https://openalex.org/W3125079283","https://openalex.org/W6601832452","https://openalex.org/W6602381150","https://openalex.org/W6607961116","https://openalex.org/W6624984542","https://openalex.org/W6682584883","https://openalex.org/W6748463777","https://openalex.org/W6765965890","https://openalex.org/W6766033768","https://openalex.org/W7009906770"],"related_works":["https://openalex.org/W4281619067","https://openalex.org/W3003699225","https://openalex.org/W4284891686","https://openalex.org/W3005536857","https://openalex.org/W2991390974","https://openalex.org/W3186824323","https://openalex.org/W4289450884","https://openalex.org/W1604607099","https://openalex.org/W2754241978","https://openalex.org/W3159983249"],"abstract_inverted_index":{"Cloud":[0],"computing":[1,81,172,192],"services":[2,32,173],"have":[3],"enjoyed":[4],"explosive":[5],"growth":[6],"over":[7],"the":[8,44,51,84,93,100,115,122,129,136,144,181,199],"last":[9],"decade.":[10],"Users":[11],"are":[12,19],"typically":[13,53],"businesses":[14],"and":[15,25,28,64,89,99,135,159,167,205,214],"government":[16,168],"agencies":[17],"who":[18,56,67],"able":[20],"to":[21,153,198],"scale":[22],"their":[23,71,175],"storage":[24],"processing":[26],"requirements,":[27],"choose":[29],"from":[30,155,190],"pre-defined":[31],"(e.g.":[33,55,66],"specific":[34],"software-as-a-service":[35],"applications).":[36],"But":[37],"with":[38],"this":[39],"outsourcing":[40],"has":[41],"also":[42],"come":[43],"potential":[45],"for":[46,70],"data":[47,109,127,133,139,157,161,186],"breaches":[48,162,187],"targeted":[49],"at":[50,59,210],"end-user,":[52],"consumers":[54],"purchase":[57],"goods":[58],"an":[60],"online":[61],"retail":[62],"store),":[63],"citizens":[65],"transact":[68],"information":[69],"social":[72],"security":[73],"needs).":[74],"This":[75],"paper":[76,145],"briefly":[77],"introduces":[78],"U.S.-based":[79],"cloud":[80,171,191],"regulation,":[82],"including":[83],"U.S.":[85,101,116],"Health":[86],"Insurance":[87],"Portability":[88],"Accountability":[90],"Act":[91,97,104],"(HIPPA),":[92],"Gramm":[94],"Leach":[95],"Bliley":[96],"(GLBA),":[98],"Stored":[102],"Communications":[103],"(SCA).":[105],"We":[106],"present":[107],"how":[108],"breach":[110],"notification":[111],"(DBN)":[112],"works":[113],"in":[114],"by":[117],"examining":[118],"three":[119],"mini-case":[120],"examples:":[121],"2011":[123],"Sony":[124],"PlayStation":[125],"Network":[126],"breach,":[128,134],"2015":[130],"Anthem":[131],"Healthcare":[132],"2017":[137],"Equifax":[138],"breach.":[140],"The":[141],"findings":[142],"of":[143,170,183,185,201],"show":[146],"that":[147,160],"there":[148],"is":[149,188],"a":[150],"systemic":[151],"failure":[152],"learn":[154],"past":[156],"breaches,":[158],"not":[163],"only":[164],"affect":[165],"business":[166],"clients":[169],"but":[174],"respective":[176],"end-user":[177],"customer":[178],"base.":[179],"Finally,":[180],"level":[182],"sensitivity":[184],"increasing,":[189],"hacks":[193],"on":[194],"video":[195],"game":[196],"platforms,":[197],"targeting":[200],"more":[202],"lucrative":[203],"network":[204],"computer":[206],"crime":[207],"abuses":[208],"aiming":[209],"invasive":[211],"private":[212],"health":[213],"financial":[215],"data.":[216]},"counts_by_year":[{"year":2025,"cited_by_count":3},{"year":2024,"cited_by_count":2},{"year":2023,"cited_by_count":1},{"year":2022,"cited_by_count":2}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
