

浏览全部资源
扫码关注微信
1.扬州大学信息工程学院,江苏扬州 225127
2.扬州大学广陵学院,江苏扬州 225128
3.广东省信息安全技术重点实验室,广东广州 510275
Received:01 July 2022,
Revised:2022-11-21,
Published:25 May 2023
移动端阅览
王经纬,吴静雯,殷新春.抗共谋攻击的多授权电子健康记录共享方案[J].电子学报,2023,51(05):1179-1186.
WANG Jing-wei,WU Jing-wen,YIN Xin-chun.Collusion-Resistant Multi-Authority Electronic Health Records Sharing Scheme[J].ACTA ELECTRONICA SINICA,2023,51(05):1179-1186.
王经纬,吴静雯,殷新春.抗共谋攻击的多授权电子健康记录共享方案[J].电子学报,2023,51(05):1179-1186. DOI: 10.12263/DZXB.20220769.
WANG Jing-wei,WU Jing-wen,YIN Xin-chun.Collusion-Resistant Multi-Authority Electronic Health Records Sharing Scheme[J].ACTA ELECTRONICA SINICA,2023,51(05):1179-1186. DOI: 10.12263/DZXB.20220769.
为解决属性基加密方案中用户权限变更不灵活以及无法抵抗共谋攻击的问题,本文提出一种抗共谋攻击的多授权电子健康记录共享方案.采用版本控制的方式实现属性撤销,属性授权中心为非撤销用户提供更新密钥并更新密文,而没有更新密钥的用户将无法继续获取数据.为了保证数据访问的效率,系统将大部分计算外包至云服务器执行.此外,所有属性授权中心需要生成各自的公私钥对以抵抗共谋攻击.本方案在随机谕言模型下满足选择明文攻击不可区分安全,与其他多中心方案相比,功能更加实用且解密开销至少降低了45.9%.
To achieve flexible user revocation and collusion attack resistance
this paper proposes a collusion- resistant multi-authority EHRs (Electronic Health Records) sharing scheme. Version control is used to achieve user revocation. Attribute authorities need to distribute update keys for non-revoked users as well as update the ciphertexts in the cloud
and users without update keys will not be able to access data. To guarantee the performance of data retrieval
most of the computation is outsourced to the cloud. Besides
all the attribute authorities need to generate a pair of public key and secret key to resist collusion attacks. The proposed scheme is indistinguishably secure against chosen-plaintext attack under the random oracle model. Compared to other multi-authority schemes
the proposed scheme is practical in function and the overhead of the decryption is reduced by at least 45.9%.
沈剑 , 周天祺 , 曹珍富 . 云数据安全保护方法综述 [J]. 计算机研究与发展 , 2021 , 58 ( 10 ): 2079 - 2098 .
SHEN J , ZHOU T Q , CAO Z F . Protection methods for cloud data security [J]. Journal of Computer Research and Development , 2021 , 58 ( 10 ): 2079 - 2098 . (in Chinese)
冯登国 , 张敏 , 张妍 , 等 . 云计算安全研究 [J]. 软件学报 , 2011 , 22 ( 1 ): 71 - 83 .
FENG D G , ZHANG M , ZHANG Y , et al . Study on cloud computing security [J]. Journal of Software , 2011 , 22 ( 1 ): 71 - 83 . (in Chinese)
张玉清 , 王晓菲 , 刘雪峰 , 等 . 云计算环境安全综述 [J]. 软件学报 , 2016 , 27 ( 06 ): 1328 - 1348 .
ZHANG Y Q , WANG X F , LIU X F , et al . Survey on cloud computing security [J]. Journal of Software , 2016 , 27 ( 06 ): 1328 - 1348 . (in Chinese)
LI H W , YANG Y , DAI Y S , et al . Achieving secure and efficient dynamic searchable symmetric encryption over medical cloud data [J]. IEEE Transactions on Cloud Computing , 2020 , 8 ( 2 ): 484 - 494 .
GE C P , SUSILO W , BAEK J , et al . Revocable attribute-based encryption with data integrity in clouds [J]. IEEE Transactions on Dependable and Secure Computing , 2022 , 19 ( 5 ): 2864 - 2872 .
牛淑芬 , 谢亚亚 , 杨平平 , 等 . 区块链上基于云辅助的属性基可搜索加密方案 [J]. 计算机研究与发展 , 2021 , 58 ( 4 ): 811 - 821 .
NIU S F , XIE Y Y , YANG P P , et al . Cloud-assisted attribute- based searchable encryption scheme on blockchain [J]. Journal of Computer Research and Development , 2021 , 58 ( 4 ): 811 - 821 . (in Chinese)
OSTROVSKY R , SAHAI A , WATERS B . Attribute-based encryption with non-monotonic access structures [C]// Proceedings of the 14th ACM Conference on Computer and Communications Security . New York : ACM , 2007 : 195 - 203 .
HE K , GUO J , WENG J , et al . Attribute-based hybrid Boolean keyword search over outsourced encrypted data [J]. IEEE Transactions on Dependable and Secure Computing , 2020 , 17 ( 6 ): 1207 - 1217 .
佘维 , 霍丽娟 , 刘炜 , 等 . 一种可隐藏敏感文档和发送者身份的区块链隐蔽通信模型 [J]. 电子学报 , 2022 , 50 ( 4 ): 1002 - 1013 .
SHE W , HUO L J , LIU W , et al . A blockchain-based covert communication model for hiding sensitive documents and sender identity [J]. Acta Electronica Sinica , 2022 , 50 ( 4 ): 1002 - 1013 . (in Chinese)
赵志远 , 朱智强 , 王建华 , 等 . 属性可撤销且密文长度恒定的属性基加密方案 [J]. 电子学报 , 2018 , 46 ( 10 ): 2391 - 2399 .
ZHAO Z Y , ZHU Z Q , WANG J H , et al . Attribute-based encryption with attribute revocation and constant-size ciphertext [J]. Acta Electronica Sinica , 2018 , 46 ( 10 ): 2391 - 2399 . (in Chinese)
BETHENCOURT J , SAHAI A , WATERS B . Ciphertext-policy attribute-based encryption [C]// Proceedings of the 2007 IEEE Symposium on Security and Privacy (SP '07) . Piscataway : IEEE Computer Society , 2007 : 321 - 334 .
WATERS B . Ciphertext-policy attribute-based encryption: an expressive, efficient, and provably secure realization [C]// Proceedings of the 14th International Conference on Practice and Theory in Public Key Cryptography . Berlin : Springer , 2011 : 53 - 70 .
ZENG P , ZHANG Z T , LU R X , et al . Efficient policy-hiding and large universe attribute-based encryption with public traceability for Internet of medical things [J]. IEEE Internet of Things Journal , 2021 , 8 ( 13 ): 10963 - 10972 .
LEWKO A B , WATERS B . Decentralizing attribute-based encryption [C]// Proceedings of the 30th Annual International Conference on the Theory and Applications of Cryptographic Techniques . Berlin : Springer , 2011 : 568 - 588 .
ROUSELAKIS Y , WATERS B . Efficient statically-secure large-universe multi-authority attribute-based encryption [C]// Proceedings of the 19th International Conference on Financial Cryptography and Data Security . Berlin : Springer , 2015 : 315 - 332 .
仲红 , 崔杰 , 朱文龙 , 等 . 高效且可验证的多授权机构属性基加密方案 [J]. 软件学报 , 2018 , 29 ( 7 ): 2006 - 2017 .
ZHONG H , CUI J , ZHU W L , et al . Efficient and verifiable muti-authority attribute based encryption scheme [J]. Journal of Software , 2018 , 29 ( 7 ): 2006 - 2017 . (in Chinese)
MIAO Y B , DENG R H , LIU X M , et al . Multi-authority attribute-based keyword search over encrypted cloud data [J]. IEEE Transactions on Dependable and Secure Computing , 2021 , 18 ( 4 ): 1667 - 1680 .
WEI J H , CHEN X F , HUANG X Y , et al . RS-HABE: Rrevocable-storage and hierarchical attribute-based access scheme for secure sharing of e-health records in public cloud [J]. IEEE Transactions on Dependable and Secure Computing , 2021 , 18 ( 5 ): 2301 - 2315 .
闫玺玺 , 刘媛 , 李子臣 , 等 . 支持隐私保护的多机构属性基加密方案 [J]. 计算机研究与发展 , 2018 , 55 ( 4 ): 846 - 853 .
YAN X X , LIU Y , LI Z C , et al . Multi-authority attribute-based encryption scheme with privacy protection [J]. Journal of Computer Research and Development , 2018 , 55 ( 4 ): 846 - 853 . (in Chinese)
YANG K , JIA X H . Expressive, efficient, and revocable data access control for multi-authority cloud storage [J]. IEEE Transactions on Parallel and Distributed Systems , 2014 , 25 ( 7 ): 1735 - 1744 .
VARRI U S , KASANI S , PASUPULETI S K , et al . FELT-ABKS: Fog-enabled lightweight traceable attribute-based keyword search over encrypted data [J]. IEEE Internet of Things Journal , 2022 , 9 ( 10 ): 7559 - 7571 .
CHEN J W , MA H D . Efficient decentralized attribute-based access control for cloud storage with user revocation [C]// 2014 IEEE International Conference on Communications (ICC) . Piscataway : IEEE , 2014 : 3782 - 3787 .
HAN D Z , PAN N N , LI K C . A traceable and revocable ciphertext-policy attribute-based encryption scheme based on privacy protection [J]. IEEE Transactions on Dependable and Secure Computing , 2022 , 19 ( 1 ): 316 - 327 .
AKINYELE J A , GARMAN C , et al . Charm: a framework for rapidly prototyping cryptosystems [J]. Journal of Cryptographic Engineering , 2013 , 3 ( 2 ): 111 - 128 .
0
Views
13
下载量
0
CSCD
Publicity Resources
Related Articles
Related Author
Related Institution
京公网安备11010802024621