Revocable and Efficient Blockchain-Based Fine-Grained Access Control Against EDoS Attacks in Cloud Storage

被引:0
|
作者
Zhang, Qingyang [1 ,2 ]
Xu, Chang [1 ,2 ]
Zhong, Hong [1 ,2 ]
Gu, Chengjie [3 ,4 ]
Cui, Jie [1 ,2 ]
机构
[1] Anhui Univ, Sch Comp Sci & Technol, Key Lab Intelligent Comp & Signal Proc, Minist Educ, Hefei 230039, Peoples R China
[2] Anhui Univ, Anhui Engn Lab IoT Secur Technol, Hefei 230039, Peoples R China
[3] Anhui Univ Sci & Technol, Sch Publ Secur & Emergency Management, Hefei 231131, Peoples R China
[4] Secur Res Inst, New Grp H3C, Hefei 230088, Peoples R China
基金
中国国家自然科学基金;
关键词
Cloud computing; Blockchains; Security; Servers; Access control; Encryption; Industrial Internet of Things; ciphertext-policy attributed-based encryption; cloud storage service; EDoS attacks; blockchain; ATTRIBUTE-BASED ENCRYPTION; SECURITY; SYSTEM;
D O I
10.1109/TC.2024.3398502
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Users have become accustomed to storing data on the cloud using ciphertext policy attribute-based encryption (CP-ABE) for fine-grained access control. However, this encryption method does not consider the ability of malicious users to launch thousands of file download requests when launching an economic denial of sustainability attack (EDoS), which may be more expensive for data owners. Existing solutions typically use a cloud server to verify the download permissions of the data users. However, cloud servers are not completely trusted and cloud server providers and colluding data users can still launch an EDoS attack. With our scheme, using CP-ABE, a blockchain is introduced for verifying the download permission of data users. In addition, we propose a new mechanism to solve the problem of malicious user revocations under EDoS attacks by updating the ciphertext and symmetric encryption technology. A formal security proof has demonstrated that the proposed scheme is suitable for plaintext attack security. Theoretical and experimental analyses show that our scheme performs more efficiently than previous methods.
引用
收藏
页码:2012 / 2024
页数:13
相关论文
共 50 条
  • [1] A Blockchain-based Secure Cloud Files Sharing Scheme with Fine-Grained Access Control
    Liu, Yuke
    Zhang, Junwei
    Gao, Qi
    2018 INTERNATIONAL CONFERENCE ON NETWORKING AND NETWORK APPLICATIONS (NANA), 2018, : 277 - 283
  • [2] RACC: An efficient and revocable fine grained access control model for cloud storage
    Dhal, Kasturi
    Pattnaik, Prasant Kumar
    Rai, Satyananda Champati
    INTERNATIONAL JOURNAL OF KNOWLEDGE-BASED AND INTELLIGENT ENGINEERING SYSTEMS, 2019, 23 (01) : 21 - 32
  • [3] Secure Storage and Deletion Based on Blockchain for Cloud Data with Fine-grained Access Control
    Zhou Yousheng
    Chen Lujun
    JOURNAL OF ELECTRONICS & INFORMATION TECHNOLOGY, 2021, 43 (07) : 1856 - 1863
  • [4] Secure Storage and Deletion Based on Blockchain for Cloud Data with Fine-grained Access Control
    Zhou, Yousheng
    Chen, Lüjun
    Dianzi Yu Xinxi Xuebao/Journal of Electronics and Information Technology, 2021, 43 (07): : 1856 - 1863
  • [5] Capability and Blockchain-Based Fine-Grained and Flexible Access Control Model
    Chen, Yanru
    Tao, Li
    Liang, Bing
    Sun, Limin
    Li, Yang
    Xing, Bin
    Chen, Liangyin
    IEEE NETWORK, 2023, 37 (06): : 197 - 205
  • [6] A Blockchain-Based Framework for Data Sharing With Fine-Grained Access Control in Decentralized Storage Systems
    Wang, Shangping
    Zhang, Yinglong
    Zhang, Yaling
    IEEE ACCESS, 2018, 6 : 38437 - 38450
  • [7] Fine-grained Access Control Scheme Based on Cloud Storage
    Niu, Xiaojie
    2017 INTERNATIONAL CONFERENCE ON COMPUTER NETWORK, ELECTRONIC AND AUTOMATION (ICCNEA), 2017, : 512 - 515
  • [8] Achieving Revocable Fine-Grained Cryptographic Access Control over Cloud Data
    Yang, Yanjiang
    Ding, Xuhua
    Lu, Haibing
    Wan, Zhiguo
    Zhou, Jianying
    INFORMATION SECURITY (ISC 2013), 2015, 7807 : 293 - 308
  • [9] A Secure and Efficient Revocation Scheme for Fine-Grained Access Control in Cloud Storage
    Lv, Zhiquan
    Hong, Cheng
    Zhang, Min
    Feng, Dengguo
    2012 IEEE 4TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING TECHNOLOGY AND SCIENCE (CLOUDCOM), 2012,
  • [10] A blockchain-based framework for electronic medical records sharing with fine-grained access control
    Sun, Jin
    Ren, Lili
    Wang, Shangping
    Yao, Xiaomin
    PLOS ONE, 2020, 15 (10):