Efficient Key-Aggregate Cryptosystem with User Revocation for Selective Group Data Sharing in Cloud Storage

被引:0
|
作者
Liu J. [1 ]
Qin J. [1 ]
Zhang X. [1 ]
Wang H. [2 ]
机构
[1] School of Mathematics, Shandong University, Jinan
[2] Skate Key Laboratory of Cryptology, P.O.Box 5159, Beijing
基金
中国国家自然科学基金;
关键词
Access control; Aggregates; Cloud computing; Cryptography; Data sharing; Key-aggregate cryptosystem; Resistance; Revocation; Security; Servers;
D O I
10.1109/TKDE.2024.3397721
中图分类号
学科分类号
摘要
Cloud computing has become prevalent due to its extensive storage resources and robust computational capacities. To protect data security and privacy, data owners opt for uploading encrypted data to the cloud. Flexible sharing of these encrypted data in a group of users is a critical functionality in cloud storage. In addition, given that users may exit the group, revocation becomes a crucial requirement in group data-sharing systems. The Key-Aggregate Cryptosystem (KAC) has become a promising mechanism for group data sharing. The decryption rights for any set of ciphertexts can be efficiently delegated by distributing a constant-size aggregate key, while the confidentiality of other ciphertexts outside the set is maintained. However, in previous KAC schemes, revocation remains a challenging task regarding key update, ciphertext re-encryption, and collision resistance. In this paper, we propose a Key-Aggregate Cryptosystem with User Revocation (KAC-UR) scheme to overcome this challenge. The KAC-UR scheme not only achieves flexible data sharing, but also can perform secure and efficient user revocation with properties including collision resistance, revocation without data owner-user communication, and constant ciphertext size. The KAC-UR scheme also enables the cloud server to perform partial decryption, thereby significantly alleviating the computational burden for users. The KAC-UR scheme is chosen plaintext attack secure under the decisional Bilinear Diffie-Hellman Exponent assumption. IEEE
引用
收藏
页码:1 / 14
页数:13
相关论文
共 50 条
  • [41] ABEBox: A data driven access control for securing public cloud storage with efficient key revocation
    Raso, Emanuele
    Bracciale, Lorenzo
    Loreti, Pierpaolo
    Bianchi, Giuseppe
    ARES 2021: 16TH INTERNATIONAL CONFERENCE ON AVAILABILITY, RELIABILITY AND SECURITY, 2021,
  • [42] Key-Exposure Protection in Public Auditing with User Revocation in Cloud Storage
    Guo, Hua
    Ma, Fangchao
    Li, Zhoujun
    Xia, Chunhe
    TRUSTED SYSTEMS, INTRUST 2014, 2015, 9473 : 127 - 136
  • [43] Enabling Efficient User Revocation in Identity-Based Cloud Storage Auditing for Shared Big Data
    Zhang, Yue
    Yu, Jia
    Hao, Rong
    Wang, Cong
    Ren, Kui
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2020, 17 (03) : 608 - 619
  • [44] Certificateless privacy preserving public auditing for dynamic shared data with group user revocation in cloud storage
    Gudeme, Jaya Rao
    Pasupuleti, Syamkumar
    Kandukuri, Ramesh
    JOURNAL OF PARALLEL AND DISTRIBUTED COMPUTING, 2021, 156 : 163 - 175
  • [45] Enabling Efficient Data Sharing With Auditable User Revocation for IoV Systems
    Zhang, Jiawei
    Li, Teng
    Obaidat, Mohammad S.
    Lin, Chi
    Ma, Jianfeng
    IEEE SYSTEMS JOURNAL, 2022, 16 (01): : 1355 - 1366
  • [46] Attribute-based public integrity auditing for shared data with efficient user revocation in cloud storage
    Gudeme, Jaya Rao
    Pasupuleti, Syam Kumar
    Kandukuri, Ramesh
    JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2021, 12 (02) : 2019 - 2032
  • [47] Attribute-based public integrity auditing for shared data with efficient user revocation in cloud storage
    Jaya Rao Gudeme
    Syam Kumar Pasupuleti
    Ramesh Kandukuri
    Journal of Ambient Intelligence and Humanized Computing, 2021, 12 : 2019 - 2032
  • [48] Efficient Integrity Auditing for Shared Data in the Cloud with Secure User Revocation
    Luo, Yuchuan
    Xu, Ming
    Fu, Shaojing
    Wang, Dongsheng
    Deng, Junquan
    2015 IEEE TRUSTCOM/BIGDATASE/ISPA, VOL 1, 2015, : 434 - 442
  • [49] Panda: Public Auditing for Shared Data with Efficient User Revocation in the Cloud
    Wang, Boyang
    Li, Baochun
    Li, Hui
    IEEE TRANSACTIONS ON SERVICES COMPUTING, 2015, 8 (01) : 92 - 106
  • [50] Panda: Public Auditing for Shared Data with Efficient User Revocation in the Cloud
    Dongare, Dnyanada
    Kadroli, Vijayalakshmi
    PROCEEDINGS OF 2016 ONLINE INTERNATIONAL CONFERENCE ON GREEN ENGINEERING AND TECHNOLOGIES (IC-GET), 2016,