Comment on "A Lightweight Auditing Service for Shared Data With Secure User Revocation in Cloud Storage"

被引:1
|
作者
Chang, Jinyong [1 ]
Shao, Bilin [2 ]
Ji, Yanyan [2 ]
Bian, Genqing [1 ]
机构
[1] XiAn Univ Architecture & Technol, Sch Informat Control & Engn, Xian 710055, Shaanxi, Peoples R China
[2] XiAn Univ Architecture & Technol, Sch Management, Xian 710055, Shaanxi, Peoples R China
基金
中国国家自然科学基金;
关键词
Security; Servers; Protocols; Mathematical model; Resistance; Heuristic algorithms; Computer architecture; Cloud storage; provable security; shared data; user revocation;
D O I
10.1109/TSC.2021.3056660
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Recently, Rabaninejad et al. (2019) proposed an excellent auditing protocol for shared data (CoRPA, for short) [IEEE Trans. Ser. Comp., DOI 10.1109/TSC.2019.2919627], which has many better properties, like the identity-privacy, collusion resistant, efficient user revocation and supporting dynamic update etc. In addition, they also presented the detailed security analysis for CoRPA and described the reduction from the soundness of CoRPA to discrete logarithm assumption. However, in this article, we analyze their original security reduction (to discrete logarithm) and find out that it is incorrect and misleading. That is, the soundness of CoRPA cannot be obtained from the discrete logarithm assumption. Now, we give a new proof for their CoRPA based on the square-CDH assumption, which is also used by them to prove the security of homomorphic proxy re-signature scheme. We also hope the new security proof will provide theoretical guarantee when using CoRPA in practical scenes.
引用
收藏
页码:2633 / 2634
页数:2
相关论文
共 50 条
  • [1] A Lightweight Auditing Service for Shared Data with Secure User Revocation in Cloud Storage
    Rabaninejad, Reyhaneh
    Attari, Mahmoud Ahmadian
    Asaar, Maryam Rajabzadeh
    Aref, Mohammad Reza
    [J]. IEEE TRANSACTIONS ON SERVICES COMPUTING, 2022, 15 (01) : 1 - 15
  • [2] Efficient Integrity Auditing for Shared Data in the Cloud with Secure User Revocation
    Luo, Yuchuan
    Xu, Ming
    Fu, Shaojing
    Wang, Dongsheng
    Deng, Junquan
    [J]. 2015 IEEE TRUSTCOM/BIGDATASE/ISPA, VOL 1, 2015, : 434 - 442
  • [3] A Lightweight Secure Auditing Scheme for Shared Data in Cloud Storage
    Tian, Junfeng
    Jing, Xuan
    [J]. IEEE ACCESS, 2019, 7 : 68071 - 68082
  • [4] Efficient auditing for shared data in the cloud with secure user revocation and computations outsourcing
    Luo, Yuchuan
    Xu, Ming
    Huang, Kai
    Wang, Dongsheng
    Fu, Shaojing
    [J]. COMPUTERS & SECURITY, 2018, 73 : 492 - 506
  • [5] Public Integrity Auditing for Shared Data with Efficient and Secure User Revocation in Cloud Computing
    Gudeme, Jaya Rao
    Pasupuleti, Syam Kumar
    Kandukuri, Ramesh
    [J]. 2018 INTERNATIONAL CONFERENCE ON ADVANCES IN COMMUNICATION AND COMPUTING TECHNOLOGY (ICACCT), 2018, : 588 - 593
  • [6] Public Auditing for shared data in cloud with safe user revocation
    Samundiswary, S.
    Dongre, Nilima M.
    [J]. 2017 INTERNATIONAL CONFERENCE OF ELECTRONICS, COMMUNICATION AND AEROSPACE TECHNOLOGY (ICECA), VOL 1, 2017, : 53 - 57
  • [7] Auditing For Shared Dynamic Cloud Data with Group User Revocation
    Riyaz, T.
    Saritha, S. J.
    [J]. PROCEEDINGS OF THE 2016 INTERNATIONAL CONFERENCE ON COMMUNICATION AND ELECTRONICS SYSTEMS (ICCES), 2016, : 378 - 380
  • [8] Public Auditing for Shared Data with Efficient User Revocation in the Cloud
    Wang, Boyang
    Li, Baochun
    Li, Hui
    [J]. 2013 PROCEEDINGS IEEE INFOCOM, 2013, : 2904 - 2912
  • [9] Public Auditing for Shared Data Utilizing Backups with User Revocation in the Cloud
    LIU Hequn
    WANG Baocang
    LU Ke
    GAO Ziyuan
    ZHAN Yu
    [J]. Wuhan University Journal of Natural Sciences, 2018, 23 (02) : 129 - 138
  • [10] Panda: Public Auditing for Shared Data with Efficient User Revocation in the Cloud
    Wang, Boyang
    Li, Baochun
    Li, Hui
    [J]. IEEE TRANSACTIONS ON SERVICES COMPUTING, 2015, 8 (01) : 92 - 106