On the Security of Privacy-Preserving Attribute-Based Keyword Search in Shared Multi-Owner Setting

被引:7
|
作者
Sun, Jianfei [1 ]
Xiong, Hu [1 ]
Nie, Xuyun [1 ]
Zhang, Yinghui [1 ,2 ]
Wu, Pengfei [1 ,3 ]
机构
[1] Univ Elect & Sci Technol China, Sch Informat & Software Engn, Chengdu 610051, Sichuan, Peoples R China
[2] Xian Univ Post & Telecommun, Xian 710121, Shaanxi, Peoples R China
[3] Peking Univ, Sch Software & Microelect, Beijing 102600, Peoples R China
关键词
Indexes; Keyword search; Encryption; Data mining; Public key; Attribute based keyword search; offline keyword guessing attacks; security vulnerabilities;
D O I
10.1109/TDSC.2019.2953744
中图分类号
TP3 [计算技术、计算机技术];
学科分类号
0812 ;
摘要
Recently in the IEEE Transactions on Dependable and Secure Computing (doi: 10.1109/TDSC.2019.28976752019), Miao et al. proposed a novel construction of Privacy-Preserving Attribute-Based Keyword Search in Shared Multi-owner Setting (ABKS-SM), which can delegate keyword search tasks to cloud server provider (CSP) without revealing any useful information. Although the authors claimed that the offline keyword guessing attacks can be resisted in ABKS-SM scheme, we show that this scheme indeed suffers from four types of offline keyword guessing attacks and hence fails to gain the claimed security property, which is an important goal to be achieved in searchable encryption schemes. Specifically, given the concrete attacks, we demonstrate that the underlying keyword information can be extracted from both encrypted keyword indexes and trapdoors by any malicious user and any adversarial CSP. We hope that the similar security vulnerabilities could be avoided in the future design of related searchable encryption schemes.
引用
收藏
页码:2518 / 2519
页数:2
相关论文
共 50 条
  • [21] Verifiable Attribute-based Keyword Search Scheme with Privacy Preservation
    Liu Xueyan
    Lu Tingting
    Yang Xiaotao
    [J]. JOURNAL OF ELECTRONICS & INFORMATION TECHNOLOGY, 2021, 43 (01) : 218 - 225
  • [22] Privacy-Preserving Multi-Keyword Search in Information Networks
    Tang, Yuzhe
    Liu, Ling
    [J]. IEEE TRANSACTIONS ON KNOWLEDGE AND DATA ENGINEERING, 2015, 27 (09) : 2424 - 2437
  • [23] Attribute-Based Encryption with Multi-Keyword Search
    Li, Runhe
    Zheng, Dong
    Zhang, Yinghui
    Su, Haonan
    Yang, Menglei
    Lang, Pengzhen
    [J]. 2017 IEEE SECOND INTERNATIONAL CONFERENCE ON DATA SCIENCE IN CYBERSPACE (DSC), 2017, : 172 - 177
  • [24] PIMRS: achieving privacy and integrity-preserving multi-owner ranked-keyword search over encrypted cloud data
    Li, Jinguo
    Wen, Mi
    Lu, Kejie
    Gu, Chunhua
    [J]. SECURITY AND COMMUNICATION NETWORKS, 2016, 9 (16) : 3765 - 3776
  • [25] Constraints Validation in Privacy-Preserving Attribute-Based Access Control
    Oleshchuk, Vladimir
    [J]. 2015 IEEE 8TH INTERNATIONAL CONFERENCE ON INTELLIGENT DATA ACQUISITION AND ADVANCED COMPUTING SYSTEMS: TECHNOLOGY AND APPLICATIONS (IDAACS), VOLS 1-2, 2015, : 429 - 431
  • [26] A Privacy-Preserving Attribute-Based Authentication Scheme for Cloud Computing
    Huang, Chanying
    Wei, Songjie
    Yan, Kedong
    Zhang, Gongxuan
    Fu, Anmin
    [J]. 2018 ASIA-PACIFIC SIGNAL AND INFORMATION PROCESSING ASSOCIATION ANNUAL SUMMIT AND CONFERENCE (APSIPA ASC), 2018, : 260 - 265
  • [27] Efficient and privacy-preserving traceable attribute-based encryption in blockchain
    Axin Wu
    Yinghui Zhang
    Xiaokun Zheng
    Rui Guo
    Qinglan Zhao
    Dong Zheng
    [J]. Annals of Telecommunications, 2019, 74 : 401 - 411
  • [28] Privacy-Preserving Electronic Ticket Scheme with Attribute-Based Credentials
    Han, Jinguang
    Chen, Liqun
    Schneider, Steve
    Treharne, Helen
    Wesemeyer, Stephan
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2021, 18 (04) : 1836 - 1849
  • [29] Distance-Bounding, Privacy-Preserving Attribute-Based Credentials
    Bosk, Daniel
    Bouget, Simon
    Buchegger, Sonja
    [J]. CRYPTOLOGY AND NETWORK SECURITY, CANS 2020, 2020, 12579 : 147 - 166
  • [30] Privacy-Preserving and Dynamic Multi-Attribute Conjunctive Keyword Search Over Encrypted Cloud Data
    Zhang, Lili
    Zhang, Yuqing
    Ma, Hua
    [J]. IEEE ACCESS, 2018, 6 : 34214 - 34225