Keyword guessing attacks on a public key encryption with keyword search scheme without random oracle and its improvement

被引:45
|
作者
Lu, Yang [1 ]
Wang, Gang [2 ]
Li, Jiguo [3 ,4 ]
机构
[1] Nanjing Normal Univ, Sch Comp Sci & Technol, Nanjing, Jiangsu, Peoples R China
[2] Hohai Univ, Coll Comp & Informat, Nanjing, Jiangsu, Peoples R China
[3] Fujian Normal Univ, Coll Math & Informat, Fuzhou, Fujian, Peoples R China
[4] Fujian Prov Key Lab Network Secur & Cryptol, Fuzhou, Fujian, Peoples R China
基金
中国国家自然科学基金;
关键词
Public key encryption with keyword search; Keyword guessing attack; Standard model; Outsider attacker; Malicious insider server; SECURE; EFFICIENT; SERVER;
D O I
10.1016/j.ins.2018.12.004
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Public key encryption with keyword search (PEKS) is a useful paradigm that enables a user to delegate searching capabilities on publicly encrypted data to an untrusted third party without revealing the data contents. In 2013, Fang et al. proposed a secure channel free PEKS (SCF-PEKS) scheme without random oracle and asserted that their scheme can withstand the keyword guessing (KG) attacks by outsider attackers. Later, Shao and Yang presented an improvement of Fang et al.'s SCF-PEKS scheme so as to obtain the security against KG attacks by malicious insider servers. In this paper, we demonstrate that both Fang et al.'s SCF-PEKS scheme and the improved scheme proposed by Shao and Yang fail in achieving their security goal. Our cryptanalysis shows that the former is vulnerable to the KG attacks by outsider attackers while the latter is vulnerable to the KG attacks by malicious insider servers. To overcome the security weaknesses in these two schemes, we present a new improvement of Fang et al.'s SCF-PEKS scheme. The analysis indicates that the improved scheme provides resistance against KG attacks by either outsider attackers or malicious insider servers. (C) 2018 Elsevier Inc. All rights reserved.
引用
收藏
页码:270 / 276
页数:7
相关论文
共 50 条
  • [1] Public key encryption with keyword search secure against keyword guessing attacks without random oracle
    Fang, Liming
    Susilo, Willy
    Ge, Chunpeng
    Wang, Jiandong
    INFORMATION SCIENCES, 2013, 238 : 221 - 241
  • [2] A Secure Channel Free Public Key Encryption with Keyword Search Scheme without Random Oracle
    Fang, Liming
    Susilo, Willy
    Ge, Chunpeng
    Wang, Jiandong
    CRYPTOLOGY AND NETWORK SECURITY, PROCEEDINGS, 2009, 5888 : 248 - +
  • [3] Off-line keyword guessing attacks on recent Public Key Encryption with Keyword Search Schemes
    Yau, Wei-Chuen
    Heng, Swee-Huay
    Goi, Bok-Min
    AUTONOMIC AND TRUSTED COMPUTING, PROCEEDINGS, 2008, 5060 : 100 - +
  • [4] Constructing designated server public key encryption with keyword search schemes withstanding keyword guessing attacks
    Lu, Yang
    Li, Jiguo
    INTERNATIONAL JOURNAL OF COMMUNICATION SYSTEMS, 2019, 32 (03)
  • [5] Secure searchable public key encryption scheme against keyword guessing attacks
    Rhee, Hyun Sook
    Susilo, Willy
    Kim, Hyun-Jeong
    IEICE ELECTRONICS EXPRESS, 2009, 6 (05): : 237 - 243
  • [6] SPEKS: Secure Server-Designation Public Key Encryption with Keyword Search against Keyword Guessing Attacks
    Chen, Yu-Chi
    COMPUTER JOURNAL, 2015, 58 (04): : 922 - 933
  • [7] Public-Key Encryption with Fuzzy Keyword Search: A Provably Secure Scheme under Keyword Guessing Attack
    Xu, Peng
    Jin, Hai
    Wu, Qianhong
    Wang, Wei
    IEEE TRANSACTIONS ON COMPUTERS, 2013, 62 (11) : 2266 - 2277
  • [8] Public-key encryption with keyword search: a generic construction secure against online and offline keyword guessing attacks
    Noroozi, Mahnaz
    Eslami, Ziba
    JOURNAL OF AMBIENT INTELLIGENCE AND HUMANIZED COMPUTING, 2020, 11 (02) : 879 - 890
  • [9] Public-key encryption with keyword search: a generic construction secure against online and offline keyword guessing attacks
    Mahnaz Noroozi
    Ziba Eslami
    Journal of Ambient Intelligence and Humanized Computing, 2020, 11 : 879 - 890
  • [10] Blockchain-Assisted Public-Key Encryption with Keyword Search Against Keyword Guessing Attacks for Cloud Storage
    Zhang, Yuan
    Xu, Chunxiang
    Ni, Jianbing
    Li, Hongwei
    Shen, Xuemin
    IEEE TRANSACTIONS ON CLOUD COMPUTING, 2021, 9 (04) : 1335 - 1348