Paper 2020/1530

Security Analysis of Public Key Searchable Encryption Schemes against Injection Attacks

Arian Arabnouri, Reza Ebrahimi Atani, and Shiva Azizzadeh

Abstract

Cloud computing and cloud storage are among the most efficient technologies for storing and processing metadata. But there are many privacy concerns within this domain. Most of the challenges are coming from trusted or semi trusted cloud servers where some computations must be applied to high confidential data. Data encryption can solve some confidentiality issues on the cloud but it is not easy to provide privacy preserving data processing services such as searching a query over encrypted data. On the other hand implementing searchable encryption algorithms in cloud infrastructure helps providing data confidentiality and privacy preserving data processing and can provide searching capability as well, which is the most important step of selecting a document. First in this article, some injection attacks against searchable public key encryption schemes are described. To be more specific message injection attack and index injection attack are applied against PEKS and PERKS schemes. Afterwards, two new schemes are proposed that are secure against them and are based of dPEKS and SAE-I. Finally, efficiency and security of proposed schemes are analyzed, and some implementation issues were discussed.

Metadata
Available format(s)
PDF
Category
Public-key cryptography
Publication info
Preprint. MINOR revision.
Keywords
searchable encryption
Contact author(s)
reza ebrahimi atani @ gmail com
History
2020-12-08: received
Short URL
https://ia.cr/2020/1530
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2020/1530,
      author = {Arian Arabnouri and Reza Ebrahimi Atani and Shiva Azizzadeh},
      title = {Security Analysis of Public Key Searchable Encryption Schemes against Injection Attacks},
      howpublished = {Cryptology {ePrint} Archive, Paper 2020/1530},
      year = {2020},
      url = {https://eprint.iacr.org/2020/1530}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.