Paper 2024/1302

Privacy-Preserving in Cloud Networks: An Efficient, Revocable and Authenticated Encrypted Search Scheme

Yibo Cao, Beijing University of Posts and Telecommunications, University of Hong Kong
Shiyuan Xu, University of Hong Kong
Gang Xu, North China University of Technology
Xiu-Bo Chen, Beijing University of Posts and Telecommunications
Yuling Chen, Guizhou University
Siu-Ming Yiu, University of Hong Kong
Abstract

With the widespread development of cloud networks, performing searches on encrypted data (without decryption) has become a critical issue. Public key authenticated encryption with keyword search (PAEKS) allows for the retrieval of encrypted data while resisting insider keyword guessing attacks (IKGAs). Most PAEKS schemes do not support access control in multi-receiver models. To address this limitation, attribute-based encryption has been introduced. However, the access privileges for the ciphertext may change, and it is vulnerable to quantum computing attacks, which limits its applicability and compromises security in cloud networks. In this paper, we propose RABAEKS, the first revocable and authenticated attribute-based encrypted search scheme over lattice in cloud networks. Our design allows the cloud server to enforce access control for data receivers during the search process. For practical implementation, we introduce a revocation mechanism for receivers, enabling dynamic access control. We then formalize and analyze the security of our scheme rigorously. Through performance evaluations and comparisons, we demonstrate that the search time, ciphertext size, and trapdoor size of our RABAEKS scheme are independent of the number of keywords. Additionally, the computational overhead for ciphertext generation, trapdoor generation, and the search phase in RABAEKS is, at most, 0.91%, 39.21%, and 80.95% of that of previous approaches, respectively, indicating it is efficient and practical in cloud networks.

Metadata
Available format(s)
PDF
Category
Applications
Publication info
Preprint.
Keywords
Cloud networksPrivacy-preserving protocolAuthenticated encrypted searchRevocationAccess control
Contact author(s)
caoyibo @ bupt edu cn
syxu2 @ cs hku hk
gx @ ncut edu cn
flyover100 @ 163 com
ylchen3 @ gzu edu cn
smyiu @ cs hku hk
History
2025-06-16: revised
2024-08-21: received
See all versions
Short URL
https://ia.cr/2024/1302
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2024/1302,
      author = {Yibo Cao and Shiyuan Xu and Gang Xu and Xiu-Bo Chen and Yuling Chen and Siu-Ming Yiu},
      title = {Privacy-Preserving in Cloud Networks: An Efficient, Revocable and Authenticated Encrypted Search Scheme},
      howpublished = {Cryptology {ePrint} Archive, Paper 2024/1302},
      year = {2024},
      url = {https://eprint.iacr.org/2024/1302}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.