Securing multi-client range queries over encrypted data

被引:0
|
作者
Park, Jae Hwan [1 ]
Rezaeifar, Zeinab [2 ]
Hahn, Changhee [1 ]
机构
[1] Seoul Natl Univ Sci & Technol, Seoul, South Korea
[2] Univ West England, Bristol, England
关键词
Order-revealing encryption; Property-preserving hash; Secure query; Multi-client searchable encryption;
D O I
10.1007/s10586-024-04472-w
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Order-revealing encryption (ORE) allows secure range query processing over encrypted databases through a publicly accessible comparison function, while keeping other details concealed. Since parameter-hiding ORE (ASIACRYPT 2018) demonstrated improved privacy preservation at the cost of O(n2)\documentclass[12pt]{minimal} \usepackage{amsmath} \usepackage{wasysym} \usepackage{amsfonts} \usepackage{amssymb} \usepackage{amsbsy} \usepackage{mathrsfs} \usepackage{upgreek} \setlength{\oddsidemargin}{-69pt} \begin{document}$$\mathcal {O}(n<^>2)$$\end{document} comparison operations, where n is the bit length of plaintexts, Lv et al. (ESORICS 2021) introduced an efficient ORE scheme that reduced the comparison operations to O(n)\documentclass[12pt]{minimal} \usepackage{amsmath} \usepackage{wasysym} \usepackage{amsfonts} \usepackage{amssymb} \usepackage{amsbsy} \usepackage{mathrsfs} \usepackage{upgreek} \setlength{\oddsidemargin}{-69pt} \begin{document}$$\mathcal {O}(n)$$\end{document}, all while accommodating multiple clients. In this paper, we identify a vulnerability in Lv et al.'s ORE scheme, which we refer to as "Query Reusability." Exploiting this vulnerability, we develop an optimal query recovery attack. According to our experiment on the real-world datasets, our attack can recover a 64-bit plaintext query within a mere 83ms. We then propose msq-ORE, a multi-client secure range query ORE scheme that effectively mitigates the vulnerability while maintaining computational costs comparable to the state-of-the-art ORE scheme. Lastly, our performance analysis results show that the proposed scheme achieves efficacy.
引用
收藏
页码:9679 / 9692
页数:14
相关论文
共 50 条
  • [21] Multi-client Outsourced Computation
    Li, Peili
    Xu, Haixia
    Ji, Yuanyuan
    INFORMATION SECURITY AND CRYPTOLOGY, INSCRYPT 2015, 2016, 9589 : 397 - 409
  • [22] An Efficient Non-interactive Multi-client Searchable Encryption with Support for Boolean Queries
    Sun, Shi-Feng
    Liu, Joseph K.
    Sakzad, Amin
    Steinfeld, Ron
    Yuen, Tsz Hon
    COMPUTER SECURITY - ESORICS 2016, PT I, 2016, 9878 : 154 - 172
  • [23] eSkyline: Processing Skyline Queries over Encrypted Data
    Bothe, Suvarna
    Karras, Panagiotis
    Vlachou, Akrivi
    PROCEEDINGS OF THE VLDB ENDOWMENT, 2013, 6 (12): : 1338 - 1341
  • [24] A secure Algorithm for Executing Queries over Encrypted Data
    Refaie, Rasha
    Ahmed, Abd El-Aziz
    Hamza, Nermin
    Al-Monem, Mahmood
    Helny, Hesham
    PROCEEDINGS OF 2015 THIRD IEEE WORLD CONFERENCE ON COMPLEX SYSTEMS (WCCS), 2015,
  • [25] FastGeo: Efficient Geometric Range Queries on Encrypted Spatial Data
    Wang, Boyang
    Li, Ming
    Xiong, Li
    IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2019, 16 (02) : 245 - 258
  • [26] A Technique for Handling Range and Fuzzy Match Queries on Encrypted Data
    Ali, Shaukat
    Rauf, Azhar
    Javed, Huma
    INTERNATIONAL ARAB JOURNAL OF INFORMATION TECHNOLOGY, 2013, 10 (03) : 239 - 244
  • [27] Multi-client video streaming over wireless local area networks
    Seferoglu, Hulya
    Gurbuz, Ozgur
    Ercetin, Ozgur
    Altunbasak, Yucel
    2006 IEEE 14TH SIGNAL PROCESSING AND COMMUNICATIONS APPLICATIONS, VOLS 1 AND 2, 2006, : 615 - +
  • [28] Batch Auditing for Multi-client Dynamic Data in Multi-cloud Storage
    Liu, Xin
    Jiang, Yujia
    INTERNATIONAL JOURNAL OF SECURITY AND ITS APPLICATIONS, 2014, 8 (06): : 197 - 210
  • [29] Bounds on the multi-client incremental computing
    Lin, CC
    Yin, HY
    FOURTH ANNUAL ACIS INTERNATIONAL CONFERENCE ON COMPUTER AND INFORMATION SCIENCE, PROCEEDINGS, 2005, : 653 - 658
  • [30] Efficient and Privacy-Preserving Multi-Party Skyline Queries Over Encrypted Data
    Ding, Xiaofeng
    Wang, Zuan
    Zhou, Pan
    Choo, Kim-Kwang Raymond
    Jin, Hai
    IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2021, 16 : 4589 - 4604