Authorized Keyword Search on Mobile Devices in Secure Data Outsourcing

被引:4
作者
Liu, Qin [1 ]
Peng, Yu [1 ]
Jiang, Hongbo [1 ]
Wu, Jie [2 ]
Wang, Tian [3 ,4 ]
Peng, Tao [5 ]
Wang, Guojun [5 ]
机构
[1] Hunan Univ, Coll Comp Sci & Elect Engn, Changsha 410082, Hunan, Peoples R China
[2] Temple Univ, Dept Comp & Informat Sci, Philadelphia, PA 19122 USA
[3] Beijing Normal Univ, Inst Artificial Intelligence & Future Networks, Zhuhai 519000, Guangdong, Peoples R China
[4] UIC, Zhuhai 519000, Guangdong, Peoples R China
[5] Guangzhou Univ, Sch Comp Sci & Cyber Engn, Guangzhou 510006, Guangdong, Peoples R China
关键词
Indexes; Cryptography; Servers; Hospitals; Mobile computing; Databases; Data privacy; Authorized search; backward privacy; data outsourcing; dynamic searchable symmetric encryption; forward privacy; ENCRYPTION;
D O I
10.1109/TMC.2023.3288160
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
With the increasing awareness of secure data outsourcing, dynamic searchable symmetric encryption (DSSE) that enables searches and updates over encrypted data has begun to receive growing attention. Despite promising, existing DSSE schemes with forward and backward privacy are still hard to achieve authorized keyword searches on mobile devices while supporting secure and flexible updates. In this article, we propose a DSSE scheme, named FLY++ based on a flexible index structure Hybrid that incorporates the merits of inverted indexes and forward indexes while compacting the index size. Specifically, FLY++ encrypts the newly added data with a fresh key and disperses previous keys into Hybrid for forward privacy, while applying symmetric puncturable encryption (SPE) and a dual-key mechanism to realize backward privacy further. Compared with the state-of-the-art work, FLY++ has the following advantages: (1) Authorized search. It dispenses with caching or re-encrypting search results, enabling a mobile device to search only designated keywords over the data outsourced before authorization. (2) Flexibility. It not only allows for sublinear search time, but also simultaneously supports fine-grained and coarse-grained updates of outsourced data. The detailed security analysis and extensive experiments conducted on a real dataset demonstrate the security and practicality of FLY++, respectively.
引用
收藏
页码:4181 / 4195
页数:15
相关论文
共 34 条
[1]   Forward and Backward Private Searchable Encryption with SGX [J].
Amjad, Ghous ;
Kamara, Seny ;
Moataz, Tarik .
PROCEEDINGS OF THE 12TH EUROPEAN WORKSHOP ON SYSTEMS SECURITY (EUROSEC 2019), 2019,
[2]  
Boneh D, 2013, LECT NOTES COMPUT SC, V8270, P280, DOI 10.1007/978-3-642-42045-0_15
[3]   Forward and Backward Private Searchable Encryption from Constrained Cryptographic Primitives [J].
Bost, Raphael ;
Minaud, Brice ;
Ohrimenko, Olga .
CCS'17: PROCEEDINGS OF THE 2017 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2017, :1465-1482
[4]   Σοφοζ - Forward Secure Searchable Encryption [J].
Bost, Raphael .
CCS'16: PROCEEDINGS OF THE 2016 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2016, :1143-1154
[5]   Dynamic Searchable Encryption in Very-Large Databases: Data Structures and Implementation [J].
Cash, David ;
Jaeger, Joseph ;
Jarecki, Stanislaw ;
Jutla, Charanjit ;
Krawczyk, Hugo ;
Rosu, Marcel-Catalin ;
Steine, Michael .
21ST ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2014), 2014,
[6]   New Constructions for Forward and Backward Private Symmetric Searchable Encryption [J].
Chamani, Javad Ghareh ;
Papadopoulos, Dimitrios ;
Papamanthou, Charalampos ;
Jalili, Rasool .
PROCEEDINGS OF THE 2018 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'18), 2018, :1038-1055
[7]  
Chang YC, 2005, LECT NOTES COMPUT SC, V3531, P442
[8]  
Cimpanu C., 2020, Intel investigating breach after 20 GB of internal documents leak online
[9]  
Curtain RF, 2006, LECT NOTES CONTR INF, V329, P79, DOI 10.1007/11664550_5
[10]   Dynamic Searchable Encryption with Small Client Storage [J].
Demertzis, Ioannis ;
Chamani, Javad Ghareh ;
Papadopoulos, Dimitrios ;
Papamanthou, Charalampos .
27TH ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2020), 2020,