Decentralized and Privacy-Preserving Public Auditing for Cloud Storage Based on Blockchain

被引:27
作者
Miao, Ying [1 ]
Huang, Qiong [1 ,2 ]
Xiao, Meiyan [1 ]
Li, Hongbo [1 ]
机构
[1] South China Agr Univ, Coll Math & Informat, Guangzhou 510642, Peoples R China
[2] Guangzhou Key Lab Intelligent Agr, Guangzhou 510642, Peoples R China
基金
中国国家自然科学基金;
关键词
Cloud computing; Servers; Data privacy; Bitcoin; Data integrity; Decentralization; privacy preserving; public auditing; cloud storage; blockchain; SECURITY; SCHEME;
D O I
10.1109/ACCESS.2020.3013153
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Cloud storage systems provide a flexible, convenient and friendly way for users to outsource data. However, users lose control of their data once outsourcing them to the cloud. Public auditing was introduced to ensure data integrity, in which a third-party auditor (TPA) is delegated to execute auditing tasks. In general, TPA generates and sends challenge information to the cloud server (CS), which proves data possession accordingly. However, the TPA may not perform public auditing protocol honestly or may even collude with CS to deceive users. Some existing public auditing schemes utilize blockchain to resist against the malicious TPA. However, the CS may guess the challenge messages and there is a risk that users' information may be leaked to the TPA during the process of auditing. In this paper, we propose a decentralized and privacy-preserving public auditing scheme based on blockchain (DBPA), in which a blockchain is utilized as an unpredictable source for the generation of (random) challenge information, and the auditor is required to record the audit process onto the blockchain. Due to the characteristics of blockchain, users can check the audit results publicly. Moreover, zero-knowledge proof is used in DBPA to protect user's privacy during the audit process so that the response information returned by the CS does not leak information about user's data. Security analysis and performance evaluation show that DBPA is secure and efficient.
引用
收藏
页码:139813 / 139826
页数:14
相关论文
共 50 条
  • [1] Security and Privacy in Decentralized Energy Trading Through Multi-Signatures, Blockchain and Anonymous Messaging Streams
    Aitzhan, Nurzhan Zhumabekuly
    Svetinovic, Davor
    [J]. IEEE TRANSACTIONS ON DEPENDABLE AND SECURE COMPUTING, 2018, 15 (05) : 840 - 852
  • [2] DaSCE: Data Security for Cloud Environment with Semi-Trusted Third Party
    Ali, Mazhar
    Malik, Saif U. R.
    Khan, Samee U.
    [J]. IEEE TRANSACTIONS ON CLOUD COMPUTING, 2017, 5 (04) : 642 - 655
  • [3] [Anonymous], 2019, SCI CHINA INFORM SCI
  • [4] [Anonymous], 2019, INT J COMMUN SYST, DOI DOI 10.1002/DAC.3940
  • [5] [Anonymous], 2003, ADV CRYPTOLOGY ASIAC
  • [6] [Anonymous], 2019, INT J EMBED SYST
  • [7] Outsourced Proofs of Retrievability
    Armknecht, Frederik
    Bohli, Jens-Matthias
    Karame, Ghassan O.
    Liu, Zongren
    Reuter, Christian A.
    [J]. CCS'14: PROCEEDINGS OF THE 21ST ACM CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2014, : 831 - 843
  • [8] Ateniese G, 2007, CCS'07: PROCEEDINGS OF THE 14TH ACM CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, P598
  • [9] Privacy-Preserving Indexing and Query Processing for Secure Dynamic Cloud Storage
    Du, Minxin
    Wang, Qian
    He, Meiqi
    Weng, Jian
    [J]. IEEE TRANSACTIONS ON INFORMATION FORENSICS AND SECURITY, 2018, 13 (09) : 2320 - 2332
  • [10] MedBlock: Efficient and Secure Medical Data Sharing Via Blockchain
    Fan, Kai
    Wang, Shangyang
    Ren, Yanhui
    Li, Hui
    Yang, Yintang
    [J]. JOURNAL OF MEDICAL SYSTEMS, 2018, 42 (08)