State-free End-to-End Encrypted Storage and Chat Systems based on Searchable Encryption

被引:0
作者
Emura, Keita [1 ]
Ito, Ryoma [1 ]
Kanamori, Sachiko [1 ]
Nojima, Ryo [1 ]
Watanabe, Yohei [1 ,2 ]
机构
[1] Natl Inst Informat & Commun Technol, Tokyo, Japan
[2] Univ Electrocommun, Chofu, Tokyo, Japan
来源
ICEIS: PROCEEDINGS OF THE 24TH INTERNATIONAL CONFERENCE ON ENTERPRISE INFORMATION SYSTEMS - VOL 2 | 2022年
关键词
Dynamic Searchable Symmetric Encryption; State-free; Secure Storage and Chat Systems;
D O I
10.5220/0011045200003179
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Searchable symmetric encryption (SSE) has attracted significant attention because it can prevent data leakage from external devices, e.g., on clouds. SSE appears to be effective to construct such a secure system; however, it is not trivial to construct such a system from SSE in practice because other parts must be designed, e.g., user login management, defining the keyword space, and sharing secret keys among multiple users who usually do not have public key certificates. In this paper, we describe the implementation of two systems based upon the state-free dynamic SSE (DSSE) (Watanabe et al., ePrint 2021), i.e., a secure storage system (for a single user) and a chat system (for multiple users). In addition to the Watanabe et al. DSSE protocol, we employ a secure multipath key exchange (SMKEX) protocol (Costea et al., CCS 2018), which is secure against some classes of unsynchronized active attackers. It allows the chat system users without certificates to share a secret key of the DSSE protocol in a secure manner. To realize end-to-end encryption, the shared key must be kept secret; thus, we must consider how to preserve the secret on, for example, a user's local device. However, this requires additional security assumptions, e.g., tamper resistance, and it seems difficult to assume that all users have such devices. Thus, we propose a secure key agreement protocol by combining the SMKEX and login information (password) that does not require an additional tamper-resistant device. Combining the proposed key agreement protocol and the underlying state-free DSSE protocol allow users who know the password to use the systems on multiple devices.
引用
收藏
页码:106 / 113
页数:8
相关论文
共 34 条
[1]  
[Anonymous], MECAB YET ANOTHER PA
[2]  
[Anonymous], CRYPTO CHAT
[3]   Forward and Backward Private Searchable Encryption from Constrained Cryptographic Primitives [J].
Bost, Raphael ;
Minaud, Brice ;
Ohrimenko, Olga .
CCS'17: PROCEEDINGS OF THE 2017 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2017, :1465-1482
[4]   Σοφοζ - Forward Secure Searchable Encryption [J].
Bost, Raphael .
CCS'16: PROCEEDINGS OF THE 2016 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2016, :1143-1154
[5]   Dynamic Searchable Encryption in Very-Large Databases: Data Structures and Implementation [J].
Cash, David ;
Jaeger, Joseph ;
Jarecki, Stanislaw ;
Jutla, Charanjit ;
Krawczyk, Hugo ;
Rosu, Marcel-Catalin ;
Steine, Michael .
21ST ANNUAL NETWORK AND DISTRIBUTED SYSTEM SECURITY SYMPOSIUM (NDSS 2014), 2014,
[6]   New Constructions for Forward and Backward Private Symmetric Searchable Encryption [J].
Chamani, Javad Ghareh ;
Papadopoulos, Dimitrios ;
Papamanthou, Charalampos ;
Jalili, Rasool .
PROCEEDINGS OF THE 2018 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'18), 2018, :1038-1055
[7]   Password-authenticated searchable encryption [J].
Chen, Liqun ;
Huang, Kaibin ;
Manulis, Mark ;
Sekar, Venkkatesh .
INTERNATIONAL JOURNAL OF INFORMATION SECURITY, 2021, 20 (05) :675-693
[8]   Secure Opportunistic Multipath Key Exchange [J].
Costea, Sergiu ;
Choudary, Marios O. ;
Gucea, Doru ;
Tackmann, Bjorn ;
Raiciu, Costin .
PROCEEDINGS OF THE 2018 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY (CCS'18), 2018, :2077-2094
[9]   Searchable symmetric encryption: Improved definitions and efficient constructions [J].
Curtmola, Reza ;
Garay, Juan ;
Kamara, Seny ;
Ostrovsky, Rafail .
JOURNAL OF COMPUTER SECURITY, 2011, 19 (05) :895-934
[10]  
Emura K, 2021, IACR CRYPTOL EPRINT, P953