QPause: Quantum-Resistant Password-Protected Data Outsourcing for Cloud Storage

Jingwei Jiang,Ding Wang,Guoyin Zhang
DOI: https://doi.org/10.1109/tsc.2023.3331000
IF: 11.019
2024-01-01
IEEE Transactions on Services Computing
Abstract:Cloud storage provides an efficient and convenient way to manage data, but it also poses significant challenges to data security. The central issue with cloud storage is to ensure the ability of the data owner to control and manage the outsourced data. The password-protected secret sharing (PPSS) integrates password authentication and secret sharing to offer a fresh approach to secure private data. Users can share the risk of device corruption with a well-designed PPSS scheme and manage outsourced data with only human-memorizable passwords. To the best of our knowledge, none of the existing PPSS schemes can resist security threats in the post-quantum era, and there is an urgent need to design quantum-resistant solutions. However, post-quantum cryptography varies significantly from traditional cryptography, and it is challenging to design a quantum-resistant password-protected secret-sharing scheme for cloud storage. In this work, we take the first substantial step towards this challenge by proposing QPause, a quantum-resistant password-protected data outsourcing scheme for cloud storage. We first design a basic quantum-resistant PPSS scheme based on the lattice secure against semi-honest adversaries with a secure channel. On this foundation, we propose a quantum-resistant round-optimal password-protected data outsourcing scheme against strong adversaries. In addition, we formally prove that our scheme is secure and robust under various attacks against adversaries with quantum computing capabilities. The comparison results show that our new scheme outperforms its foremost counterparts.
What problem does this paper attempt to address?