Enabling Anonymous Authorized Auditing over Keyword-Based Searchable Ciphertexts in Cloud Storage Systems

Xin Wang,Xiaojun Zhang,Xinpeng Zhang,Yinbin Miao,Jingting Xue
DOI: https://doi.org/10.1109/tsc.2023.3315972
IF: 11.019
2023-01-01
IEEE Transactions on Services Computing
Abstract:Cloud storage provides Data Owners (DOs) with flexible data storage and management services, but simultaneously poses various security concerns, of which the integrity of outsourced data, as the most important security issue, determines the widespread use of cloud storage services. In this article, we present an $\mathbf {\overline{A}}$ nonymous $\mathbf {\overline{A}}$ uthorized $\mathbf {\overline{A}}$ uditing scheme over $\mathbf {\overline{K}}$ eyword-based $\mathbf {\overline{S}}$ earchable $\mathbf {\overline{C}}$ iphertexts (AAA-KSC) in cloud storage systems. In AAA-KSC, we devise an anonymous authorization mechanism, only the designated Third Party Auditor (TPA) could decrypt DO's identity and execute auditing tasks. In particular, by utilizing the verification metadata, without breaking the privacy of DO's concerned keyword, TPA could check the integrity of outsourced ciphertexts containing the specific keyword. More attractively, we design an identity-based homomorphic signature algorithm that makes use of the polynomial encapsulation mechanism to tackle with large scale data files, and thus AAA-KSC enables TPA to fulfil integrity verification with nearly constant computational costs, which are independent of the number of encrypted files that contain the same keyword. We provide the correctness, and prove that AAA-KSC is adequately secure. The performance evaluation experimentally demonstrates the high efficiency and feasibility of AAA-KSC in the real applications of cloud storage systems.
What problem does this paper attempt to address?