On the Security of Verifiable Searchable Encryption Schemes

Chuang Li,Chunxiang Xu,Shanshan Li,Kefei Chen,Yinbin Miao
DOI: https://doi.org/10.1109/tcc.2021.3071779
IF: 5.697
2021-01-01
IEEE Transactions on Cloud Computing
Abstract:With cloud services, data users can retrieve encrypted data while preserving data confidentiality. However, this new paradigm suffers from many security concerns. A major concern is how to avoid insider Keyword-Guessing Attacks (KGA), which implies that the internal attackers can guess the candidate keywords successfully in an off-line manner. To address this issue, recently, two verifiable searchable encryption schemes (published in IEEE Transactions on Cloud Computing, doi: 10.1109/TCC.2020.2989296) in cloud storage were proposed which enjoys many desirable features. In this letter, we demonstrate that the schemes are insecure against insider keyword-guessing attack. Specifically, we show that the adversary can derive the keywords in an off-line manner.
computer science, information systems, theory & methods
What problem does this paper attempt to address?