信息与智能大讲堂青年论坛
讲座题目:Result-pattern-hiding Conjunctive Searchable Symmetric Encryption with Forward and Backward Privacy
主讲嘉宾:左聪 教授,北京理工大学
讲座时间:2024年5月21日 星期二 15:00
腾讯会议:616-9016-7251
扫码注册:
内容提要:
Dynamic searchable symmetric encryption (DSSE) enables the data owner to outsource its database (document sets) to an untrusted server and make searches and updates securely and efficiently. Conjunctive DSSE can process conjunctive queries that return the documents containing multiple keywords. However, a conjunctive search could leak the keyword pair result pattern (KPRP), where attackers can learn which documents contain any two keywords involved in the query. File-injection attack shows that KPRP can be utilized to recover searched keywords. To protect data effectively, DSSE should also achieve forward privacy, i.e., hides the link between updates to previous searches, and backward privacy, i.e., prevents deleted entries being accessed by subsequent searches. Otherwise, the attacker could recover updated/searched keywords and records. However, no conjunctive DSSE scheme in the literature can hide KPRP in sub-linear search efficiency while guaranteeing forward and backward privacy.
In this work, we propose the first sub-linear KPRP-hiding conjunctive DSSE scheme (named HDXT) with both forward and backward privacy guarantees. To achieve these three security properties, we introduce a new cryptographic primitive: Attribute-updatable Hidden Map Encryption (AUHME). AUHME enables HDXT to efficiently and securely perform conjunctive queries and update the database in an oblivious way. In comparison with previous work that has weaker security guarantees, HDXT shows comparable, and in some cases, even better performance.
嘉宾简介:
左聪:Cong Zuo received a B.S. degree from the School of Computer Engineering, Nanjing Institute of Technology, and an M.S. degree from the School of Computer and Information Engineering, Zhejiang Gongshang University, China. Recently, he got his Ph.D. degree from Monash University. He is currently a professor at the school of cyberspace science and technology, Beijing Institute of Technology (BIT). Before joining BIT, he was a research fellow at Nanyang Technological University. His main research interest is on cybersecurity, in particular, Database Security and Applied Cryptography.
主办单位:
《Journal of Information and Intelligence》
《西安电子科技大学学报》
《西安电子科技大学学报(社会科学版)》
《电子科技》
协办单位:
西安电子科技大学通信工程学院
致谢:
中国科技期刊卓越行动计划高起点新刊项目
联系我们:
《西安电子科技大学学报》编辑部 电话:029-88202853 邮箱:[email protected]
《信息与智能学报(英文)》编辑部 电话:029-88201709 邮箱:[email protected]