Threshold Multi-Keyword Search for Cloud-Based Group Data Sharing

Yinbin Miao*, Robert H. Deng, Kim-Kwang Raymond Choo, Ximeng Liu, Hongwei Li

*Corresponding author for this work

Research output: Journal Publications and ReviewsRGC 21 - Publication in refereed journalpeer-review

24 Citations (Scopus)

Abstract

Searchable Encryption (SE) is a popular cryptographic primitive for building ciphertexts retrieval systems with far-reaching applications. However, existing SE schemes generally do not support threshold access control (i.e., data users must collaboratively issue search and decryption operations over encrypted cloud data) in a group-oriented cloud data sharing setting, which is increasingly receiving much attention in the research community. Thus, in this article, we first propose a Threshold Multi-keyword Search (TMS) scheme for cloud-based group data sharing (referred to as basic TMS scheme) by utilizing Shamir's secret sharing technique, to achieve threshold multi-keyword search, threshold decryption, and short record ciphertext size. Then, we extend this basic TMS to realize threshold result verification and threshold traceability (referred to as enhanced TMS). Furthermore, the enhanced TMS is extended to support public result verification and dynamic operations with the public verifier and improved hash tables, respectively. Our formal security analysis proves that both basic TMS and enhanced TMS are semi-adaptively secure and can resist Chosen-Keyword Attack (CKA). Our theoretical evaluation and empirical experiments demonstrate the potential utility of both schemes.
Original languageEnglish
Pages (from-to)2146-2162
JournalIEEE Transactions on Cloud Computing
Volume10
Issue number3
Online published3 Jun 2020
DOIs
Publication statusPublished - Jul 2022

Research Keywords

  • Searchable encryption
  • short record ciphertext size
  • threshold access control
  • threshold decryption
  • threshold multi-keyword search

Fingerprint

Dive into the research topics of 'Threshold Multi-Keyword Search for Cloud-Based Group Data Sharing'. Together they form a unique fingerprint.

Cite this