2021 Vol.30 No.2

Published on 02 April 2021

Request Merging Based Cross-User Deduplication for Cloud Storage with Resistance Against Appending Chunks Attack
TANG Xin, ZHANG Yi, ZHOU Linna, et al.
2021, 30(2): 199-209.   doi: 10.1049/cje.2021.01.004
Abstract(286) HTML(115) PDF(28)
Cross-user deduplication is an emerging technique to eliminate redundant uploading in cloud storage. Its deterministic response indicating the existence of data creates a side channel to attackers, which makes the privacy in the cloud at risk. Such kind of attack as well as further appending chunks attack, still cannot be well resisted in current solutions, thus is becoming a big obstacle in using this technique. We propose a secure cross-user deduplication, called Request merging based deduplication scheme (RMDS), which takes the lead to consider resistance against appending chunks attack in a lightweight way, let alone side channel attack. We utilize the proposed XOR based chunk-level server-side storage structure together with a request merging strategy to obfuscate attackers in minimized communication overhead. The experiment results show that, with security guaranteed, the proposed scheme is more efficient comparing with the state of the art.
Security Analysis of A Stream Cipher with Proven Properties
GAO Juntao, LI Xuelian
2021, 30(2): 210-218.   doi: 10.1049/cje.2021.01.002
Abstract(81) HTML(28) PDF(13)
Si and Ding proposed a stream cipher with two keys (the first and the second key) and an expected security strength. To further measure the security, we analyze the stream cipher by considering the selective discrete Fourier spectra attack and the fast selective discrete Fourier spectra attack. The two attacks reveal a fact that the second key is more important than the first key, that is, if the second key is leaked out, the first key can be obtained with a lower time complexity than that of the expected security. In addition, we analyze the ability of the stream cipher to resist the guess-anddetermine attack. The results show an attacker is able to gain the two keys with an exponentially improved time complexity and a polynomial data complexity. It implies that we need a securer permutation over finite fields to design a new binary additive stream cipher to achieve the expected security level.
P2HBT: Partially Policy Hidden E-Healthcare System with Black-Box Traceability
YING Zuobin, SI Yuanping, MA Jianfeng, et al.
2021, 30(2): 219-231.   doi: 10.1049/cje.2021.01.005
Abstract(70) HTML(34) PDF(7)
Electronic health record (EHR), as the core of the e-healthcare system, is an electronic version of patient medical history, which records personal healthrelated information. EHR embodies the value of disease monitoring through large-scale sharing via the Cloud service provider (CSP). However, the health data-centric feature makes EHR more preferable to the adversaries compared with other outsourcing data. Moreover, there may even be malicious users who deliberately leak their access privileges for benefits. An e-healthcare system with a black-box traceable and robust data security mechanism is presented for the first time. Specifically, we propose an effective P2HBT, which can perform fine-grained access control on encrypted EHRs, prevent the leakage of privacy contained in access policies, and support tracing of traitors. Under the standard model, the scheme is proved fully secure. Performance analysis demonstrates that P2HBT can achieve the design goals and outperform existing schemes in terms of storage and computation overhead.
Nonsingularity of Feedback Shift Registers of Degree at Most Three over a Finite Field
LIU Junying, JIANG Yupeng, ZHENG Qunxiong, et al.
2021, 30(2): 232-237.   doi: 10.1049/cje.2021.01.009
Abstract(39) HTML(17) PDF(12)
As a kind of generators of pseudorandom sequences, the Feedback shift register (FSR) is widely used in channel coding, cryptography and digital communication. A necessary and sufficient condition for the nonsingularity of a feedback shift register of degree at most three over a finite field is established. Using the above result, we can easily determine the nonsingularity of a feedback shift register from the algebraic normal form of the corresponding feedback function.
An Efficient Post-quantum Identity-Based Signature
YANG Zhichao, DUNG H. Duong, WILLY Susilo, et al.
2021, 30(2): 238-248.   doi: 10.1049/cje.2021.01.006
Abstract(57) HTML(26) PDF(11)
Digital signature is one of the most important cryptography primitives. Recently, more and more works have been done to construct signatures over lattice problems to keep them secure in the quantum age. Among them, a ring-based signature scheme named Dilithium is the most efficient one and a candidate in the third round of the National Institute of Standards and Technology's post-quantum cryptography project. To make those schemes work well in large network, we constructed the first ring-based Identity-based signature (IBS) scheme for light-weight authentication. The construction in this paper relies on the transformations introduced by Bellare et al. in Journal of Cryptology (Vol.22, No.1, pp.1–61, 2009) and its security can be proved under the hardness of ringlearning with errors problem in the random oracle model. Due to better trapdoor and polynomial ring setting, our proposed scheme are much better than the previous ones in terms of both computation and communication complexities.
Attribute-Based Worker Selection Scheme by Using Blockchain in Decentralized Crowdsourcing Scenario
YANG Qiliang, ZHANG Mingrui, ZHOU Yanwei, et al.
2021, 30(2): 249-257.   doi: 10.1049/cje.2021.01.007
Abstract(52) HTML(20) PDF(9)
Traditional crowdsourcing based on centralized management platform is vulnerable to Distributed denial of service (DDoS) attack and single point of failure. Combining blockchain technology with crowdsourcing can well solve the above problems, enabling users to realize peer-to-peer transactions and collaboration based on decentralized trust in distributed systems where nodes do not need to trust each other. Although the current methods have solved the above problems, task publishers select workers based on their reputation values, which has two disadvantages: subjectivity and difficulty in initial value setting. Due to the complexity of crowdsourcing network, there will be malicious users in the network. The requirement for anonymity protects both legitimate and malicious users. In order to solve these problems, we propose an attribute-based worker selection scheme using the private set intersection technology. Our scheme also realizes the malicious user identity disclosure function. A concrete example of our scheme is given.
