On the security of the hierarchical attribute based encryption scheme proposed by Wang et al

10/13/2018
by   Mohammad Ali, et al.
0

Ciphertext-policy hierarchical attribute-based encryption (CP-HABE) is a promising cryptographic primitive for enforcing the fine-grained access control with scalable key delegation and user revocation mechanisms on the outsourced encrypted data in a cloud. Wang et al. (2011) proposed the first CP-HABE scheme and showed that the scheme is semantically secure in the random oracle model [4, 5]. Due to some weakness in its key delegation mechanism, by presenting two attacks, we demonstrate the scheme does not offer any confidentiality and fine-grained access control. In this way, anyone who has just one attribute can recover any outsourced encrypted data in the cloud.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
10/25/2018

An Efficient Encryption Scheme with Verifiable Outsourced Decryption in Mobile Cloud Computing

With the increasing number of mobile applications and the popularity of ...
research
11/08/2018

vFAC: Fine-Grained Access Control with Versatility for Cloud Storage

In recent years, cloud storage technology has been widely used in many f...
research
09/17/2018

Ciphertext Outdate Attacks on Xu et al.'s Revocable Attribute-Based Encryption Scheme

Cloud storage is a new computing paradigm that allows users to store the...
research
09/29/2022

Data Querying with Ciphertext Policy Attribute Based Encryption

Data encryption limits the power and efficiency of queries. Direct proce...
research
09/10/2020

Multi-Authority Ciphertext-Policy Attribute Based Encryption With Accountability

Attribute-based encryption (ABE) is a promising tool for implementing fi...
research
10/25/2018

ESAS: An Efficient Semantic and Authorized Search Scheme over Encrypted Outsourced Data

Nowadays, a large amount of user privacy-sensitive data is outsourced to...
research
01/24/2018

Server-Aided Revocable Predicate Encryption: Formalization and Lattice-Based Instantiation

Efficient user revocation is a necessary but challenging problem in many...

Please sign up or login with your details

Forgot password? Click here to reset