《计算机应用》唯一官方网站 ›› 2024, Vol. 44 ›› Issue (2): 504-511.DOI: 10.11772/j.issn.1001-9081.2023030272

• 网络空间安全 • 上一篇    

支持用户撤销的可搜索电子健康记录共享方案

王政1, 王经纬1, 殷新春1,2,3()   

  1. 1.扬州大学 信息工程学院,江苏 扬州 225127
    2.扬州大学 广陵学院,江苏 扬州 225128
    3.广东省信息安全技术重点实验室(中山大学),广州 510275
  • 收稿日期:2023-03-16 修回日期:2023-04-21 接受日期:2023-04-24 发布日期:2023-05-09 出版日期:2024-02-10
  • 通讯作者: 殷新春
  • 作者简介:王政(1998—),男,江苏淮安人,硕士研究生,主要研究方向:属性基加密
    王经纬(1993—),男,江苏句容人,博士,主要研究方向:属性基加密、密码学、数据安全;
  • 基金资助:
    广东省信息安全技术重点实验室开放基金资助项目(2020B1212060078)

Searchable electronic health record sharing scheme with user revocation

Zheng WANG1, Jingwei WANG1, Xinchun YIN1,2,3()   

  1. 1.College of Information Engineering,Yangzhou University,Yangzhou Jiangsu 225127,China
    2.Guangling College of Yangzhou University,Yangzhou Jiangsu 225128,China
    3.Guangdong Provincial Key Laboratory of Information Security Technology (Sun Yat?sen University),Guangzhou Guangdong 510275,China
  • Received:2023-03-16 Revised:2023-04-21 Accepted:2023-04-24 Online:2023-05-09 Published:2024-02-10
  • Contact: Xinchun YIN
  • About author:WANG Zheng, born in 1998, M. S. candidate. His research interests include attribute based encryption.
    WANG Jingwei, born in 1993, Ph. D. His research interests include attribute based encryption, cryptography, data security,
  • Supported by:
    Opening Project of Guangdong Provincial Key Laboratory of Information Security Technology(2020B1212060078)

摘要:

随着物联网与云存储技术的快速发展和广泛应用,每年都有大量的传感器设备被部署到医疗物联网(IoMT)系统,虽然这促进了电子健康记录(EHR)应用的普及,但EHR的安全存储与检索尚未得到妥善的解决。针对以上问题,基于可搜索加密构造长度固定的陷门用于对密文的搜索验证,减小了用户所需的通信开销;采用在线/离线加密技术,减小了用户端在线加密所需的计算开销;同时基于变色龙哈希函数,构造具有抗碰撞、语义安全等特点的私钥,避免了未撤销用户私钥频繁更新的问题,极大地减小了用户的计算开销。理论分析与实验结果表明所提方案在DBDH(Decisional Bilinear Diffie-Hellman)假设下是选择明文攻击是安全的,且与类似属性基加密方案相比,所提方案效率更高,在功能上支持在线加密、高效的用户撤销并具有更低的计算开销和存储开销。

关键词: 可搜索加密, 在线/离线加密, 变色龙哈希函数, 用户撤销, 电子健康记录

Abstract:

With the rapid development and wide application of the Internet of Things (IoT) and cloud storage technology, an increasing number of sensor devices are deployed to the Internet of Medical Things (IoMT) system every year, which promotes the popularization of Electronic Health Record (EHR). However, the secure storage and retrieval of EHRs have not been properly resolved. To address this problem, a searchable attribute-based encryption scheme with a fixed-length trapdoor was constructed for the search and verification of ciphertext, which reduced the communication overhead required by users. By adopting the online/offline encryption technology, the computing overhead on the user side was reduced. Meanwhile, with the help of chameleon hash function, a private key with the characteristics of anti-collision and semantical security was constructed, which avoided the problem of frequent updating of private keys of unrevoked users and greatly reduced the computing overhead of users. Theoretical analysis and experimental results show that the proposed scheme can resist chosen-plaintext attack under the Decisional Bilinear Diffie-Hellman (DBDH) assumption, and compared with other similar attribute based encryption schemes, the proposed scheme is more efficient, which supports online encryption, efficient user revocation, and has lower computational and storage overheads.

Key words: searchable encryption, online/offline encryption, chameleon hash function, user revocation, Electronic Health Record (EHR)

中图分类号: