Secured and Privacy-Preserving Multi-Authority Access Control System for Cloud-Based Healthcare Data Sharing

Author:

Gupta Reetu1,Kanungo Priyesh1,Dagdee Nirmal2,Madhu Golla3ORCID,Sahoo Kshira Sagar4ORCID,Jhanjhi N. Z.5ORCID,Masud Mehedi6ORCID,Almalki Nabil Sharaf7,AlZain Mohammed A.8ORCID

Affiliation:

1. School of Computer Science and Information Technology, Devi Ahilya Vishwavidyalaya, Indore 452001, India

2. SKITM College, Indore 452020, India

3. Department of Information Technology, VNR Vignana Jyothi Institute of Engineering and Technology, Hyderabad 500090, India

4. Department of CSE, SRM University, Amaravati 522240, India

5. School of Computer Science, SCS Taylors University, Subang Jaya 47500, Malaysia

6. Department of Computer Science, College of Computers and Information Technology, Taif University, Taif 21944, Saudi Arabia

7. Department of Special Education, College of Education, King Saud University, Riyadh 145111, Saudi Arabia

8. Department of Information Technology, College of Computers and Information Technology, Taif University, Taif 21944, Saudi Arabia

Abstract

With continuous advancements in Internet technology and the increased use of cryptographic techniques, the cloud has become the obvious choice for data sharing. Generally, the data are outsourced to cloud storage servers in encrypted form. Access control methods can be used on encrypted outsourced data to facilitate and regulate access. Multi-authority attribute-based encryption is a propitious technique to control who can access encrypted data in inter-domain applications such as sharing data between organizations, sharing data in healthcare, etc. The data owner may require the flexibility to share the data with known and unknown users. The known or closed-domain users may be internal employees of the organization, and unknown or open-domain users may be outside agencies, third-party users, etc. In the case of closed-domain users, the data owner becomes the key issuing authority, and in the case of open-domain users, various established attribute authorities perform the task of key issuance. Privacy preservation is also a crucial requirement in cloud-based data-sharing systems. This work proposes the SP-MAACS scheme, a secure and privacy-preserving multi-authority access control system for cloud-based healthcare data sharing. Both open and closed domain users are considered, and policy privacy is ensured by only disclosing the names of policy attributes. The values of the attributes are kept hidden. Characteristic comparison with similar existing schemes shows that our scheme simultaneously provides features such as multi-authority setting, expressive and flexible access policy structure, privacy preservation, and scalability. The performance analysis carried out by us shows that the decryption cost is reasonable enough. Furthermore, the scheme is demonstrated to be adaptively secure under the standard model.

Funder

King Saud University

Publisher

MDPI AG

Subject

Electrical and Electronic Engineering,Biochemistry,Instrumentation,Atomic and Molecular Physics, and Optics,Analytical Chemistry

Reference51 articles.

1. Security requirements of internet of things-based healthcare system: A survey study;Nasiri;Acta Inform. Med.,2019

2. Privacy preservation in e-health cloud: Taxonomy, privacy requirements, feasibility analysis, and opportunities;Kanwal;Clust. Comput.,2021

3. Goyal, V., Pandey, O., Sahai, A., and Waters, B. (November, January 30). Attribute-based encryption for fine-grained access control of encrypted data. Proceedings of the 13th ACM Conference on Computer and Communications Security, Alexandria, VA, USA.

4. Bethencourt, J., Sahai, A., and Waters, B. (2007, January 20–23). Ciphertext-policy attribute-based encryption. Proceedings of the 2007 IEEE Symposium on Security and Privacy (SP’07), Berkeley, CA, USA.

5. Improving security and efficiency in attribute-based data sharing;Hur;IEEE Trans. Knowl. Data Eng.,2011

Cited by 11 articles. 订阅此论文施引文献 订阅此论文施引文献,注册后可以免费订阅5篇论文的施引文献,订阅后可以查看论文全部施引文献

同舟云学术

1.学者识别学者识别

2.学术分析学术分析

3.人才评估人才评估

"同舟云学术"是以全球学者为主线,采集、加工和组织学术论文而形成的新型学术文献查询和分析系统,可以对全球学者进行文献检索和人才价值评估。用户可以通过关注某些学科领域的顶尖人物而持续追踪该领域的学科进展和研究前沿。经过近期的数据扩容,当前同舟云学术共收录了国内外主流学术期刊6万余种,收集的期刊论文及会议论文总量共计约1.5亿篇,并以每天添加12000余篇中外论文的速度递增。我们也可以为用户提供个性化、定制化的学者数据。欢迎来电咨询!咨询电话:010-8811{复制后删除}0370

www.globalauthorid.com

TOP

Copyright © 2019-2024 北京同舟云网络信息技术有限公司
京公网安备11010802033243号  京ICP备18003416号-3