On Security of a Secure Channel Free Public Key Encryption with Conjunctive Field Keyword Search Scheme

Public key encryption with keyword search is a practical cryptographic paradigm that enables one to search the encrypted keyword without compromising the security of the original data. Recently, Hwang et al . proposed a secure channel free public key encryption with conjunctive field keyword search (SCF-PECKS) scheme and claimed that their scheme can withstand the keyword guessing attack and does not require the secure channel. In this paper, by presenting three concrete attacks, we demonstrate that Hwang et al .’s SCF-PECKS scheme fails to achieve security against keyword guessing attacks by either the outsider attackers or the malicious insider servers. The presented attacks show that Hwang et al .’s SCF-PECKS scheme is vulnerable to the keyword guessing attack regardless whether the trapdoor is sent in public or secure channel. Therefore, devising a secure SCF-PECKS scheme remains an unsolved problem until now. DOI: http://dx.doi.org/10.5755/j01.itc.47.1.16137

[1]  Chengyu Hu,et al.  An Enhanced Searchable Public Key Encryption Scheme with a Designated Tester and Its Extensions , 2012, J. Comput..

[2]  Gang Wang,et al.  Efficient designated server identity-based encryption with conjunctive keyword search , 2017, Ann. des Télécommunications.

[3]  Yong Wang,et al.  Chaotic map-based time-aware multi-keyword search scheme with designated server , 2015, Wirel. Commun. Mob. Comput..

[4]  Gwoboa Horng,et al.  Timestamped Conjunctive Keyword-Searchable Public Key Encryption , 2009, 2009 Fourth International Conference on Innovative Computing, Information and Control (ICICIC).

[5]  Yuefei Zhu,et al.  Efficient Public Key Encryption with Keyword Search Schemes from Pairings , 2007, Inscrypt.

[6]  Lifeng Guo,et al.  Efficient Secure-Channel Free Public Key Encryption with Keyword Search for EMRs in Cloud Storage , 2015, Journal of Medical Systems.

[7]  Jixin Ma,et al.  The Public Verifiability of Public Key Encryption with Keyword Search , 2017, MONAMI.

[8]  Xingming Sun,et al.  Enabling Personalized Search over Encrypted Outsourced Data with Efficiency Improvement , 2016, IEEE Transactions on Parallel and Distributed Systems.

[9]  Cheng-Chi Lee,et al.  A New Public Key Encryption with Conjunctive Field Keyword Search Scheme , 2014, Inf. Technol. Control..

[10]  Yiwei Thomas Hou,et al.  Protecting Your Right: Verifiable Attribute-Based Keyword Search with Fine-Grained Owner-Enforced Search Authorization in the Cloud , 2016, IEEE Transactions on Parallel and Distributed Systems.

[11]  Xingming Sun,et al.  Achieving Efficient Cloud Search Services: Multi-Keyword Ranked Search over Encrypted Cloud Data Supporting Parallel Computing , 2015, IEICE Trans. Commun..

[12]  Bo Zhang,et al.  An efficient public key encryption with conjunctive-subset keywords search , 2011, J. Netw. Comput. Appl..

[13]  Yu-Chi Chen,et al.  SPEKS: Secure Server-Designation Public Key Encryption with Keyword Search against Keyword Guessing Attacks , 2015, Comput. J..

[14]  Dong Hoon Lee,et al.  Improved searchable public key encryption with designated tester , 2009, ASIACCS '09.

[15]  Dawn Xiaodong Song,et al.  Practical techniques for searches on encrypted data , 2000, Proceeding 2000 IEEE Symposium on Security and Privacy. S&P 2000.

[16]  Chengyu Hu,et al.  Public Key Encryption with Multi-keyword Search , 2012 .

[17]  Kihyun Kim,et al.  Public Key Encryption with Conjunctive Field Keyword Search , 2004, WISA.

[18]  Brent Waters,et al.  Conjunctive, Subset, and Range Queries on Encrypted Data , 2007, TCC.

[19]  Rafail Ostrovsky,et al.  Public Key Encryption with Keyword Search , 2004, EUROCRYPT.

[20]  Jiguo Li,et al.  Searchable ciphertext‐policy attribute‐based encryption with revocation in cloud storage , 2017, Int. J. Commun. Syst..

[21]  Dalia Khader,et al.  Public Key Encryption with Keyword Search Based on K-Resilient IBE , 2006, ICCSA.

[22]  Pil Joong Lee,et al.  Public Key Encryption with Conjunctive Keyword Search and Its Extension to a Multi-user System , 2007, Pairing.

[23]  Zhihua Xia,et al.  A Secure and Dynamic Multi-Keyword Ranked Search Scheme over Encrypted Cloud Data , 2016, IEEE Transactions on Parallel and Distributed Systems.

[24]  Dong Hoon Lee,et al.  Efficient Conjunctive Keyword Search on Encrypted Data Storage System , 2006, EuroPKI.

[25]  Jiguo Li,et al.  KSF-OABE: Outsourced Attribute-Based Encryption with Keyword Search Function for Cloud Storage , 2017, IEEE Transactions on Services Computing.

[26]  Joonsang Baek,et al.  Public Key Encryption with Keyword Search Revisited , 2008, ICCSA.

[27]  Dong Hoon Lee,et al.  Trapdoor security in a searchable public-key encryption scheme with a designated tester , 2010, J. Syst. Softw..

[28]  Hyunsung Kim,et al.  A Pairing-Free Public Key Encryption with Keyword Searching for Cloud Storage Services , 2013, AFRICOMM.

[29]  Peng Jiang,et al.  Public Key Encryption with Authorized Keyword Search , 2016, ACISP.

[30]  Xingming Sun,et al.  Toward Efficient Multi-Keyword Fuzzy Search Over Encrypted Outsourced Data With Accuracy Improvement , 2016, IEEE Transactions on Information Forensics and Security.

[31]  Dong Hoon Lee,et al.  Off-Line Keyword Guessing Attacks on Recent Keyword Search Schemes over Encrypted Data , 2006, Secure Data Management.