KIT | KIT-Bibliothek | Impressum | Datenschutz

SACfe: Secure Access Control in Functional Encryption with Unbounded Data

Dowerah, Uddipana; Dutta, Subhranil; Hartmann, Frank; Mitrokotsa, Aikaterini; Mukherjee, Sayantan; Pal, Tapas ORCID iD icon 1
1 Karlsruher Institut für Technologie (KIT)

Abstract:

Privacy is a major concern in large-scale digital applications, such as cloud-computing, machine learning services, and access control. Users want to protect not only their plain data but also their associated attributes (e.g., age, location, etc). Functional encryption (FE) is a cryptographic tool that allows fine-grained access control over encrypted data. However, existing FE fall short as they are either inefficient and far from reality or they leak sensitive user-specific information.

We propose SACfe, a novel attribute-based FE scheme that provides secure, fine-grained access control and hides both the user’s attributes and the function applied to the data, while preserving the data’s confidentiality. Moreover, it enables users to encrypt unbounded-length messages along with an arbitrary number of hidden attributes into ciphertexts. We design SACfe, a protocol for performing linear computation on encrypted data while enforcing access control based on inner product predicates. We show how SACfe can be used for online biometric authentication for privacy-preserving access control. As an additional contribution, we introduce an attribute-based linear FE for unbounded length of messages and functions where access control is realized by monotone span programs. ... mehr


Originalveröffentlichung
DOI: 10.1109/EuroSP60621.2024.00053
Scopus
Zitationen: 3
Dimensions
Zitationen: 4
Zugehörige Institution(en) am KIT Institut für Informationssicherheit und Verlässlichkeit (KASTEL)
Publikationstyp Proceedingsbeitrag
Publikationsdatum 08.07.2024
Sprache Englisch
Identifikator ISBN: 979-8-3503-5425-6
KITopen-ID: 1000176748
HGF-Programm 46.23.01 (POF IV, LK 01) Methods for Engineering Secure Systems
Erschienen in IEEE 9th European Symposium on Security and Privacy (Euro&SP 2024)
Veranstaltung 9th IEEE European Symposium on Security and Privacy (EuroSP 2024), Wien, Österreich, 08.07.2024 – 12.07.2024
Verlag Institute of Electrical and Electronics Engineers (IEEE)
Seiten 860–882
Nachgewiesen in Scopus
OpenAlex
Dimensions
KIT – Die Forschungsuniversität in der Helmholtz-Gemeinschaft
KITopen Landing Page