首页> 外文会议> >On the Security of Frequency-Hiding Order-Preserving Encryption
【24h】

On the Security of Frequency-Hiding Order-Preserving Encryption

机译:频率隐藏定单加密的安全性

获取原文

摘要

Order-preserving encryption (OPE) is an encryption scheme with the property that the ordering of the plaintexts carry over to the ciphertexts. This primitive is particularly useful in the setting of encrypted databases because it enables efficient range queries over encrypted data. Given its practicality and usefulness in the design of databases on encrypted data, OPE's popularity is growing. Unfortunately, nearly all computationally efficient OPE constructions are vulnerable against ciphertext frequency-leakage, which allows for inferring the underlying plaintext frequency. To overcome this weakness, Kerschbaum recently proposed a security model, designed a frequency-hiding OPE scheme, and analyzed its security in the programmable random oracle model (CCS 2015). In this work, we demonstrate that Kerschbaum's definition is imprecise and using its natural interpretation, we describe an attack against his scheme. We generalize our attack and show that his definition is, in fact, not satisfiable. The basic idea of our impossibility result is to show that any scheme satisfying his security notion is also IND-CPA-secure, which contradicts the very nature of OPE. As a consequence, no such scheme can exist. To complete the picture, we rule out the imprecision in the security definition and show that a slight adaption of Kerschbaum's tree-based scheme fulfills it.
机译:保留顺序加密(OPE)是一种加密方案,具有将明文的顺序转移到密文中的特性。该原语在设置加密数据库时特别有用,因为它可以对加密数据进行有效的范围查询。鉴于其在加密数据数据库设计中的实用性和实用性,OPE的受欢迎程度正在增长。不幸的是,几乎所有计算效率高的OPE构造都容易受到密文频率泄漏的影响,从而导致推断出基本的明文频率。为了克服这一弱点,Kerschbaum最近提出了一种安全模型,设计了一种隐藏频率的OPE方案,并在可编程随机预言机模型中对其安全性进行了分析(CCS 2015)。在这项工作中,我们证明克尔斯鲍姆的定义是不精确的,并使用其自然的解释来描述对他的计划的攻击。我们对攻击进行了概括,并证明了他的定义实际上是不能令人满意的。我们不可能结果的基本思想是表明,满足他的安全概念的任何方案也是IND-CPA-secure,这与OPE的本质相矛盾。结果,不存在这样的方案。为了使图片更完整,我们排除了安全性定义中的不精确性,并表明对Kerschbaum基于树的方案进行了稍许的修改就可以满足要求。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号