Secure data management system with traceability against internal leakage

Secure data management system with traceability against internal leakage
复制标题

安全数据管理系统,具有可追溯性,防止内部泄漏

DOI:
10.1109/apsipa.2017.8282268
复制
发表时间:
2017
期刊:
Asia-Pacific Signal and Information Processing Association Annual Summit and Conference (APSIPA ASC 2017)
影响因子:
--
通讯作者:
Nobuo Funabiki
Nobuo Funabiki
中科院分区:
--
文献类型:
--
作者:
Minoru Kuribayashi;Takahiro Ueda;Nobuo Funabiki

文献摘要

相似文献

组织中敏感数据的管理不限于使用身份验证和加密系统。实际上,如果组织内部的恶意用户具有访问数据的权限,则这些用户会将敏感数据泄露给对手。在这项研究中,我们使管理者能够识别组织内部的叛徒(S)从泄漏的数据。关键技术是加密数据的指纹识别。当用户使用分配给该用户的秘密密钥解密密文时,解密的数据涉及与该用户相关联的信息。我们提出了这样一个访问控制系统,结合基于属性的加密方案和指纹方案。提出的方法通过使用基于密钥管理的指纹方案实现非对称协议,防止不诚实的管理者陷害无辜的用户。
The management of sensitive data in an organization is not limited to use authentication and encrytion systems. Actually, malicious users inside of an organization will leak sensitive data to adversaries if the users are privileged to access to the data. In this study, we enable a manager to identify the traitor(s) inside of an organization from the leaked data. The essential technique is the fingerprinting for encrypted data. When a user decrypts a ciphertext using the secret key assigned to the user, the decrypted data involves the information associated with the user. We propose such an access control system by combining an attribute-based encryption scheme and fingerprinting scheme. The proposed method prevents a dishonest manager from framing innocent users by realizing the asymmetric protocol using the fingerprinting scheme based on a key management.