Open Access Open Access  Restricted Access Subscription or Fee Access

Searchable Deterministic Encryption against the Keyword Guessing Attack by Outside Attacker

Liu Zhiyuan, Liu zhenghua

Abstract


Searchable Deterministic Encryption (SDE) was proposed by Bellare et al. It aimed to improve the search performance of the traditional Public-Key Encryption with Keyword Search (PEKS). Both of SDE and PEKS are insecure under the Keyword Guessing Attack (KGA) by outsider attack in practice in terms of security. KGA generally refers that an eavesdropper is able to guess keywords by peeking over the communications of SDE using a brute-force method. However, the KGA attacks of SDE are different with PEKS because of the determinacy of SDE. To address the insecurity of SDE under the KGA attacks by outsider attackers, the specialties of SDE was extracted. Then, the Public Key Encryption (PKE) was used to solve this insecurity using a generic method. Searchable Deterministic Encryption (SDE) was proposed by Bellare et al. It aimed to improve the search performance of the traditional Public-Key Encryption with Keyword Search (PEKS). Both of SDE and PEKS are insecure under the Keyword Guessing Attack (KGA) by outsider attack in practice in terms of security. KGA generally refers that an eavesdropper is able to guess keywords by peeking over the communications of SDE using a brute-force method. However, the KGA attacks of SDE are different with PEKS because of the determinacy of SDE. To address the insecurity of SDE under the KGA attacks by outsider attackers, the specialties of SDE was extracted. Then, the Public Key Encryption (PKE) was used to solve this insecurity using a generic method.

Keywords


Searchable Deterministic Encryption, Public-Key Encryption with Keyword Search, Keyword Guessing Attack, Public Key Encryption.

Full Text:

PDF


Disclaimer/Regarding indexing issue:

We have provided the online access of all issues and papers to the indexing agencies (as given on journal web site). It’s depend on indexing agencies when, how and what manner they can index or not. Hence, we like to inform that on the basis of earlier indexing, we can’t predict the today or future indexing policy of third party (i.e. indexing agencies) as they have right to discontinue any journal at any time without prior information to the journal. So, please neither sends any question nor expects any answer from us on the behalf of third party i.e. indexing agencies.Hence, we will not issue any certificate or letter for indexing issue. Our role is just to provide the online access to them. So we do properly this and one can visit indexing agencies website to get the authentic information. Also: DOI is paid service which provided by a third party. We never mentioned that we go for this for our any journal. However, journal have no objection if author go directly for this paid DOI service.