Security enhancement of an auditing scheme for shared cloud data Online publication date: Fri, 08-Apr-2022
by Reyhaneh Rabaninejad; Mahmoud Ahmadian Attari; Maryam Rajabzadeh Asaar; Mohammad Reza Aref
International Journal of Internet Protocol Technology (IJIPT), Vol. 15, No. 1, 2022
Abstract: In cloud storage services, public auditing mechanisms allow a third party to verify integrity of the outsourced data on behalf of data owners without the need to retrieve data from the cloud server. In some applications, the identity of data users should be kept private from the third party auditor. Oruta is a privacy preserving public auditing scheme for shared data in the cloud which exploits ring signatures to protect the identity privacy. In this paper, we propose two attacks and demonstrate that the scheme is insecure and a dishonest server can arbitrarily tamper the outsourced data without being detected by the auditor. We also propose a solution to remedy this weakness with the minimum overhead and without losing any desirable features of the scheme. Performance evaluation demonstrates acceptable efficiency of improved scheme in comparison to the original protocol.
Existing subscribers:
Go to Inderscience Online Journals to access the Full Text of this article.
If you are not a subscriber and you just want to read the full contents of this article, buy online access here.Complimentary Subscribers, Editors or Members of the Editorial Board of the International Journal of Internet Protocol Technology (IJIPT):
Login with your Inderscience username and password:
Want to subscribe?
A subscription gives you complete access to all articles in the current issue, as well as to all articles in the previous three years (where applicable). See our Orders page to subscribe.
If you still need assistance, please email subs@inderscience.com