Mix&Slice: Efficient Access Revocation in the Cloud
Enrico Bacis, Sabrina De Capitani di Vimercati, Sara Foresti, Stefano Paraboschi, Marco Rosa, Pierangela Samarati
Abstract
We present an approach to enforce access revocation on resources stored at external cloud providers. The approach relies on a resource transformation that provides strong mutual inter-dependency in its encrypted representation. To revoke access on a resource, it is then sufficient to update a small portion of it, with the guarantee that the resource as a whole (and any portion of it) will become unintelligible to those from whom access is revoked. The extensive experimental evaluation on a variety of configurations confirmed the effectiveness and efficiency of our solution, which showed excellent performance and compatibility with several implementation strategies.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 8f561ce1-a265-4aec-bb5c-afc72b0b7498Related papers
- On the Practicality of Cryptographically Enforcing Dynamic Access Control Policies in the CloudWilliam C. Garrison III, Adam Shull, Steven A. Myers, Adam J. LeeS&P 2016 · 77 citations
- Make Revocation Cheaper: Hardware-Based Revocable Attribute-Based EncryptionXiaoguo Li, Guomin Yang, Tao Xiang, Shengmin Xu et al.S&P 2024 · 19 citations
- BurnBox: Self-Revocable Encryption in a World Of Compelled AccessNirvan Tyagi, Muhammad Haris Mughees, Thomas Ristenpart, Ian MiersUSENIX Security 2018 · 10 citations
- Towards Practical Oblivious JoinZhao Chang, Dong Xie, Sheng Wang, Feifei LiSIGMOD 2022 · 20 citations
- A Highly Accurate Query-Recovery Attack against Searchable Encryption using Non-Indexed DocumentsMarc Damie, Florian Hahn, Andreas PeterUSENIX Security 2021 · 46 citations
