SACfe: Secure Access Control in Functional Encryption with Unbounded Data

Dowerah, Uddipana; Dutta, Subhranil; Hartmann, Frank; Mitrokotsa, Aikaterini; Mukherjee, Sayantan; Pal, Tapas ORCID iD icon 1
1 Karlsruher Institut für Technologie (KIT)


Privacy is a major concern in large-scale digital applications, such as cloud-computing, machine learning services, and access control. Users want to protect not only their plain data but also their associated attributes (e.g., age, location, etc). Functional encryption (FE) is a cryptographic tool that allows fine-grained access control over encrypted data. However, existing FE fall short as they are either inefficient and far from reality or they leak sensitive user-specific information.

We propose SACfe, a novel attribute-based FE scheme that provides secure, fine-grained access control and hides both the user’s attributes and the function applied to the data, while preserving the data’s confidentiality. Moreover, it enables users to encrypt unbounded-length messages along with an arbitrary number of hidden attributes into ciphertexts. We design SACfe, a protocol for performing linear computation on encrypted data while enforcing access control based on inner product predicates. We show how SACfe can be used for online biometric authentication for privacy-preserving access control. As an additional contribution, we introduce an attribute-based linear FE for unbounded length of messages and functions where access control is realized by monotone span programs. ... mehr

Zugehörige Institution(en) am KIT Institut für Informationssicherheit und Verlässlichkeit (KASTEL)
Publikationstyp Proceedingsbeitrag
Publikationsdatum 08.07.2024
Sprache Englisch
Identifikator ISBN: 979-8-3503-5425-6
KITopen-ID: 1000176748
HGF-Programm 46.23.01 (POF IV, LK 01) Methods for Engineering Secure Systems
Erschienen in IEEE 9th European Symposium on Security and Privacy (Euro&SP 2024)
Veranstaltung 9th IEEE European Symposium on Security and Privacy (EuroSP 2024), Wien, Österreich, 08.07.2024 – 12.07.2024
Verlag Institute of Electrical and Electronics Engineers (IEEE)
Seiten 860–882
Nachgewiesen in Scopus

DOI: 10.1109/EuroSP60621.2024.00053
Zitationen: 2
