Volume 36, Issue 2 e70053
RESEARCH ARTICLE

A Lightweight CP-ABE Scheme for EHR Over Cloud Based on Blockchain and Secure Multi-Party Computation

Jiawen Qiao

Jiawen Qiao

School of Cyber Science and Technology, Beihang University, Beijing, China

Search for more papers by this author
Na Wang

Corresponding Author

Na Wang

School of Cyber Science and Technology, Beihang University, Beijing, China

Correspondence: Na Wang ([email protected]) and Junsong Fu ([email protected])

Search for more papers by this author
Junsong Fu

Corresponding Author

Junsong Fu

School of Cyberspace Security, Beijing University of Posts and Telecommunications, Beijing, China

Correspondence: Na Wang ([email protected]) and Junsong Fu ([email protected])

Search for more papers by this author
Lunzhi Deng

Lunzhi Deng

School of Mathematical Sciences, Guizhou Normal University, Guiyang, China

Search for more papers by this author
Jingjing Wang

Jingjing Wang

School of Cyber Science and Technology, Beihang University, Beijing, China

Search for more papers by this author
Jianwei Liu

Jianwei Liu

School of Cyber Science and Technology, Beihang University, Beijing, China

Search for more papers by this author
First published: 30 January 2025
Funding: This work was supported in part by the National Key Research and Development Program of China under Grant 2022YFB2702700, in part by the National Natural Science Foundation of China under Grants 62472020 and 62472015.

ABSTRACT

With the growth of cloud computing and the popularity of electronic health records (EHR), more and more patients and hospitals are uploading EHR to the cloud for storage, retrieval and organization. Due to the privacy of EHR, cloud-based EHR systems need to protect data security and provide access control, and attribute-based encryption (ABE) is the appropriate technology. Nevertheless, traditional single-center ABE schemes do not conform to the collaborative scenario of electronic health care, and some of them do not support real-time attribute update. Consequently, this paper proposes a lightweight CP-ABE scheme for EHR over cloud based on blockchain and secure multi-party computation (LCBS). First, we introduce the model of multi-authority and innovatively apply secure multi-party computation to initialize the system, which maintains normal system operation while the power is decentralized. Second, we deploy a blockchain suitable for EHR systems to record the users' key information, assisting multiple entities to verify the key at different stages and protecting the EHR from illegal acquisition. In addition, our scheme supports lightweight attribute update, which requires small amount of computational overhead to achieve instant attribute update. Finally, through formal security analysis and simulation experiments of the LCBS system, it is shown that our scheme guarantees data security and improves computing efficiency.

Data Availability Statement

Research data are not shared.

The full text of this article hosted at iucr.org is unavailable due to technical difficulties.