|
|
|
题名
|
作者
|
年代
|
出处
|
被引量
|
| 1 | SecureWeb: Protecting Sensitive Information Through the Web Browser Extension with a Security Token显示文摘The leakage of sensitive data occurs on a large scale and with increasingly serious impact. It may cause privacy disclosure or even property damage. Password leakage is one of the fundamental reasons for information leakage, and its importance is must be emphasized because users are likely to use the same passwords for different Web application accounts. Existing approaches use a password manager and encrypted Web application to protect passwords and other sensitive data; however, they may be compromised or lack accessibility. The paper presents Secure Web, which is a secure, practical, and user-controllable framework for mitigating the leakage of sensitive data. Secure Web protects users' passwords and aims to provide a unified protection solution to diverse sensitive data. The efficiency of the developed schemes is demonstrated and the results indicate that it has a low overhead and are of practical use. | Shuang Liang Yue Zhang Bo Li Xiaojie Guo Chunfu Jia Zheli Liu | 2018 | Tsinghua Science and Technology2018,23,5: | 2 |
| 2 | Cetus:an efficient symmetric searchable encryption against file-injection attack with SGX显示文摘Symmetric searchable encryption(SSE)allows the users to store and query their private data in the encrypted database.Many SSE schemes for different scenarios have been proposed in the past few years,however,most of these schemes still face more or fewer security issues.Using these security leakages,many attacks against the SSE scheme have been proposed,and especially the non-adaptive file injection attack is the most serious.Non-adaptive file injection attack(NAFA)can effectively recover some extremely important private information such as keyword plaintext.As of now,there is no scheme that can effectively defend against such attacks.We first propose the new security attribute called toward privacy to resist nonadaptive file injection attacks.We then present an efficient SSE construction called Cetus to achieve toward privacy.By setting up a buffer and designing the efficient oblivious reading algorithm based on software guard extensions(SGX),we propose the efficient one-time oblivious writing mechanism.Oblivious writing protects the update pattern and allows search operations to be performed directly on the data.The experiment results show that Cetus achieves O(aw)search time and O(1)update communication.The practical search time,communication,and computation overheads incurred by Cetus are lower than those of state-of-the-art. | Yanyu HUANG Siyi LV Zheli LIU Xiangfu SONG Jin LI Yali YUAN Changyu Dong | 2021 | Science China(Information Sciences)2021,64,8: | 2 |
| 3 | An Efficient Format-Preserving Encryption Mode for Practical Domains显示文摘Format-preserving encryption (FPE), which makes sure that ciphertext has the same format as plaintext, has been widely used in protecting sensitive data in a database. Aiming at efficiently solving the FPE problem on a collection of practical domains, we propose the RREM (random reference-based encryption mode), which constructs bijection between the original domain and integer set through distance computation. If an appropriate distance function is predefined, the proposed mode can solve the FPE problem on linear equidistance domain in a more efficient way than previous methods. Furthermore, we make a classification on various types of domains, show the application of RREM in some practical domains, and specify RREM's capability of solving the FPE problem on frequently-used fields in database quite efficiently. | LI Jingwei LIU Zheli XU Li JIA Chunfu | 2012 | Wuhan University Journal of Natural Sciences2012,17,5: | 2 |
| 4 | Efficient Identity- based Broadcast Encryption without Random Oracles 显示文摘 | HU Liang LIU Zheli CHENG Xiaochun | 2010 | Journal of Conjurers2010,5,3: | 1 |
| 5 | A Distributed Model of WebGIS Based on Java Servlett显示文摘 | Zheli Liu Shuming Wang Yongjian Yang Xuiqin Yu | 2006 | 通讯和计算机(中英文版)2006,3,7: | 1 |
| 6 | L-Enc DB:a lightweight framework for privacy-preserving data queries in cloud computing显示文摘 | Li Jin Liu Zheli Chen Xiaofeng | 2015 | Knowledge-Based Systems2015,79,: | 1 |
| 7 | Labrador:towards fair and auditable data sharing in cloud computing with long-term privacy显示文摘Data are one of the most important sources of power that drives the world today.However,aggregating data is not an easy task with increasing legal regulations and concerns from users about their data privacy,and therefore incentives might be needed to encourage data sharing.In this paper,we present Labrador(LB),a system to handle the above problems.Our result demonstrates long-term privacy that reveals only an analytic result to the data analyst.An analytic task is delegated to clouds,which holds users’homomorphically encrypted data.We develop a lightweight verifiable blind decryption technique over the linearly homomorphic encryption scheme to verify the final result.Thus,its verifiability and blindness rely on over-determined and under-determined systems,respectively.To support incentives in data sharing,we leverage smart contract to realize binding contracts between mutually distrusted parties.In the game theory model with a non-collusion assumption,Labrador is secure against any rational adversary.Our evaluation demonstrates that the computational overhead for the data analyst and the data owner is insignificant(i.e.,only a few seconds and milliseconds,respectively). | Xiaojie GUO Jin LI Zheli LIU Yu WEI Xiao ZHANG Changyu DONG | 2022 | Science China(Information Sciences)2022,65,5: | 1 |
| 8 | New order preserving encryption model for outsourced databases in cloud environments显示文摘 | Zheli Liu Xiaofeng Chen Jun Yang Chunfu Jia Ilsun You | 2014 | Journal of Network and Computer Applications2014,,: | 1 |