基于属性的加密
公钥密码术
身份(音乐)
撤销
方案(数学)
密码学
认证(法律)
随机预言
计算机网络
概率加密
钥匙(锁)
作者
Jinguang Han,Ye Yang,Xinyi Huang,Tsz Hon Yuen,Jiguo Li,Jie Cao
标识
DOI:10.1016/j.ins.2016.01.045
摘要
Privacy and accountability are two important issues in mobile e-commerce. In this paper, we formalized the definition and security model of identity-based plaintext-checkable encryption (IBPCE) schemes, and proposed an IBPCE scheme. Furthermore, we designed an accountable mobile e-commerce (AMEC) scheme. This scheme can provide the following features: (1) users can register to the e-commerce system by using their mobile identities, such as mobile phone numbers; (2) the transactions between a buyer and a vendor are encrypted; (3) if there is a dispute, an offline adjudicator can identify who is dishonest by checking the encrypted transactions. Hence, our scheme is an ideal primitive to balance the need for privacy and accountability. In mobile e-commerce systems, users conduct transactions using wireless or Internet-based devices, such as mobile phones and tablets. It is different from traditional e-commerce systems relying on workstations or desktops, which is usually used in a fixed location. Recently, privacy and accountability have become users' primary concerns in mobile e-commerce applications. In this paper, a novel mobile e-commerce scheme is developed to address the fundamental requirements. We first propose an identity-based plaintext-checkable encryption (IBPCE) scheme where anyone can check whether a ciphertext is the encryption of a plaintext under a specific identity without knowing the secret key. Furthermore, the proposed IBPCE scheme is incorporated into the mobile e-commerce scenario, which results in an accountable mobile e-commerce (AMEC) scheme. Our proposed AMEC scheme has several superior features: (1) Users can register to the e-commerce system by using their mobile identities, such as mobile phone numbers; (2) The transactions between a buyer and a vendor are encrypted; (3) If there is a dispute, an offline adjudicator can identify who is dishonest by checking the encrypted transactions. We evaluate the proposed scheme and confirm that the new scheme can effectively balance the need for privacy and accountability.
科研通智能强力驱动
Strongly Powered by AbleSci AI