SlideShare a Scribd company logo
HYBRID ATTRIBUTE- AND RE-ENCRYPTION-BASED 
KEY MANAGEMENT FOR SECURE AND SCALABLE 
MOBILE APPLICATIONS IN CLOUDS 
ABSTRACT: 
Outsourcing data to the cloud are beneficial for reasons of 
economy, scalability, and accessibility, but significant technical 
challenges remain. Sensitive data stored in the cloud must be 
protected from being read in the clear by a cloud provider that is 
honest but curious. Additionally, cloud-based data are 
increasingly being accessed by resource-constrained mobile 
devices for which the processing and communication cost must 
be minimized. Novel modifications to attribute-based encryption 
are proposed to allow authorized users access to cloud data 
based on the satisfaction of required attributes such that the 
higher computational load from cryptographic operations is 
assigned to the cloud provider and the total communication cost 
is lowered for the mobile user. Furthermore, data re-encryption
may be optionally performed by the cloud provider to reduce the 
expense of user revocation in a mobile user environment while 
preserving the privacy of user data stored in the cloud. The 
proposed protocol has been realized on commercially popular 
mobile and cloud platforms to demonstrate real-world 
benchmarks that show the efficacy of the scheme. A simulation 
calibrated with the benchmark results shows the scalability 
potential of the scheme in the context of a realistic workload in a 
mobile cloud computing system. 
EXISTING SYSTEM: 
Data outsourcing to a cloud is appropriate for any class of 
applications that requires data to be kept in storage and 
disseminated to many users. Clients that engage a cloud provider 
typically only pay for the amount of storage, related 
computation, and amount of network communication actually 
consumed; they do not incur the capital and maintenance costs 
of an in-house solution. In addition, the cloud provider offers the
advantages of automatic backup and replication to ensure the 
safety, longevity, and high accessibility of the user data. A 
major concern that is typically not sufficiently addressed in 
practice, however, is that data, by default, are stored in the clear; 
it may be accessed and read by a cloud administrator without 
knowledge of the client. A cloud administrator may not be 
trusted despite the presence of contractual security obligations, 
if data security is not further enforced through technical means. 
An additional risk is that sensitive data carry the persistent risk 
of being intercepted by an unauthorized party despite safeguards 
promised by the provider. Therefore, it is useful to apply 
software techniques, such as encryption key management, to 
ensure that the confidentiality of cloud data is preserved at all 
times. It is especially crucial to safeguard sensitive user data 
such as e-mails, personal customer information, financial 
records, and medical records.
DISADVANTAGES OF EXISTING SYSTEM: 
· It is not secure. 
· There is no confidentiality. 
· It is especially crucial to safeguard sensitive user data. 
PROBLEM STATEMENT: 
A major concern that is typically not sufficiently addressed 
in practice, however, is that data, by default, are stored in the 
clear; it may be accessed and read by a cloud administrator 
without knowledge of the client. 
SCOPE: 
Important requirement is for data to be addressable with 
fine-grained access controls on the record-level or finer, to 
provide flexibility. 
PROPOSED SYSTEM: 
A protocol for outsourcing data storage to a cloud provider 
in secure fashion is provided. The provider is unable to read 
stored data; authorized users may do so based on qualification
through possession of the right attributes without arbitration by 
the data owner. The protocol is designed to be efficient for 
resource-constrained mobile users by delegating computation 
and requests to a cloud provider or trusted authority, where 
appropriate, without compromising security. An improvement is 
made over a traditional attribute based encryption scheme, such 
that responsibility over key generation is divided between a 
mobile data owner and a trusted authority; the owner is relieved 
of the highest computational and messaging burdens. Additional 
security is provided through a group keying mechanism; the data 
owner controls access based on the distribution of an additional 
secret key, beyond possession of the required attributes. This 
additional security measure is an optional variant applicable to 
highly sensitive data subject to frequent access. Re-encryption, 
as a process of transforming the stored ciphertext, permits 
efficient revocation of users; it does not require removal of 
attributes and subsequent key regeneration, and may be
administered by a trusted authority without involvement of the 
data owner. 
ADVANTAGES OF PROPOSED SYSTEM: 
· It is more secure. 
· It reduces data traffic. 
· Cost efficient.
SYSTEM ARCHITECTURE:
SYSTEM CONFIGURATION:- 
HARDWARE REQUIREMENTS:- 
 Processor - Pentium –IV 
 Speed - 1.1 Ghz 
 RAM - 512 MB(min) 
 Hard Disk - 40 GB 
 Key Board - Standard Windows Keyboard 
 Mouse - Two or Three Button Mouse 
 Monitor - LCD/LED 
SOFTWARE REQUIREMENTS: 
• Operating system : Windows XP 
• Coding Language : Java 
• Data Base : MySQL 
• Tool : Net Beans IDE
REFERENCE: 
Piotr K.Tysowski and M.Anwarul Hasan “Hybrid Attribute- and Re- 
Encryption-Based Key Management for Secure and Scalable Mobile 
Applications in Clouds” IEEE TRANSACTIONS ON CLOUD COMPUTING, 
VOL. 1, NO. 2, JULY-DECEMBER 2013.
REFERENCE: 
Piotr K.Tysowski and M.Anwarul Hasan “Hybrid Attribute- and Re- 
Encryption-Based Key Management for Secure and Scalable Mobile 
Applications in Clouds” IEEE TRANSACTIONS ON CLOUD COMPUTING, 
VOL. 1, NO. 2, JULY-DECEMBER 2013.

More Related Content

PPT
It pp hybrid attribute- and re-encryption-based key management for secure and...
PDF
1784 1788
DOCX
IEEE 2014 JAVA MOBILE COMPUTING PROJECTS Cloud assisted mobile-access of heal...
PDF
Cloud Auditing
PDF
Secure Data Storage in Cloud Using Encryption and Steganography
PDF
A Survey on Different Techniques Used in Decentralized Cloud Computing
PPT
Security Problem With Cloud Computing
PDF
SecRBAC: Secure data in the Clouds
It pp hybrid attribute- and re-encryption-based key management for secure and...
1784 1788
IEEE 2014 JAVA MOBILE COMPUTING PROJECTS Cloud assisted mobile-access of heal...
Cloud Auditing
Secure Data Storage in Cloud Using Encryption and Steganography
A Survey on Different Techniques Used in Decentralized Cloud Computing
Security Problem With Cloud Computing
SecRBAC: Secure data in the Clouds

What's hot (14)

PDF
Lecture26 cc-security1
PDF
A robust and verifiable threshold multi authority access control system in pu...
PPTX
Analysis-of-Security-Algorithms-in-Cloud-Computing [Autosaved]
PPTX
data storage security technique for cloud computing
PPT
Privacy Preserving Public Auditing for Data Storage Security in Cloud.ppt
PDF
DATA STORAGE SECURITY CHALLENGES IN CLOUD COMPUTING
PDF
Enhanced Data Partitioning Technique for Improving Cloud Data Storage Security
PDF
IRJET- Attribute based Access Control for Cloud Data Storage
PPTX
Security challenges of cloud computing
PDF
Secure data sharing in cloud computing using revocable storage identity-based...
PPTX
Cloud computing security
PDF
Achieving Secure, sclable and finegrained Cloud computing report
PDF
Security issue in Cloud computing
PDF
Biznet GIO National Seminar on Digital Forensics
Lecture26 cc-security1
A robust and verifiable threshold multi authority access control system in pu...
Analysis-of-Security-Algorithms-in-Cloud-Computing [Autosaved]
data storage security technique for cloud computing
Privacy Preserving Public Auditing for Data Storage Security in Cloud.ppt
DATA STORAGE SECURITY CHALLENGES IN CLOUD COMPUTING
Enhanced Data Partitioning Technique for Improving Cloud Data Storage Security
IRJET- Attribute based Access Control for Cloud Data Storage
Security challenges of cloud computing
Secure data sharing in cloud computing using revocable storage identity-based...
Cloud computing security
Achieving Secure, sclable and finegrained Cloud computing report
Security issue in Cloud computing
Biznet GIO National Seminar on Digital Forensics
Ad

Similar to Hybrid attribute and re-encryption-based key management for secure and scalable mobile applications in clouds (20)

PDF
IRJET- Mutual Key Oversight Procedure for Cloud Security and Distribution of ...
PDF
Iaetsd storage privacy protection against data
PPTX
Data security in cloud computing
PDF
Privacy Preserving in Authentication Protocol for Shared Authority Based Clou...
PDF
Secure Redundant Data Avoidance over Multi-Cloud Architecture.
PDF
1784 1788
PPTX
Presentation (6).pptx
PDF
IRJET- Secure Cloud Data Using Attribute Based Encryption
PDF
Survey on Privacy- Preserving Multi keyword Ranked Search over Encrypted Clou...
PDF
V04405122126
PDF
Improve HLA based Encryption Process using fixed Size Aggregate Key generation
PDF
Privacy preserving public auditing for secure cloud storage
PDF
Cloud Security
PDF
FOGCOMPUTING
PDF
IRJET- Security Enhancement for Sharing Data within Group Members in Cloud
DOC
Identity based distributed provable data possession in multi-cloud storage
PDF
Cloud Security
PDF
A Secure Multi-Owner Data Sharing Scheme for Dynamic Group in Public Cloud.
DOCX
Privacy preserving public auditing for secure cloud storage
PDF
Enhanced security framework to ensure data security in cloud using security b...
IRJET- Mutual Key Oversight Procedure for Cloud Security and Distribution of ...
Iaetsd storage privacy protection against data
Data security in cloud computing
Privacy Preserving in Authentication Protocol for Shared Authority Based Clou...
Secure Redundant Data Avoidance over Multi-Cloud Architecture.
1784 1788
Presentation (6).pptx
IRJET- Secure Cloud Data Using Attribute Based Encryption
Survey on Privacy- Preserving Multi keyword Ranked Search over Encrypted Clou...
V04405122126
Improve HLA based Encryption Process using fixed Size Aggregate Key generation
Privacy preserving public auditing for secure cloud storage
Cloud Security
FOGCOMPUTING
IRJET- Security Enhancement for Sharing Data within Group Members in Cloud
Identity based distributed provable data possession in multi-cloud storage
Cloud Security
A Secure Multi-Owner Data Sharing Scheme for Dynamic Group in Public Cloud.
Privacy preserving public auditing for secure cloud storage
Enhanced security framework to ensure data security in cloud using security b...
Ad

More from Papitha Velumani (20)

PDF
2015 - 2016 IEEE Project Titles and abstracts in Java
PDF
2015 - 2016 IEEE Project Titles and abstracts in Android
PDF
2015 - 2016 IEEE Project Titles and abstracts in Dotnet
DOC
Trajectory improves data delivery in urban vehicular networks
DOC
Tracon interference aware scheduling for data-intensive applications in virtu...
DOC
Supporting privacy protection in personalized web search
DOC
Stochastic bandwidth estimation in networks with random service
DOC
Sos a distributed mobile q&a system based on social networks
DOC
Security evaluation of pattern classifiers under attack
DOC
Real time misbehavior detection in ieee 802.11-based wireless networks an ana...
DOC
Probabilistic consolidation of virtual machines in self organizing cloud data...
DOC
Privacy preserving multi-keyword ranked search over encrypted cloud data
DOC
Privacy preserving and content-protecting location based queries
DOC
Pack prediction based cloud bandwidth and cost reduction system
DOC
Occt a one class clustering tree for implementing one-to-man data linkage
DOC
Leveraging social networks for p2p content based file sharing in disconnected...
DOC
LDBP: localized boundary detection and parametrization for 3 d sensor networks
DOC
Integrity for join queries in the cloud
DOC
Improving fairness, efficiency, and stability in http based adaptive video st...
DOC
Hybrid attribute and re-encryption-based key management for secure and scala...
2015 - 2016 IEEE Project Titles and abstracts in Java
2015 - 2016 IEEE Project Titles and abstracts in Android
2015 - 2016 IEEE Project Titles and abstracts in Dotnet
Trajectory improves data delivery in urban vehicular networks
Tracon interference aware scheduling for data-intensive applications in virtu...
Supporting privacy protection in personalized web search
Stochastic bandwidth estimation in networks with random service
Sos a distributed mobile q&a system based on social networks
Security evaluation of pattern classifiers under attack
Real time misbehavior detection in ieee 802.11-based wireless networks an ana...
Probabilistic consolidation of virtual machines in self organizing cloud data...
Privacy preserving multi-keyword ranked search over encrypted cloud data
Privacy preserving and content-protecting location based queries
Pack prediction based cloud bandwidth and cost reduction system
Occt a one class clustering tree for implementing one-to-man data linkage
Leveraging social networks for p2p content based file sharing in disconnected...
LDBP: localized boundary detection and parametrization for 3 d sensor networks
Integrity for join queries in the cloud
Improving fairness, efficiency, and stability in http based adaptive video st...
Hybrid attribute and re-encryption-based key management for secure and scala...

Recently uploaded (20)

PDF
Basic Mud Logging Guide for educational purpose
PDF
2.FourierTransform-ShortQuestionswithAnswers.pdf
PDF
01-Introduction-to-Information-Management.pdf
PDF
Supply Chain Operations Speaking Notes -ICLT Program
PDF
O5-L3 Freight Transport Ops (International) V1.pdf
PDF
TR - Agricultural Crops Production NC III.pdf
PDF
BÀI TẬP BỔ TRỢ 4 KỸ NĂNG TIẾNG ANH 9 GLOBAL SUCCESS - CẢ NĂM - BÁM SÁT FORM Đ...
PDF
Insiders guide to clinical Medicine.pdf
PDF
Pre independence Education in Inndia.pdf
PPTX
GDM (1) (1).pptx small presentation for students
PDF
Abdominal Access Techniques with Prof. Dr. R K Mishra
PPTX
school management -TNTEU- B.Ed., Semester II Unit 1.pptx
PPTX
Institutional Correction lecture only . . .
PDF
Black Hat USA 2025 - Micro ICS Summit - ICS/OT Threat Landscape
PDF
ANTIBIOTICS.pptx.pdf………………… xxxxxxxxxxxxx
PDF
Saundersa Comprehensive Review for the NCLEX-RN Examination.pdf
PDF
Complications of Minimal Access Surgery at WLH
PDF
Module 4: Burden of Disease Tutorial Slides S2 2025
PDF
Computing-Curriculum for Schools in Ghana
PPTX
Cell Types and Its function , kingdom of life
Basic Mud Logging Guide for educational purpose
2.FourierTransform-ShortQuestionswithAnswers.pdf
01-Introduction-to-Information-Management.pdf
Supply Chain Operations Speaking Notes -ICLT Program
O5-L3 Freight Transport Ops (International) V1.pdf
TR - Agricultural Crops Production NC III.pdf
BÀI TẬP BỔ TRỢ 4 KỸ NĂNG TIẾNG ANH 9 GLOBAL SUCCESS - CẢ NĂM - BÁM SÁT FORM Đ...
Insiders guide to clinical Medicine.pdf
Pre independence Education in Inndia.pdf
GDM (1) (1).pptx small presentation for students
Abdominal Access Techniques with Prof. Dr. R K Mishra
school management -TNTEU- B.Ed., Semester II Unit 1.pptx
Institutional Correction lecture only . . .
Black Hat USA 2025 - Micro ICS Summit - ICS/OT Threat Landscape
ANTIBIOTICS.pptx.pdf………………… xxxxxxxxxxxxx
Saundersa Comprehensive Review for the NCLEX-RN Examination.pdf
Complications of Minimal Access Surgery at WLH
Module 4: Burden of Disease Tutorial Slides S2 2025
Computing-Curriculum for Schools in Ghana
Cell Types and Its function , kingdom of life

Hybrid attribute and re-encryption-based key management for secure and scalable mobile applications in clouds

  • 1. HYBRID ATTRIBUTE- AND RE-ENCRYPTION-BASED KEY MANAGEMENT FOR SECURE AND SCALABLE MOBILE APPLICATIONS IN CLOUDS ABSTRACT: Outsourcing data to the cloud are beneficial for reasons of economy, scalability, and accessibility, but significant technical challenges remain. Sensitive data stored in the cloud must be protected from being read in the clear by a cloud provider that is honest but curious. Additionally, cloud-based data are increasingly being accessed by resource-constrained mobile devices for which the processing and communication cost must be minimized. Novel modifications to attribute-based encryption are proposed to allow authorized users access to cloud data based on the satisfaction of required attributes such that the higher computational load from cryptographic operations is assigned to the cloud provider and the total communication cost is lowered for the mobile user. Furthermore, data re-encryption
  • 2. may be optionally performed by the cloud provider to reduce the expense of user revocation in a mobile user environment while preserving the privacy of user data stored in the cloud. The proposed protocol has been realized on commercially popular mobile and cloud platforms to demonstrate real-world benchmarks that show the efficacy of the scheme. A simulation calibrated with the benchmark results shows the scalability potential of the scheme in the context of a realistic workload in a mobile cloud computing system. EXISTING SYSTEM: Data outsourcing to a cloud is appropriate for any class of applications that requires data to be kept in storage and disseminated to many users. Clients that engage a cloud provider typically only pay for the amount of storage, related computation, and amount of network communication actually consumed; they do not incur the capital and maintenance costs of an in-house solution. In addition, the cloud provider offers the
  • 3. advantages of automatic backup and replication to ensure the safety, longevity, and high accessibility of the user data. A major concern that is typically not sufficiently addressed in practice, however, is that data, by default, are stored in the clear; it may be accessed and read by a cloud administrator without knowledge of the client. A cloud administrator may not be trusted despite the presence of contractual security obligations, if data security is not further enforced through technical means. An additional risk is that sensitive data carry the persistent risk of being intercepted by an unauthorized party despite safeguards promised by the provider. Therefore, it is useful to apply software techniques, such as encryption key management, to ensure that the confidentiality of cloud data is preserved at all times. It is especially crucial to safeguard sensitive user data such as e-mails, personal customer information, financial records, and medical records.
  • 4. DISADVANTAGES OF EXISTING SYSTEM: · It is not secure. · There is no confidentiality. · It is especially crucial to safeguard sensitive user data. PROBLEM STATEMENT: A major concern that is typically not sufficiently addressed in practice, however, is that data, by default, are stored in the clear; it may be accessed and read by a cloud administrator without knowledge of the client. SCOPE: Important requirement is for data to be addressable with fine-grained access controls on the record-level or finer, to provide flexibility. PROPOSED SYSTEM: A protocol for outsourcing data storage to a cloud provider in secure fashion is provided. The provider is unable to read stored data; authorized users may do so based on qualification
  • 5. through possession of the right attributes without arbitration by the data owner. The protocol is designed to be efficient for resource-constrained mobile users by delegating computation and requests to a cloud provider or trusted authority, where appropriate, without compromising security. An improvement is made over a traditional attribute based encryption scheme, such that responsibility over key generation is divided between a mobile data owner and a trusted authority; the owner is relieved of the highest computational and messaging burdens. Additional security is provided through a group keying mechanism; the data owner controls access based on the distribution of an additional secret key, beyond possession of the required attributes. This additional security measure is an optional variant applicable to highly sensitive data subject to frequent access. Re-encryption, as a process of transforming the stored ciphertext, permits efficient revocation of users; it does not require removal of attributes and subsequent key regeneration, and may be
  • 6. administered by a trusted authority without involvement of the data owner. ADVANTAGES OF PROPOSED SYSTEM: · It is more secure. · It reduces data traffic. · Cost efficient.
  • 8. SYSTEM CONFIGURATION:- HARDWARE REQUIREMENTS:-  Processor - Pentium –IV  Speed - 1.1 Ghz  RAM - 512 MB(min)  Hard Disk - 40 GB  Key Board - Standard Windows Keyboard  Mouse - Two or Three Button Mouse  Monitor - LCD/LED SOFTWARE REQUIREMENTS: • Operating system : Windows XP • Coding Language : Java • Data Base : MySQL • Tool : Net Beans IDE
  • 9. REFERENCE: Piotr K.Tysowski and M.Anwarul Hasan “Hybrid Attribute- and Re- Encryption-Based Key Management for Secure and Scalable Mobile Applications in Clouds” IEEE TRANSACTIONS ON CLOUD COMPUTING, VOL. 1, NO. 2, JULY-DECEMBER 2013.
  • 10. REFERENCE: Piotr K.Tysowski and M.Anwarul Hasan “Hybrid Attribute- and Re- Encryption-Based Key Management for Secure and Scalable Mobile Applications in Clouds” IEEE TRANSACTIONS ON CLOUD COMPUTING, VOL. 1, NO. 2, JULY-DECEMBER 2013.