论文标题
SmartCoauth:智能合同隐私保护机制,以查询云中的敏感记录
SmartCoAuth: Smart-Contract privacy preservation mechanism on querying sensitive records in the cloud
论文作者
论文摘要
存储在云中的敏感记录,例如医疗保健记录,私人对话和信用卡信息是黑客和隐私滥用的目标。当前的信息和记录管理系统很难在安全,透明,分散和无信任的环境中实现此类敏感记录的隐私保护。区块链技术是一种新生和有前途的技术,可在安全,分散和无信任的环境中促进数据共享和访问。该技术使使用可以利用的智能合约来补充现有的传统系统,以实现以前从未实现的安全目标。在本文中,我们提出了一个基于区块链技术的框架,以在安全,分散,透明和无信任的环境中实现隐私保护。我们命名我们的框架SmartCoauth。它基于以太坊智能合约作为框架中的安全,分散,透明的身份验证和授权机制的功能。它还可以对受保护记录的访问进行防篡改审核。我们分析了如何将SmartCoauth集成到云应用程序中,以在云中存储的医疗保健记录的利益相关者之间提供可靠的隐私保护。拟议的框架提供了令人满意的数据实用程序和隐私保护水平。
Sensitive records stored in the cloud such as healthcare records, private conversation and credit card information are targets of hackers and privacy abuse. Current information and record management systems have difficulties achieving privacy protection of such sensitive records in a secure, transparent, decentralized and trustless environment. The Blockchain technology is a nascent and a promising technology that facilitates data sharing and access in a secure, decentralized and trustless environment. The technology enables the use of smart contracts that can be leveraged to complement existing traditional systems to achieve security objectives that were never possible before. In this paper, we propose a framework based on Blockchain technology to enable privacy-preservation in a secured, decentralized, transparent and trustless environment. We name our framework SmartCoAuth. It is based on Ethereum Smart Contract functions as the secure, decentralized, transparent authentication and authorization mechanism in the framework. It also enables tamper-proof auditing of access to the protected records. We analysed how SmartCoAuth could be integrated into a cloud application to provide reliable privacy-preservation among stakeholders of healthcare records stored in the cloud. The proposed framework provides a satisfactory level of data utility and privacy preservation.