{"title":"Verifiable and Forward-Secure Multikeyword Query in Internet of Medical Things","authors":"Hongjun Li;Debiao He;Qi Feng;Min Luo","doi":"10.1109/JIOT.2025.3553754","DOIUrl":null,"url":null,"abstract":"The Internet of Medical Things (IoMT) plays a pivotal role in modern healthcare systems, enhancing patients’ medical experiences and improving the efficiency of public medical services. However, concerns regarding security and privacy may hinder the widespread implementation and development of IoMT in practical applications. Dynamic Searchable Symmetric Encryption (DSSE) can maintain search capabilities on encrypted data, even when files are dynamically added or deleted. Earlier DSSE schemes typically support only single keyword query and provide forward security under the assumption of semi-honest servers, which significantly limits their applicability in real-world scenarios. To resolve these limitations, we propose a forward-secure and verifiable DSSE scheme that supports multikeyword conjunctive query. Our scheme ensures forward security by utilizing a chain structure and guarantees correctness and completeness through RSA accumulator and Homomorphic Message Authentication Code (HMAC). Furthermore, we integrate the forward index and inverted index to enable efficient retrieval. Through comprehensive security and performance analysis, we demonstrate that our scheme effectively protects users’ privacy while maintaining low computation and communication overheads. Finally, some experimental evaluations are conducted to verify both the correctness and efficiency of the proposed scheme.","PeriodicalId":54347,"journal":{"name":"IEEE Internet of Things Journal","volume":"12 13","pages":"23809-23822"},"PeriodicalIF":8.9000,"publicationDate":"2025-03-21","publicationTypes":"Journal Article","fieldsOfStudy":null,"isOpenAccess":false,"openAccessPdf":"","citationCount":"0","resultStr":null,"platform":"Semanticscholar","paperid":null,"PeriodicalName":"IEEE Internet of Things Journal","FirstCategoryId":"94","ListUrlMain":"https://ieeexplore.ieee.org/document/10937199/","RegionNum":1,"RegionCategory":"计算机科学","ArticlePicture":[],"TitleCN":null,"AbstractTextCN":null,"PMCID":null,"EPubDate":"","PubModel":"","JCR":"Q1","JCRName":"COMPUTER SCIENCE, INFORMATION SYSTEMS","Score":null,"Total":0}
引用次数: 0
Abstract
The Internet of Medical Things (IoMT) plays a pivotal role in modern healthcare systems, enhancing patients’ medical experiences and improving the efficiency of public medical services. However, concerns regarding security and privacy may hinder the widespread implementation and development of IoMT in practical applications. Dynamic Searchable Symmetric Encryption (DSSE) can maintain search capabilities on encrypted data, even when files are dynamically added or deleted. Earlier DSSE schemes typically support only single keyword query and provide forward security under the assumption of semi-honest servers, which significantly limits their applicability in real-world scenarios. To resolve these limitations, we propose a forward-secure and verifiable DSSE scheme that supports multikeyword conjunctive query. Our scheme ensures forward security by utilizing a chain structure and guarantees correctness and completeness through RSA accumulator and Homomorphic Message Authentication Code (HMAC). Furthermore, we integrate the forward index and inverted index to enable efficient retrieval. Through comprehensive security and performance analysis, we demonstrate that our scheme effectively protects users’ privacy while maintaining low computation and communication overheads. Finally, some experimental evaluations are conducted to verify both the correctness and efficiency of the proposed scheme.
医疗物联网(Internet of Medical Things, IoMT)在现代医疗体系中发挥着举足轻重的作用,可以增强患者的就医体验,提高公共医疗服务的效率。然而,对安全和隐私的担忧可能会阻碍IoMT在实际应用中的广泛实施和发展。动态可搜索对称加密(DSSE)可以维护对加密数据的搜索功能,即使在动态添加或删除文件时也是如此。早期的DSSE方案通常只支持单个关键字查询,并在半诚实服务器的假设下提供前向安全性,这大大限制了它们在现实场景中的适用性。为了解决这些限制,我们提出了一个支持多关键字连接查询的前向安全且可验证的DSSE方案。该方案利用链结构保证前向安全性,并通过RSA累加器和同态消息认证码(HMAC)保证正确性和完整性。此外,我们整合了正索引和倒排索引,以实现高效的检索。通过全面的安全性和性能分析,我们证明了我们的方案有效地保护了用户的隐私,同时保持了较低的计算和通信开销。最后,通过实验验证了所提方案的正确性和有效性。
期刊介绍:
The EEE Internet of Things (IoT) Journal publishes articles and review articles covering various aspects of IoT, including IoT system architecture, IoT enabling technologies, IoT communication and networking protocols such as network coding, and IoT services and applications. Topics encompass IoT's impacts on sensor technologies, big data management, and future internet design for applications like smart cities and smart homes. Fields of interest include IoT architecture such as things-centric, data-centric, service-oriented IoT architecture; IoT enabling technologies and systematic integration such as sensor technologies, big sensor data management, and future Internet design for IoT; IoT services, applications, and test-beds such as IoT service middleware, IoT application programming interface (API), IoT application design, and IoT trials/experiments; IoT standardization activities and technology development in different standard development organizations (SDO) such as IEEE, IETF, ITU, 3GPP, ETSI, etc.