Return
A secure encrypted data access scheme based on hardware tokens
DOI:10.1016/j.jisa.2026.104553.png)
Abstract
En 中文
Encrypted data access enables users to outsource data to cloud servers while ensuring that only authorized parties can retrieve and decrypt the content. This assurance relies on the coordinated use of access control and cryptographic mechanisms. We examine the practical implementation of encrypted data access in Google Drive, a representative commercial cloud service, and observe that hardware-token-based authentication is coupled with server-side encryption to enforce protected data access. However, this design raises security concerns: server-side encryption alone cannot guarantee data confidentiality once the cloud server is compromised. Addressing this vulnerability while maintaining compatibility with existing hardware token-based authentication presents a key design challenge. Moreover, since hardware tokens are susceptible to loss or damage, users may be permanently locked out of the outsourced data, making secure and recoverable access in the absence of the token another critical issue.
Journal
IF:
3.7
Papers:
1.9K
Citations:
4.9K

