面向 IoMT 医疗服务数据共享的安全轻量密码体 SLIE
密码学与安全
2025-10-17 v1
摘要
医疗物联网(IoMT)通过将医疗操作转化为标准化、可互操作的服务而彻底变革了医疗行业,但这种服务导向的模型在设备管理和通信方面引入了显著的安全漏洞,这尤其关键,因为医疗数据的敏感性。为此,本文提出了 SLIE(Secure and Lightweight Identity Encryption,即安全轻量身份加密),一种基于 WildCard Key Derivation Identity-Based Encryption(WKD-IBE)的新型密码体。SLIE 通过端到端加密、层次化访问控制和针对资源受限设备设计的轻量级密钥管理系统,实现可扩展的信任和安全的全向通信。它集成了常数时间操作、内存混淆和基于过期的密钥吊销,以抵御侧信道攻击、中间人攻击和未授权访问攻击,从而确保符合 HIPAA 和 GDPR 等标准。评估表明,SLIE 在 RSA 方面显著优于,1KB 数据的加密和解密时间分别为 0.936ms 和 0.217ms,加密速度提升 84.54%,解密速度提升 99.70%,能源效率为 0.014 J/KB。
引用
@article{arxiv.2510.14708,
title = {SLIE: A Secure and Lightweight Cryptosystem for Data Sharing in IoT Healthcare Services},
author = {Ha Xuan Son and Nguyen Quoc Anh and Phat T. Tran-Truong and Le Thanh Tuan and Pham Thanh Nghiem},
journal= {arXiv preprint arXiv:2510.14708},
year = {2025}
}
备注
Paper has been accepted for publication in the Proceedings of the 23th International Conference on Service-Oriented Computing 2025