School of Computer Sciences, Universiti Sains Malaysia, Penang 11800, Malaysia.
Sensors (Basel). 2020 Jun 9;20(11):3280. doi: 10.3390/s20113280.
The proliferation of mobile devices such as smartphones and tablets with embedded sensors and communication features has led to the introduction of a novel sensing paradigm called mobile crowd sensing. Despite its opportunities and advantages over traditional wireless sensor networks, mobile crowd sensing still faces security and privacy issues, among other challenges. Specifically, the security and privacy of sensitive location information of users remain lingering issues, considering the "on" and "off" state of global positioning system sensor in smartphones. To address this problem, this paper proposes "SenseCrypt", a framework that automatically annotates and signcrypts sensitive location information of mobile crowd sensing users. The framework relies on -means algorithm and a certificateless aggregate signcryption scheme (CLASC). It incorporates spatial coding as the data compression technique and message query telemetry transport as the messaging protocol. Results presented in this paper show that the proposed framework incurs low computational cost and communication overhead. Also, the framework is robust against privileged insider attack, replay and forgery attacks. Confidentiality, integrity and non-repudiation are security services offered by the proposed framework.
移动设备(如智能手机和平板电脑)的普及,这些设备嵌入了传感器和通信功能,导致了一种新的传感范例的出现,称为移动众包感知。尽管它比传统的无线传感器网络具有更多的机会和优势,但移动众包感知仍然面临安全和隐私问题等挑战。具体来说,考虑到智能手机中全球定位系统传感器的“开启”和“关闭”状态,用户敏感位置信息的安全和隐私仍然是一个悬而未决的问题。为了解决这个问题,本文提出了“SenseCrypt”,这是一个自动注释和签署移动众包感知用户敏感位置信息的框架。该框架依赖于均值算法和无证书聚合签密方案(CLASC)。它将空间编码作为数据压缩技术,并将消息查询遥测传输作为消息协议。本文提出的框架具有计算成本低、通信开销低的特点。此外,该框架对特权内部攻击、重放和伪造攻击具有鲁棒性。机密性、完整性和不可否认性是该框架提供的安全服务。