当前位置: X-MOL 学术J. Inf. Secur. Appl. › 论文详情
Our official English website, www.x-mol.net, welcomes your feedback! (Note: you will need to create a separate account there.)
A secure end-to-end verifiable e-voting system using blockchain and cloud server
Journal of Information Security and Applications ( IF 3.8 ) Pub Date : 2021-04-23 , DOI: 10.1016/j.jisa.2021.102815
Somnath Panja , Bimal Roy

We propose a cryptographic technique for an authenticated, end-to-end verifiable and secret ballot election. Currently, almost all verifiable e-voting systems require trusted authorities to perform the tallying process except for the DRE-i and DRE-ip systems. We have shown a weakness of the DRE-ip system and proposed a solution. We propose a secure and verifiable voter registration and authentication mechanism. The proposed scheme prevents ballot stuffing attack. We have modified the DRE-ip system so that no adversary can create and post a valid ballot on the public bulletin board without detection. We propose a method for publishing the final tally without revealing the tally from individual Direct-Recording Electronic (DRE) machines using secure multi-party computation and non-interactive zero-knowledge (NIZK) proof. We propose two methods to store these ballots using blockchain and cloud server. To the best of our knowledge, it is the first end-to-end verifiable DRE based e-voting system using blockchain. We provide security proofs to prove the security properties of the proposed scheme. We prove that the efficient NIZK proof proposed by Lin et al. in APSIPA ASC 2019 is not correct since it does not satisfy the witness indistinguishability property of a zero-knowledge proof. We introduce an improved NIZK proof that boosts the efficiency of the system. The experimental data obtained from our tests show the protocol’s potential for real-world deployment.



中文翻译:

使用区块链和云服务器的安全端到端可验证电子投票系统

我们提出了一种加密技术,用于经过身份验证的端对端可验证的秘密投票选举。当前,除DRE-i和DRE-ip系统外,几乎所有可验证的电子投票系统都需要受信任的权威机构来执行统计过程。我们已经展示了DRE-ip系统的弱点,并提出了解决方案。我们提出了一种安全且可验证的选民注册和身份验证机制。所提出的方案可以防止选票填塞攻击。我们已经修改了DRE-ip系统,以使任何对手都无法在未检测到的情况下在公共公告板上创建和发布有效的选票。我们提出了一种使用安全的多方计算和非交互式零知识(NIZK)证明发布最终理货的方法,而无需从各个直接记录电子(DRE)机器中披露理货。我们提出了两种使用区块链和云服务器存储选票的方法。据我们所知,这是第一个使用区块链的端到端可验证的基于DRE的电子投票系统。我们提供安全证明,以证明所提出方案的安全性。我们证明了Lin等人提出的有效的NIZK证明。APSIPA ASC 2019中的错误不正确,因为它不满足零知识证明的见证人不可区分性。我们引入了改进的NIZK证明,可提高系统效率。从我们的测试中获得的实验数据表明了该协议在实际部署中的潜力。我们提供安全证明,以证明所提出方案的安全性。我们证明了Lin等人提出的有效的NIZK证明。APSIPA ASC 2019中的错误不正确,因为它不满足零知识证明的见证人不可区分性。我们引入了改进的NIZK证明,可提高系统效率。从我们的测试中获得的实验数据表明了该协议在实际部署中的潜力。我们提供安全证明,以证明所提出方案的安全性。我们证明了Lin等人提出的有效的NIZK证明。APSIPA ASC 2019中的错误不正确,因为它不满足零知识证明的见证人不可区分性。我们引入了改进的NIZK证明,可提高系统效率。从我们的测试中获得的实验数据表明了该协议在实际部署中的潜力。

更新日期:2021-04-23
down
wechat
bug