A blockchain-based verifiable CP-ABE scheme for medical data privacy protection

Abstract Electronic Health Record (EHR) sharing in the cloud faces serious challenges, centered on the risk of a single point of failure and privilege abuse due to centralized privilege management, as well as the difficulty of existing mechanisms to effectively validate the integrity of data and acc...

Full description

Saved in:
Bibliographic Details
Main Authors: Leilei Zhao, Guofang Dong, Hao Yuan
Format: Article
Language:English
Published: Nature Portfolio 2025-07-01
Series:Scientific Reports
Subjects:
Online Access:https://doi.org/10.1038/s41598-025-13069-1
Tags: Add Tag
No Tags, Be the first to tag this record!
Description
Summary:Abstract Electronic Health Record (EHR) sharing in the cloud faces serious challenges, centered on the risk of a single point of failure and privilege abuse due to centralized privilege management, as well as the difficulty of existing mechanisms to effectively validate the integrity of data and access policies in transit/storage. To this end, this paper proposes a scheme that fuses blockchain with verifiable ciphertext policy attribute-based encryption (CP-ABE). Using the decentralized characteristics of blockchain, policy verification is decentralized to multiple nodes, eliminating a single point of failure and enhancing robustness; Vector Commitment technology is introduced to generate a unique binding commitment value for the access policy and incorporate it into the ciphertext to achieve rapid detection of policy tampering and guarantee the authenticity of the enforced policy. Meanwhile, the integrated Attribute-Based Proxy Re-Encryption (AB-PRE) supports dynamic and efficient adjustment of access rights based on patient status and treatment needs. Security analysis and experimental evaluation confirm the efficiency and effectiveness of this scheme.
ISSN:2045-2322