Title: Privacy-preserving cloud-agent pub-sub system with decentralised authorisation and bilateral fine-grained access control

Authors: Weihu Cao; Linming Gong; Runmeng Du; Hui Hao

Addresses: School of Computer Science, School of Cybersecurity, Xi'an Polytechnic University, Xi'an, China ' School of Computer Science, School of Cybersecurity, Xi'an Polytechnic University, Xi'an, China ' School of Computer Science, School of Cybersecurity, Xi'an Polytechnic University, Xi'an, China ' School of Computer Science, School of Cybersecurity, Xi'an Polytechnic University, Xi'an, China

Abstract: With the growth of publish/subscribe systems (PSS), service providers increasingly outsource their computation and storage to cloud servers, but meanwhile incur some privacy risks such as data leakage, identity exposure, and subscription inference. Existing privacy-preserving PSS solutions rely on centralised authorisation and lack bilateral access control, leading to single points of failure and limited subscriber-side data governance. To address these gaps, this paper proposes a decentralised matching attribute-based encryption (DC-MABE) scheme. Building upon this, we construct a privacy-preserving PSS that supports distributed key management and enables fine-grained bilateral access control for both publishers and subscribers. Formal security analysis demonstrates that the scheme achieves indistinguishability under chosen-plaintext attacks (IND-CPA). Experimental results show that our solution offers a favourable balance between efficiency and security compared with state-of-the-art schemes.

Keywords: privacy preservation; publish-subscribe systems; decentralised authorisation; attribute-based encryption; ABE.

DOI: 10.1504/IJICS.2026.154875

International Journal of Information and Computer Security, 2026 Vol.30 No.3, pp.308 - 332

Received: 03 Jul 2025
Accepted: 13 Dec 2025

Published online: 16 Jul 2026 *

Full-text access for editors Full-text access for subscribers Purchase this article Comment on this article