The invention relates to the technical field of proxy re-
encryption, in particular to an on-lattice puncturable attribute-based proxy re-
encryption method and
system. According to the invention, the trusted mechanism carries out centralized initialization and distributes the secret keys, so that the security guidance and authority management of the
system are realized; the data owner autonomously executes
encryption and re-encryption
key generation, so that the flexibility of fine-grained
access control and strategy updating of the
full life cycle of the data is ensured; the
cloud server only executes
ciphertext conversion in a semi-trusted environment, so that efficient strategy migration is realized, and meanwhile,
plaintext invisibility is ensured; the data
receiver independently completes decryption and key puncture, so that the autonomy and
controllability of the decryption process are ensured, a
key revocation mechanism of a
third party is not needed, the decryption authority of the specific
label can be immediately and accurately revoked after the key is leaked, and the
attack exposure time is greatly shortened. According to the method, the security problem caused by leakage of long-term
data sharing in dynamic open environments such as
the Internet of Vehicles is effectively solved, and unification of security, efficiency and
privacy protection is realized.