Cloud computing, born from billions of dollars industry investment, has significantly changed the model of modern IT industry. Cloud computing enables users to access a shared pool of configurable computing resources (e.g., networks, servers, storage, applications, and services) provisioned by cloud service providers (CPSs) in a pay-as-you-go business model. Security and privacy concerns are still the biggest barrier for users to adopt cloud services, although many security strategies and approaches have been developed by cloud service providers (e.g., IBM, Amazon, Microsoft, Google, etc.) to guarantee their cloud platforms or services. The main reason is that users lose the physical control of their data, while cloud service providers may not be fully trusted. In such a scenario, how to guarantee security and privacy of cloud data is a challenging and promising problem. Although many works have been proposed for cloud security and privacy from both academia and industrial community in recent years, there are still many challenging issues and problems that need extensive research.