This document discusses a proposed system for secure cloud data sharing using ciphertext policy attribute-based encryption (CP-ABE). The system has four phases: 1) A data owner encrypts data and uploads it to the cloud server. 2) A key authority generates public, private, and secret keys. 3) An authorized client requests access to encrypted data. 4) A decryption server handles decryption tasks to reduce client overhead. The system aims to address key escrow and exposure problems through collaborative key management. It also reduces redundant data storage through deduplication during file uploads. The proposed approach provides both security and efficiency for cloud data sharing.