Another Look at Tightness

نویسندگان

  • Sanjit Chatterjee
  • Alfred Menezes
  • Palash Sarkar
چکیده

We examine a natural, but non-tight, reductionist security proof for deterministic message authentication code (MAC) schemes in the multi-user setting. If security parameters for the MAC scheme are selected without accounting for the non-tightness in the reduction, then the MAC scheme is shown to provide a level of security that is less than desirable in the multi-user setting. We find similar deficiencies in the security assurances provided by non-tight proofs when we analyze some protocols in the literature including ones for network authentication and aggregate MACs. Our observations call into question the practical value of non-tight reductionist security proofs. We also exhibit attacks on authenticated encryption schemes, disk encryption schemes, and stream ciphers in the multi-user setting.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

Another Look at Tightness II: Practical Issues in Cryptography

How to deal with large tightness gaps in security proofs is a vexing issue in cryptography. Even when analyzing protocols that are of practical importance, leading researchers often fail to treat this question with the seriousness that it deserves. We discuss nontightness in connection with complexity leveraging, HMAC, lattice-based cryptography, identity-based encryption, and hybrid encryption.

متن کامل

Another Look at the Hypocrisy of Chaucer’s Pardoner

For us, readers of Chaucer living in an age when appeal to religious passions and sentiments as a means for the realization of worldly objectives by some charlatans has grown significantly, reviewing the theme of religious hypocrisy treated in The Canterbury Tales can be useful in a way that it proves a helpful means for recognizing and dealing with the hypocrites. The Pardoner of the Tales is ...

متن کامل

Comparison of Q Angle and Tibial Torsion Among Premier League Futsal Players With and Without Hamstring Tightness

Purpose: Hamstring muscle is a two-jointed muscle, which is attached to the pelvis at one end and to tibia at the other. Contractures of the hamstring muscles affect the position of proximal and distal joints. The present study aims to compare the value of quadriceps angle (‘Q angle’) and tibial torsion among Premier League Futsal players with and without hamstring tightness.  ...

متن کامل

A fresh look at Bayesian Cramér-Rao bounds for discrete-time nonlinear filtering

In this paper, we aim to relate different Bayesian Cramér-Rao bounds which appear in the discrete-time nonlinear filtering literature in a single framework. A comparative theoretical analysis of the bounds is provided in order to relate their tightness. The results can be used to provide a lower bound on the mean square error in nonlinear filtering. The findings are illustrated and verified by ...

متن کامل

Analysis of Different Mediation Equations and Tightness of Control to Finely Regulate the Exchange of Control Between Expert and Novice Controllers in a Fuzzy Mediation Environment

Fuzzy mediation is an innovative approach to the creation of a framework geared towards supervised and collaborative learning in systems with two controllers, one being an expert controller and the second being a novice one. The nature of fuzzy sets allows for the comparison of inputs to reach a consensus on the overall difference between the controls. In previous works we have highlighted the ...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:
  • IACR Cryptology ePrint Archive

دوره 2011  شماره 

صفحات  -

تاریخ انتشار 2011