Selective-Opening Security in the Presence of Randomness Failures

نویسندگان

  • Viet Tung Hoang
  • Jonathan Katz
  • Adam O'Neill
  • Mohammad Zaheri
چکیده

We initiate the study of public-key encryption (PKE) secure against selective-opening attacks (SOA) inthe presence of randomness failures, i.e., when the sender may (inadvertently) use low-quality randomness. Inthe SOA setting, an adversary can adaptively corrupt senders; this notion is natural to consider in tandemwith randomness failures since an adversary may target senders by multiple means. Concretely, we first treat SOA security of nonce-based PKE. After formulating an appropriate definitionof SOA-secure nonce-based PKE, we provide efficient constructions in the non-programmable random-oraclemodel, based on lossy trapdoor functions. We then lift our notion of security to the setting of “hedged” PKE, which ensures security as long as thesender’s seed, message, and nonce jointly have high entropy. This unifies the notions and strengthens theprotection that nonce-based PKE provides against randomness failures even in the non-SOA setting. We liftour definitions and constructions of SOA-secure nonce-based PKE to the hedged setting as well. 1 Dept. of Computer Science, Florida State University, Email: [email protected] Dept. of Computer Science, University of Maryland, Email: [email protected] Dept. of Computer Science, Georgetown University, Email: [email protected] Dept. of Computer Science, Georgetown University, Email: [email protected]

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

On Definitions of Selective Opening Security

Assume that an adversary observes many ciphertexts, and may then ask for openings, i.e. the plaintext and the randomness used for encryption, of some of them. Do the unopened ciphertexts remain secure? There are several ways to formalize this question, and the ensuing security notions are not known to be implied by standard notions of encryption security. In this work, we relate the two existin...

متن کامل

Selective Opening Security from Simulatable Data Encapsulation

The confidentiality notion of security against selective opening attacks considers adversaries that obtain challenge ciphertexts and are allowed to adaptively open them, thereby revealing the encrypted message and the randomness used to encrypt. The SO notion is stronger than that of CCA security and is often required when formally arguing towards the security of multi-user applications. While ...

متن کامل

Improving Tor security against timing and traffic analysis attacks with fair randomization

The Tor network is probably one of the most popular online anonymity systems in the world. It has been built based on the volunteer relays from all around the world. It has a strong scientific basis which is structured very well to work in low latency mode that makes it suitable for tasks such as web browsing. Despite the advantages, the low latency also makes Tor insecure against timing and tr...

متن کامل

Evaluating Multipath TCP Resilience against Link Failures

Standard TCP is the de facto reliable transfer protocol for the Internet. It is designed to establish a reliable connection using only a single network interface. However, standard TCP with single interfacing performs poorly due to intermittent node connectivity. This requires the re-establishment of connections as the IP addresses change. Multi-path TCP (MPTCP) has emerged to utilize multiple ...

متن کامل

Standard Security Does Not Imply Indistinguishability Under Selective Opening

In a selective opening attack (SOA) on an encryption scheme, the adversary is given a collection of ciphertexts and she selectively chooses to see some subset of them “opened”, meaning that the messages and the encryption randomness are revealed to her. A scheme is SOA secure if the data contained in the unopened ciphertexts remains hidden. A fundamental question is whether every CPA secure sch...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 2016