• No results found

A Security Proof in the Random Oracle Model

A  Security  Proof  of  KCDSA  using  an  extended  Random  Oracle  Model

A Security Proof of KCDSA using an extended Random Oracle Model

... tight security reduction to the discrete logarithm problem for KCDSA under an extended Random Oracle ...curity proof for the generalised ...the Random Oracle Model, who is ...

10

A  Note  on  the  Instantiability  of  the  Quantum  Random  Oracle

A Note on the Instantiability of the Quantum Random Oracle

... a security proof in the random oracle model mean? To be pragmatic, a random-oracle proof at least serves as a sanity check that rules out inherent design ...the ...

20

Tighter  Security  Proofs  for  GPV-IBE  in  the  Quantum  Random  Oracle  Model

Tighter Security Proofs for GPV-IBE in the Quantum Random Oracle Model

... the security proof, the reduction algorithm sets u ID||0 and u ID||1 so that one of them is uniformly random over Z n q and the other is constructed as Ae ID ...uniformly random vector u ID||b ...

38

How  Risky  is  the  Random-Oracle  Model?

How Risky is the Random-Oracle Model?

... in random-oracle ...ROM security proof, it usually does not say how to instantiate the random oracle, neither what might happen if the hash function does not behave like a ...

23

Non  Observability  in  the  Random  Oracle  Model

Non Observability in the Random Oracle Model

... The Random Oracle Model, introduced by Bellare and Rogaway, provides a method to heuristically argue about the security of cryptographic primitives and ...to random functions in their ...

20

Simulation-Based Secure Functional Encryption in the Random Oracle Model

Simulation-Based Secure Functional Encryption in the Random Oracle Model

... the security proof, they use the property of function privacy to show that the original experiment is computationally indistinguishable to an experiment where the post- challenge queries are answered with ...

23

Generic  Authenticated  Key  Exchange  in  the  Quantum  Random  Oracle  Model

Generic Authenticated Key Exchange in the Quantum Random Oracle Model

... IND-CPA security, and the respective ciphertext can be replaced with fake encryptions due to PKE’s disjoint ...an oracle that reveals the keys of completed ...decryption oracle with respect to the ...

61

Simulation-Based  Secure  Functional  Encryption  in  the  Random  Oracle  Model

Simulation-Based Secure Functional Encryption in the Random Oracle Model

... the security proof, they use the property of function privacy to show that the original experiment is computationally indistinguishable to an experiment where the post-challenge queries are answered with ...

34

(Tightly)  QCCA-Secure  Key-Encapsulation  Mechanism  in  the  Quantum  Random  Oracle  Model

(Tightly) QCCA-Secure Key-Encapsulation Mechanism in the Quantum Random Oracle Model

... IND-CCA security proofs of the above conversions, the challenger should simulate the decapsulation oracle on a query of any ciphertext c except the challenge ciphertext c ∗ ...IND-CCA security ...

14

On  the  Exact  Security  of  Schnorr-Type  Signatures  in  the  Random  Oracle  Model

On the Exact Security of Schnorr-Type Signatures in the Random Oracle Model

... Moreover, when an execution forks from previous ones at t i > 0, the distribution of ` i is obviously not independent from the previous forgery indexes ` j . In fact, returning a forgery for independently and uniformly ...

24

Efficient Signatures with Tight Real World Security in the Random-Oracle Model

Efficient Signatures with Tight Real World Security in the Random-Oracle Model

... the random oracle in a way similar to Katz-Wang [21] to the (standard model, DLIN-based) linearly homomorphic signature scheme from [24] converted to the ...the security reduction the ...

15

Certificateless aggregate signcryption: Security model and a concrete construction secure in the random oracle model

Certificateless aggregate signcryption: Security model and a concrete construction secure in the random oracle model

... high security and high computational power results in a huge cost ...The security of such devices cannot be relaxed, and thus, by reducing the computation power, one can greatly reduce the cost ...

11

Practical  UC  security  with  a  Global  Random  Oracle

Practical UC security with a Global Random Oracle

... abstract model and its intended use was already noticed in the context of the common reference string setup ...“ideal model”, where the protocol is replaced by a “trusted party”, or an ideal functionality ...

39

The  Random  Oracle  Model   and  the  Ideal  Cipher  Model  are  Equivalent

The Random Oracle Model and the Ideal Cipher Model are Equivalent

... a random permutation P (right). Our result shows that the random oracle model and the ideal cipher model are actually equivalent ...Cipher Model and have endeavoured to work in ...

26

Revisiting  TESLA  in  the  quantum  random  oracle  model

Revisiting TESLA in the quantum random oracle model

... Another cause for not even getting close to the lower bound derived from multiply-accumulate throughput is that each coefficient from A needs to be loaded from (at best) L2 cache, because the whole matrix A does not fit ...

51

Adaptive  Proofs  of  Knowledge  in  the  Random  Oracle  Model

Adaptive Proofs of Knowledge in the Random Oracle Model

... dom oracle is not required, the corresponding algorithms can simply be removed from the ...some proof schemes that causes problems with adaptivity is the rewinding extractor, for which we know of no ...

56

The  Random  Oracle  Model:  A  Twenty-Year  Retrospective

The Random Oracle Model: A Twenty-Year Retrospective

... avoid random oracles that have led to protocols that have security weaknesses that were not present in the original ones whose proofs required random ...use random oracles gives one the ...

30

Security  of  Encryption  Schemes  in  Weakened  Random  Oracle  Models

Security of Encryption Schemes in Weakened Random Oracle Models

... computation model, which allows us to store and manipulate directly the real ...computation model with bounded precisions, we must discretize the distributions and the parameters appeared in the algorithms ...

67

Adapting  the  weaknesses  of  the  Random  Oracle  model  to  the  Generic  Group  model.

Adapting the weaknesses of the Random Oracle model to the Generic Group model.

... an oracle prob- lem that is provably hard in the generic group ...powerful oracle that only outputs useful information in a very small number of ...the oracle is replaced by access to a signing ...

11

In  the  point  of  view  security,  An  efficient  scheme  in  IBE  with  random  oracle

In the point of view security, An efficient scheme in IBE with random oracle

... Abstract We present in these papers a scheme, which bypasses the weakness presented in the existed scheme of IBE with random oracle. We propose, a secure scheme which project into Z p contrary to elliptic ...

15

Show all 10000 documents...

Related subjects