Decentralized Multi-authority ABE for DNFs from LWE
Pratish Datta, Ilan Komargodski, Brent Waters
Abstract
We construct the first decentralized multi-authority attribute-based encryption (MA-ABE) scheme for a non-trivial class of access policies whose security is based (in the random oracle model) solely on the Learning With Errors (LWE) assumption. The supported access policies are ones described by DNF formulas. All previous constructions of MA-ABE schemes supporting any non-trivial class of access policies were proven secure (in the random oracle model) assuming various assumptions on bilinear maps.
In our system, any party can become an authority and there is no requirement for any global coordination other than the creation of an initial set of common reference parameters. A party can simply act as a standard ABE authority by creating a public key and issuing private keys to different users that reflect their attributes. A user can encrypt data in terms of any DNF formulas over attributes issued from any chosen set of authorities. Finally, our system does not require any central authority. In terms of efficiency, when instantiating the scheme with a global bound on the size of access policies, the sizes of public keys, secret keys, and ciphertexts, all grow with .
Technically, we develop new tools for building ciphertext-policy ABE (CP-ABE) schemes using LWE. Along the way, we construct the first provably secure CP-ABE scheme supporting access policies in that avoids the generic universal-circuit-based key-policy to ciphertext-policy transformation. In particular, our construction relies on linear secret sharing schemes with new properties and in some sense is more similar to CP-ABE schemes that rely on bilinear maps. While our CP-ABE construction is not more efficient than existing ones, it is conceptually intriguing and further we show how to extend it to get the MA-ABE scheme described above.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 083ea15b-57c8-4501-8f47-5081233223f6Cited by top-tier papers4
- Registered Attribute-Based EncryptionSusan Hohenberger, George Lu, Brent Waters, David J. WuEUROCRYPT 2023 · 83 citations
- Fully Adaptive Decentralized Multi-Authority ABEPratish Datta, Ilan Komargodski, Brent WatersEUROCRYPT 2023 · 24 citations
- Registered ABE and Adaptively-Secure Broadcast Encryption from Succinct LWEJeffrey Champion, Yao-Ching Hsieh, David J. WuCRYPTO 2025 · 21 citations
- Multi-authority Registered Attribute-Based EncryptionGeorge Lu, Brent Waters, David J. WuEUROCRYPT 2025 · 14 citations
Builds on3
- Optimal Broadcast Encryption from Pairings and LWEShweta Agrawal, Shota YamadaEUROCRYPT 2020 · 74 citations
- Attribute-Based Encryption in the Generic Group Model: Automated Proofs and New ConstructionsMiguel Ambrona, Gilles Barthe, Romain Gay, Hoeteck WeeCCS 2017 · 49 citations
- Adaptively Secure ABE for DFA from k-Lin and MoreJunqing Gong, Hoeteck WeeEUROCRYPT 2020 · 31 citations
Related papers
- Large-Universe (Multi-Authority) ABE from LWEPratish Datta, Yannis Rouselakis, Junichi Tomida, Nikhil VanjaniCCS 2026
- ABE for Circuits with poly (λ) -sized Keys from LWEValerio Cini, Hoeteck WeeFOCS 2023 · 7 citations
- A General Framework for Lattice-Based ABE Using Evasive Inner-Product Functional EncryptionYao-Ching Hsieh, Huijia Lin, Ji LuoEUROCRYPT 2024 · 12 citations
- Unbounded Distributed Broadcast Encryption and Registered ABE from Succinct LWEHoeteck Wee, David J. WuCRYPTO 2025 · 12 citations
- Compact Adaptively Secure ABE from k-Lin: Beyond NC1 and Towards NLHuijia Lin, Ji LuoEUROCRYPT 2020 · 42 citations
