USENIX Security2024Top-tier venue
Key Recovery Attacks on Approximate Homomorphic Encryption with Non-Worst-Case Noise Flooding Countermeasures
Qian Guo, Denis Nabokov, Elias Suvanto, Thomas Johansson
Abstract
In this paper, we present novel key-recovery attacks on Approximate Homomorphic Encryption schemes, such as CKKS, when employing noise-flooding countermeasures based on non-worst-case noise estimation. Our attacks build upon and enhance the seminal work by Li and Micciancio at EURO-CRYPT 2021. We demonstrate that relying on average-case noise estimation undermines noise-flooding countermeasures, even if the secure noise bounds derived from differential privacy as published by Li et al. at CRYPTO 2022 are implemented. This study emphasizes the necessity of adopting worst-case noise estimation in Approximate Homomorphic Encryption when sharing decryption results. We perform the proposed attacks on OpenFHE, an emerging open-source FHE library garnering increased attention. We experimentally demonstrate the ability to recover the secret key using just one shared decryption output. Furthermore, we investigate the implications of our findings for other libraries, such as IBM's HElib library, which allows experimental estimation of the noise bounds. Finally, we reveal that deterministic noise generation utilizing a pseudorandom generator fails to provide supplementary protection.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 1bc42ae1-4233-475e-bb63-10fb99fd81f0Cited by top-tier papers3
- On the Practical CPAD Security of "exact" and Threshold FHE Schemes and LibrariesMarina Checri, Renaud Sirdey, Aymen Boudguiga, Jean-Paul BultelCRYPTO 2024 · 31 citations
- ZHE: Efficient Zero-Knowledge Proofs for HE EvaluationsZhelei Zhou, Yun Li, Yuchen Wang, Zhaomin Yang et al.S&P 2025
- IND-CPA-D of Relaxed Functional Bootstrapping: A New Attack, A General Fix, and A Stronger ModelZeyu Liu, Yunhao Wang, Ben FischCCS 2025
Builds on2
Related papers
- Attacks Against the IND-CPAD Security of Exact FHE SchemesJung Hee Cheon, Hyeongmin Choe, Alain Passelègue, Damien Stehlé et al.CCS 2024 · 23 citations
- Ajax: Fast Threshold Fully Homomorphic Encryption without Noise FloodingZhenkai Hu, Haofei Liang, Xiao Wang, Xiang Xie et al.USENIX Security 2026
- ILA: Correctness via Type Checking for Fully Homomorphic EncryptionTarakaram Gollamudi, Anitha Gollamudi, Joshua GancherCCS 2025
- Rubato: Noisy Ciphers for Approximate Homomorphic EncryptionJincheol Ha, Seongkwang Kim, ByeongHak Lee, Jooyoung Lee et al.EUROCRYPT 2022 · 44 citations
- Arbitrary-Threshold Fully Homomorphic Encryption with Lower ComplexityYijia Chang, Songze LiUSENIX Security 2025
