Snake-Eye Resistant PKE from LWE for Oblivious Message Retrieval and Robust Encryption
Zeyu Liu, Katerina Sotiraki, Eran Tromer, Yunhao Wang
Abstract
Oblivious message retrieval (OMR) allows resource-limited recipients to outsource the message retrieval process without revealing which messages are pertinent to which recipient. Its realizations in recent works leave an open problem: can an OMR scheme be both practical and provably secure against spamming attacks from malicious senders (i.e., DoS-resistant) under standard assumptions?
In this paper, we first prove that a prior construction is DoS-resistant under a standard LWE assumption, resolving an open conjecture of prior works. Then, we present : a provably DoS-resistant OMR construction that is 12x faster than , and (almost) matches the performance of the state-of-the-art OMR scheme that is DoS-resistant (proven by the attacks we show).
To achieve this, we analyze the property for general PKE schemes (i.e., it is hard to encrypt an identical message under two keys). We construct a new lattice-based PKE scheme: , that is provably snake-eye resistant and has better efficiency than the PVW scheme underlying . We also show that the natural candidates (e.g., RingLWE PKE) are not snake-eye resistant.
Furthermore, we show that a snake-eye resistant PKE scheme implies a robust PKE scheme, thus introducing the first robust lattice-based PKE scheme without relying on the KEM-DEM paradigm and its inherent inefficiencies.
Of independent interest, we introduce two variants of LWE with side information, as components towards proving the properties of , and reduce standard LWE to them for the parameters of interest.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get 23ba74fb-3d3d-4a98-b443-fd18b954aa55Cited by top-tier papers7
- mmCipher: Batching Post-Quantum Public Key Encryption Made Bandwidth-OptimalHongxiao Wang, Ron Steinfeld, Markku-Juhani O. Saarinen, Muhammed F. Esgin et al.USENIX Security 2026 · 2 citations
- InstantOMR: Oblivious Message Retrieval with Low Latency and Optimal ParallelizabilityHaofei Liang, Zeyu Liu, Eran Tromer, Xiang Xie et al.USENIX Security 2026
- Oblivious SignalingMirza Kamrul Bashar Shuhan, Foteini Baldimtsi, Giuseppe AtenieseUSENIX Security 2026
- Relect: Single Secret Leader Election via FHE with Reduced Computation and Communication and Transparent SetupHaofei Liang, Zeyu Liu, Yunhao Wang, Xiang Xie et al.CCS 2026
- SophOMR: Improved Oblivious Message Retrieval from SIMD-Aware Homomorphic CompressionKeewoo Lee, Yongdong YeoUSENIX Security 2026
Related papers
- PerfOMR: Oblivious Message Retrieval with Reduced Communication and ComputationZeyu Liu, Eran Tromer, Yunhao WangUSENIX Security 2024 · 16 citations
- HomeRun: High-efficiency Oblivious Message Retrieval, UnrestrictedYanxue Jia, Varun Madathil, Aniket KateCCS 2024 · 8 citations
- Group Oblivious Message RetrievalZeyu Liu, Eran Tromer, Yunhao WangS&P 2024 · 24 citations
- StOMR: Stateful Oblivious Message RetrievalCharles Gouert, Keewoo Lee, Dimitris Mouris, Yiannis Tselekounis et al.CCS 2026
- Oblivious Message RetrievalZeyu Liu, Eran TromerCRYPTO 2022 · 28 citations
