Threshold Batched Identity-Based Encryption from Pairings in the Plain Model
Junqing Gong, Brent Waters, Hoeteck Wee, David J. Wu
Abstract
In a batched identity-based encryption (IBE) scheme, ciphertexts are associated with a batch label tg * and an identity id * while secret keys are associated with a batch label tg and a set of identities ๐. Decryption is possible whenever tg = tg * and id * โ ๐. The primary efficiency property in a batched IBE scheme is that the size of the decryption key for a set ๐ should be independent of the size of ๐. Batched IBE schemes provide an elegant cryptographic mechanism to support encrypted memory pools in blockchain applications.
In this work, we introduce a new algebraic framework for building pairing-based batched IBE. Our framework gives the following:
โข First, we obtain a selectively-secure batched IBE scheme under a ๐-type assumption in the plain model. Both the ciphertext and the secret key consist of a constant number of group elements. This is the first pairing-based batched IBE scheme in the plain model. Previous pairing-based schemes relied on the generic group model and the random oracle model.
โข Next, we show how to extend our base scheme to a threshold batched IBE scheme with silent setup. In this setting, users independently choose their own public and private keys, and there is a non-interactive procedure to derive the master public key (for a threshold batched IBE scheme) for a group of users from their individual public keys. We obtain a statically-secure threshold batched IBE scheme with silent setup from a ๐-type assumption in the plain model. As before, ciphertexts and secret keys in this scheme contain a constant number of group elements. Previous pairing-based constructions of threshold batched IBE with silent setup relied on the generic group model, could only support a polynomial number of identities (where the size of the public parameters scaled linearly with this bound), and ciphertexts contained ๐ (๐/log ๐) group elements, where ๐ is the security parameter.
โข Finally, we show that if we work in the generic group model, then we obtain a (threshold) batched IBE scheme with shorter ciphertexts (by 1 group element) than all previous pairing-based constructions (and without impacting the size of the secret key).
Our constructions rely on classic algebraic techniques underlying pairing-based IBE and do not rely on the signaturebased witness encryption viewpoint taken in previous works.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 311708a6-6c36-4d51-9aa3-c06dd1e33fc4Cited by top-tier papers2
- Lighthouse: Single-Server Secure Aggregation with O(1) Server-Committee Communication at ScaleSanjam Garg, Alireza Kavousi, Dimitris Kolonelos, Erkan Tairi et al.USENIX Security 2026 ยท 1 citation
- Pairing-Based Registered ABE for Boolean Formulas with a Linear-Size CRSRoy Stracovsky, Brent Waters, David J. WuCRYPTO 2026
Builds on14
- Flash Boys 2.0: Frontrunning in Decentralized Exchanges, Miner Extractable Value, and Consensus InstabilityPhilip Daian, Steven Goldfeder, Tyler Kell, Yunqi Li et al.S&P 2020 ยท 607 citations
- Towards Scalable Threshold CryptosystemsAlin Tomescu, Robert Chen, Yiming Zheng, Ittai Abraham et al.S&P 2020 ยท 102 citations
- Registered Attribute-Based EncryptionSusan Hohenberger, George Lu, Brent Waters, David J. WuEUROCRYPT 2023 ยท 83 citations
- How to Use (Plain) Witness Encryption: Registered ABE, Flexible Broadcast, and MoreCody Freitag, Brent Waters, David J. WuCRYPTO 2023 ยท 49 citations
- Efficient Laconic Cryptography from Learning with ErrorsNico Dรถttling, Dimitris Kolonelos, Russell W. F. Lai, Chuanwei Lin et al.EUROCRYPT 2023 ยท 46 citations
Related papers
- Efficiently-Thresholdizable Batched Identity Based Encryption, with ApplicationsAmit Agarwal, Rex Fernando, Benny PinkasCRYPTO 2025 ยท 12 citations
- BEAST-MEV: Batched Threshold Encryption with Silent Setup for MEV preventionJan Bormet, Arka Rai Choudhuri, Sebastian Faust, Sanjam Garg et al.CCS 2026 ยท 12 citations
- Silent Threshold Cryptography from Pairings: Expressive Policies in the Plain ModelBrent Waters, David J. WuEUROCRYPT 2026 ยท 2 citations
- Mempool Privacy via Batched Threshold Encryption: Attacks and DefensesArka Rai Choudhuri, Sanjam Garg, Julien Piet, Guru-Vamsi PolicharlaUSENIX Security 2024 ยท 41 citations
- Threshold Encryption with Silent SetupSanjam Garg, Dimitris Kolonelos, Guru-Vamsi Policharla, Mingyuan WangCRYPTO 2024 ยท 31 citations
