Lune

EUROCRYPT2025Top-tier venue

Efficient Distributed Randomness Generation from Minimal Assumptions Where PArties Speak Sequentially Once

Chen-Da Liu-Zhang, Elisaweta Masserova, João Ribeiro, Pratik Soni, Sri Aravinda Krishnan Thyagarajan

2025Year
5Citations

Abstract

We study efficient public randomness generation protocols in the PASSO (PArties Speak Sequentially Once) model for multi-party computation (MPC). PASSO is a variation of traditional MPC where nn parties are executed in sequence and each party ``speaks'' only once, broadcasting and sending secret messages only to parties further down the line. Prior results in this setting include information-theoretic protocols in which the computational complexity scales exponentially with the number of corruptions tt (CRYPTO 2022), as well as more efficient computationally-secure protocols either assuming a trusted setup phase or DDH (FC 2024). Moreover, these works only consider security against static adversaries.

In this work, we focus on computational security against adaptive adversaries and from minimal assumptions, and improve on the works mentioned above in several ways:

  • Assuming the existence of non-interactive perfectly binding commitments, we design protocols with n=3t+1n=3t+1 or n=4tn=4t parties that are efficient and secure whenever tt is small compared to the security parameter λ\lambda (e.g., tt is constant). This improves the resiliency of all previous protocols, even those requiring a trusted setup. It also shows that n=4n=4 parties are necessary and sufficient for t=1t=1 corruptions in the computational setting, while n=5n=5 parties are required for information-theoretic security.

  • Under the same assumption, we design protocols with n=4t+2n=4t+2 or n=5t+2n=5t+2 parties (depending on the adversarial network model) which are efficient whenever t=poly(λ)t=poly(\lambda). This improves on the existing DDH-based protocol both in terms of resiliency and the underlying assumptions.

  • We design efficient protocols with n=5t+3n=5t+3 or n=6t+3n=6t+3 parties (depending on the adversarial network model) assuming the existence of one-way functions.

We complement these results by studying lower bounds for randomness generation protocols in the computational setting.

Ask about this paper

Ask your agent about it.

Lune has read the top-tier papers around this one, so every answer names the papers it rests on.

Questions to start from

Your agent calls

Lunesearch_papers

Ask in Lune

Free to start. No credit card required.

lune papers get 3c9a427d-be0c-4891-b08b-a4bfeff0f7b8

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines