Lune

CRYPTO2022Top-tier venue

Formal Verification of Saber's Public-Key Encryption Scheme in EasyCrypt

Andreas Hülsing, Matthias Meijers, Pierre-Yves Strub

2022Year
11Citations
3Top-tier citations

Abstract

In this work, we consider the formal verification of the public-key encryption scheme of Saber, one of the selected few post-quantum cipher suites currently considered for potential standardization. We formally verify this public-key encryption scheme's IND-CPA security and δ\delta-correctness properties, i.e., the properties required to transform the public-key encryption scheme into an IND-CCA2 secure and δ\delta-correct key encapsulation mechanism, in EasyCrypt. To this end, we initially devise hand-written proofs for these properties that are significantly more detailed and meticulous than the presently existing proofs. Subsequently, these hand-written proofs serve as a guideline for the formal verification. The results of this endeavor comprise hand-written and computer-verified proofs which demonstrate that Saber's public-key encryption scheme indeed satisfies the desired security and correctness properties.

Ask about this paper

Ask your agent about it.

Lune has read the top-tier papers around this one, so every answer names the papers it rests on.

Questions to start from

Your agent calls

Lunesearch_papers

Ask in Lune

Free to start. No credit card required.

lune papers get 51e1c96a-6e3e-4c40-95c8-8370d9a7e902

Cited by top-tier papers3

Ask how each one uses it

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines