Lune

CRYPTO2023Top-tier venue

Individual Cryptography

Stefan Dziembowski, Sebastian Faust, Tomasz Lizurej

2023Year
6Citations
3Top-tier citations

Abstract

We initiate a formal study of individual cryptography. Informally speaking, an algorithm Alg\mathsf{Alg} is "individual" if, in every implementation of Alg\mathsf{Alg}, there always exists an individual user with full knowledge of the cryptographic data SS used by Alg\mathsf{Alg}. In particular, it should be infeasible to design implementations of this algorithm that would hide SS by distributing it between a group of parties using an MPC protocol or outsourcing it to a trusted execution environment.

We define and construct two primitives in this model. The first one, called "proofs of individual knowledge", is a tool for proving that a given message is fully known to a single ("individual") machine on the Internet, i.e., it cannot be shared between a group of parties. The second one, dubbed "individual secret sharing", is a scheme for sharing a secret SS between a group of parties so that the parties have no knowledge of SS as long as they do not reconstruct it. The reconstruction ensures that if the shareholders attempt to collude, one of them will learn the secret entirely. Individual secret sharing has applications for preventing collusion in secret sharing. A central technique for constructing individual cryptographic primitives is the concept of MPC hardness. MPC hardness precludes an adversary from completing a cryptographic task in a distributed fashion within a specific time frame.

Ask about this paper

Ask your agent about it.

Lune has read the top-tier papers around this one, so every answer names the papers it rests on.

Questions to start from

Your agent calls

Lunesearch_papers

Ask in Lune

Free to start. No credit card required.

lune papers get 57bff787-7bc5-48cc-902c-f812bbd8da3d

Cited by top-tier papers3

Ask how each one uses it

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines