USENIX Security2026Top-tier venue
Ajax: Fast Threshold Fully Homomorphic Encryption without Noise Flooding
Zhenkai Hu, Haofei Liang, Xiao Wang, Xiang Xie, Kang Yang, Yu Yu, Wenhao Zhang
Abstract
Threshold fully homomorphic encryption (ThFHE) enables multiple parties to perform arbitrary computation over encrypted data, while the secret key is distributed across the parties. The main task of designing ThFHE is to construct threshold key-generation and decryption protocols for FHE schemes. Among existing FHE schemes, FHEW-like cryptosystems enjoy the advantage of fast bootstrapping and small parameters. However, known ThFHE solutions use the "noise-flooding" technique to realize threshold decryption, which requires either large parameters or switching to a scheme with large parameters via bootstrapping, leading to a slow decryption process. Besides, for key generation, existing ThFHE schemes either assume a generic MPC or a trusted setup, or incur noise growth that is linear in the number n of parties. In this paper, we propose a fast ThFHE scheme Ajax, by designing threshold key-generation and decryption protocols for FHEW-like cryptosystems. In particular, for threshold decryption, we eliminate the need for noise flooding, and instead present a new technique called "mask-then-open" based on random double sharings over different rings, while keeping the advantage of small parameters. For threshold key generation, we show a simple approach to reduce the noise growth from n times to max(0.038n,2) times in the honest-majority setting, where at most t=(n-1)/2 parties are corrupted. Our end-to-end implementation reports the running time 17.6 s and 0.9 ms (resp., 91.9 s and 4.4 ms) of generating a set of keys and decrypting a single ciphertext respectively, for n=3 (resp., n=21) parties under the network of 1 Gbps bandwidth and 1 ms ping time. Compared to the state-of-the-art implementation, our protocol improves the end-to-end performance of the threshold decryption protocol by a factor of at least 5.7× 283.6× across different network latencies from t=1 to t=13. Our approaches can also be applied in other types of FHE schemes like BGV, BFV, and CKKS.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 5f376dad-46dc-435f-8164-70f520cfde84Cited by top-tier papers2
- Relect: Single Secret Leader Election via FHE with Reduced Computation and Communication and Transparent SetupHaofei Liang, Zeyu Liu, Yunhao Wang, Xiang Xie et al.CCS 2026
- Revisiting Shamir Secret Sharing for Threshold Fully Homomorphic EncryptionJiseung Kim, Seunghu Kim, Hyung Tae LeeCCS 2026
Builds on17
- MASCOT: Faster Malicious Arithmetic Secure Computation with Oblivious TransferMarcel Keller, Emmanuela Orsini, Peter SchollCCS 2016 · 487 citations
- Efficient Two-Round OT Extension and Silent Non-Interactive Secure ComputationElette Boyle, Geoffroy Couteau, Niv Gilboa, Yuval Ishai et al.CCS 2019 · 238 citations
- Efficient FHEW Bootstrapping with Small Evaluation Keys, and Applications to Threshold Homomorphic EncryptionYongwoo Lee, Daniele Micciancio, Andrey Kim, Rakyong Choi et al.EUROCRYPT 2023 · 86 citations
- Correlated Pseudorandomness from Expand-Accumulate CodesElette Boyle, Geoffroy Couteau, Niv Gilboa, Yuval Ishai et al.CRYPTO 2022 · 66 citations
- Expand-Convolute Codes for Pseudorandom Correlation Generators from LPNSrinivasan Raghuraman, Peter Rindal, Titouan TanguyCRYPTO 2023 · 50 citations
Related papers
- High-Throughput Universally Composable Threshold FHE DecryptionGuy Zyskind, Doron Zarchy, Max Leibovich, Chris PeikertCCS 2025
- HERDS: Multi-key Fully Homomorphic Encryption with Sublinear BootstrappingBinwu Xiang, Seonhong Min, Intak Hwang, Zhiwei Wang et al.EUROCRYPT 2026 · 1 citation
- BTS: an accelerator for bootstrappable fully homomorphic encryptionSangpyo Kim, Jongmin Kim, Michael Jaemin Kim, Wonkyung Jung et al.ISCA 2022 · 184 citations
- Distributed Key Generation for Efficient Threshold-CKKSSeonhong Min, Guillaume Hanrot, Jai Hyun Park, Alain Passelègue et al.CCS 2026 · 1 citation
- Arbitrary-Threshold Fully Homomorphic Encryption with Lower ComplexityYijia Chang, Songze LiUSENIX Security 2025
