Conditionally Input-Revealing 2PC and Fuzzy Password-Authenticated Key Exchange
David Richardson, Mike Rosulek, Jiayu Xu
Abstract
Yao's famous protocol for secure 2-party computation, based on garbled circuits, is well-known to be insecure against an actively corrupt garbler. We introduce a new and extremely simple variant of Yao's protocol that is fully secure against active adversaries, for a certain class of functions that we call conditionally input-revealing.
We then show how to use this new protocol as the basis for fuzzy password authenticated key exchange (fuzzy PAKE). In fuzzy PAKE, two parties each hold a low-entropy secret (e.g., a password), and they interact to obtain a secure high-entropy key if and only if the passwords are sufficiently close.'' Our new fuzzy PAKE protocol supports completely arbitrary predicates for password closeness''. Compared to prior fuzzy PAKE protocols, ours is roughly cheaper in communication, computation, and round complexity.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get 6944fade-6700-45ca-8b2b-730070cab9d3Related papers
- How to Tolerate Typos in Strong Asymmetric PAKEIan McQuoid, Mike Rosulek, Jiayu XuCRYPTO 2025 · 3 citations
- Universally Composable Relaxed Password Authenticated Key ExchangeMichel Abdalla, Manuel Barbosa, Tatiana Bradley, Stanislaw Jarecki et al.CRYPTO 2020 · 42 citations
- Authenticated BitGC for Actively Secure Rate-One 2PCHanlin Liu, Xiao Wang, Kang Yang, Yu YuCRYPTO 2025 · 5 citations
- Actively Secure Half-Gates with Minimum Overhead Under Duplex NetworksHongrui Cui, Xiao Wang, Kang Yang, Yu YuEUROCRYPT 2023 · 16 citations
- Assumption-Free Fuzzy PSI via Predicate EncryptionErik-Oliver Blass, Guevara NoubirUSENIX Security 2026 · 6 citations
