Minimizing Setup in Broadcast-Optimal Two Round MPC
Ivan Damgård, Divya Ravi, Luisa Siniscalchi, Sophia Yakoubov
Abstract
In this paper we consider two-round secure computation protocols which use different communication channels in different rounds: namely, protocols where broadcast is available in neither round, both rounds, only the first round, or only the second round. The prior works of Cohen, Garay and Zikas (Eurocrypt 2020) and Damgård, Magri, Ravi, Siniscalchi and Yakoubov (Crypto 2021) give tight characterizations of which security guarantees are achievable for various thresholds in each communication structure. In this work, we introduce a new security notion, namely, selective identifiable abort, which guarantees that every honest party either obtains the output, or aborts identifying one corrupt party (where honest parties may potentially identify different corrupted parties). We investigate what broadcast patterns in two-round MPC allow achieving this guarantee across various settings (such as with or without PKI, with or without an honest majority). Further, we determine what is possible in the honest majority setting without a PKI, closing a question left open by Damgård et al. We show that without a PKI, having an honest majority does not make it possible to achieve stronger security guarantees compared to the dishonest majority setting. However, if two-thirds of the parties are guaranteed to be honest, identifiable abort is additionally achievable using broadcast only in the second round. We use fundamentally different techniques from the previous works to avoid relying on private communication in the first round when a PKI is not available, since assuming such private channels without the availability of public encryption keys is unrealistic. We also show that, somewhat surprisingly, the availability of private channels in the first round does not enable stronger security guarantees unless the corruption threshold is one.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Cited by top-tier papers1
Ask how each one uses itRelated papers
- Broadcast-Optimal Two Round MPC with an Honest MajorityIvan Damgård, Bernardo Magri, Divya Ravi, Luisa Siniscalchi et al.CRYPTO 2021 · 13 citations
- Broadcast-Optimal Two-Round MPCRan Cohen, Juan A. Garay, Vassilis ZikasEUROCRYPT 2020 · 23 citations
- Fast Actively Secure Five-Party Computation with Security Beyond AbortMegha Byali, Carmit Hazay, Arpita Patra, Swati SinglaCCS 2019 · 12 citations
- Round Efficient Secure Multiparty Quantum Computation with Identifiable AbortBar Alon, Hao Chung, Kai-Min Chung, Mi-Ying Huang et al.CRYPTO 2021 · 16 citations
- Round-Optimal Multi-party Computation with Identifiable AbortMichele Ciampi, Divya Ravi, Luisa Siniscalchi, Hendrik WaldnerEUROCRYPT 2022 · 8 citations
