Targeted Lossy Functions and Applications
Willy Quach, Brent Waters, Daniel Wichs
Abstract
Lossy trapdoor functions, introduced by Peikert and Waters (STOC '08), can be initialized in one of two indistinguishable modes: in injective mode, the function preserves all information about its input, and can be efficiently inverted given a trapdoor, while in lossy mode, the function loses some information about its input. Such functions have found countless applications in cryptography, and can be constructed from a variety of number-theoretic or algebraic "Cryptomania" assumptions. In this work, we introduce targeted lossy functions (TLFs), which relax lossy trapdoor functions along two orthogonal dimensions. First, they do not require an inversion trapdoor in injective mode. Second, the lossy mode of the function is initialized with some target input, and the function is only required to lose information about this particular target. The injective and lossy modes should be indistinguishable even given the target. We construct TLFs from "Minicrypt" assumptions, namely, injective pseudorandom generators, or even oneway functions under a natural relaxation of injectivity. We then generalize TLFs to incorporate branches, and construct all-injective-but-one and all-lossy-but-one variants. We show a wide variety of applications of targeted lossy functions. In several cases, we get the first Minicrypt constructions of primitives that were previously only known under Cryptomania assumptions. Our applications include:
• Pseudo-entropy functions from one-way functions.
• Deterministic leakage-resilient message-authentication codes and improved leakage-resilient symmetric-key encryption from one-way functions.
• Extractors for extractor-dependent sources from one-way functions.
• Selective-opening secure symmetric-key encryption from one-way functions.
• A new construction of CCA PKE from (exponentially secure) trapdoor functions and injective pseudorandom generators.
We also discuss a fascinating connection to distributed point functions.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Builds on4
- Chosen Ciphertext Security from Injective Trapdoor FunctionsSusan Hohenberger, Venkata Koppula, Brent WatersCRYPTO 2020 · 18 citations
- Incompressible EncodingsTal Moran, Daniel WichsCRYPTO 2020 · 18 citations
- Extracting Randomness from Extractor-Dependent SourcesYevgeniy Dodis, Vinod Vaikuntanathan, Daniel WichsEUROCRYPT 2020 · 16 citations
- Low Error Efficient Computational Extractors in the CRS ModelAnkit Garg, Yael Tauman Kalai, Dakshita KhuranaEUROCRYPT 2020 · 9 citations
Related papers
- Lossy Cryptography from Code-Based AssumptionsQuang Dao, Aayush JainCRYPTO 2024 · 8 citations
- Universal Computational Extractors and Multi-Bit AIPO from Lattice AssumptionsYilei Chen, Xinyu MaoEUROCRYPT 2025 · 1 citation
- Adaptive Security in SNARGs via iO and Lossy FunctionsBrent Waters, Mark ZhandryCRYPTO 2024 · 20 citations
- Enhanced Trapdoor Hashing from DDH and DCRGeoffroy Couteau, Aditya Hegde, Sihang PuEUROCRYPT 2025 · 1 citation
- Publicly-Verifiable Deletion via Target-Collapsing FunctionsJames Bartusek, Dakshita Khurana, Alexander PorembaCRYPTO 2023 · 14 citations
