Optimal Broadcast Encryption from Pairings and LWE
Shweta Agrawal, Shota Yamada
Abstract
Boneh, Waters and Zhandry (CRYPTO 2014) used multilinear maps to provide a solution to the long-standing problem of public-key broadcast encryption (BE) where all parameters in the system are small. In this work, we improve their result by providing a solution that uses only bilinear maps and Learning With Errors (LWE). Our scheme is fully collusion-resistant against any number of colluders, and can be generalized to an identity-based broadcast system with short parameters. Thus, we reclaim the problem of optimal broadcast encryption from the land of “Obfustopia”.
Our main technical contribution is a ciphertext policy attribute based encryption (CP-ABE) scheme which achieves special efficiency properties – its ciphertext size, secret key size, and public key size are all independent of the size of the circuits supported by the scheme. We show that this special CP-ABE scheme implies BE with optimal parameters; but it may also be of independent interest. Our constructions rely on a novel interplay of bilinear maps and LWE, and are proven secure in the generic group model.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get c4e6513d-74ac-4307-bdfd-76e38d959d86Cited by top-tier papers7
- Decentralized Multi-authority ABE for DNFs from LWEPratish Datta, Ilan Komargodski, Brent WatersEUROCRYPT 2021 · 62 citations
- To Label, or Not To Label (in Generic Groups)Mark ZhandryCRYPTO 2022 · 50 citations
- Multi-input Attribute Based Encryption and Predicate EncryptionShweta Agrawal, Anshu Yadav, Shota YamadaCRYPTO 2022 · 26 citations
- Fully Adaptive Decentralized Multi-Authority ABEPratish Datta, Ilan Komargodski, Brent WatersEUROCRYPT 2023 · 24 citations
- Registered ABE and Adaptively-Secure Broadcast Encryption from Succinct LWEJeffrey Champion, Yao-Ching Hsieh, David J. WuCRYPTO 2025 · 21 citations
Related papers
- Optimal Broadcast Encryption and CP-ABE from Evasive Lattice AssumptionsHoeteck WeeEUROCRYPT 2022 · 75 citations
- Broadcast Encryption with Size N1/3 and More from k-LinHoeteck WeeCRYPTO 2021 · 14 citations
- Unbounded Distributed Broadcast Encryption and Registered ABE from Succinct LWEHoeteck Wee, David J. WuCRYPTO 2025 · 12 citations
- ABE for Circuits with poly (λ) -sized Keys from LWEValerio Cini, Hoeteck WeeFOCS 2023 · 7 citations
- Almost Optimal KP and CP-ABE for Circuits from Succinct LWEHoeteck WeeEUROCRYPT 2025 · 16 citations
