The Price of Active Security in Cryptographic Protocols
Carmit Hazay, Muthuramakrishnan Venkitasubramaniam, Mor Weiss
Abstract
We construct the first actively-secure Multi-Party Computation (MPC) protocols with an arbitrary number of parties in the dishonest majority setting, for an arbitrary field F with constant communication overhead over the “passive-GMW” protocol (Goldreich, Micali and Wigderson, STOC ‘87). Our protocols rely on passive implementations of Oblivious Transfer (OT) in the boolean setting and Oblivious Linear function Evaluation (OLE) in the arithmetic setting. Previously, such protocols were only known over sufficiently large fields (Genkin et al. STOC ‘14) or a constant number of parties (Ishai et al. CRYPTO ‘08).
Conceptually, our protocols are obtained via a new compiler from a passively-secure protocol for a distributed multiplication functionality , to an actively-secure protocol for general functionalities. Roughly, is parameterized by a linear-secret sharing scheme S, where it takes S-shares of two secrets and returns S-shares of their product.
We show that our compilation is concretely efficient for sufficiently large fields, resulting in an over- head of 2 when securely computing natural circuits. Our compiler has two additional benefits: (1) it can rely on any passive implementation of , which, besides the standard implementation based on OT (for boolean) and OLE (for arithmetic) allows us to rely on implementations based on threshold cryptosystems (Cramer et al. Eurocrypt ‘01); and (2) it can rely on weaker-than-passive (i.e., imperfect/leaky) implementations, which in some parameter regimes yield actively-secure protocols with overhead less than 2.
Instantiating this compiler with an “honest-majority” implementation of FMULT, we obtain the first honest-majority protocol with optimal corruption threshold for boolean circuits with constant communication overhead over the best passive protocol (Damgård and Nielsen, CRYPTO ‘07).
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get def954be-6e51-4560-a4cd-27bf21e3ba9fCited by top-tier papers4
- Leakage-Resilience of the Shamir Secret-Sharing Scheme Against Physical-Bit LeakagesHemanta K. Maji, Hai H. Nguyen, Anat Paskin-Cherniavsky, Tom Suad et al.EUROCRYPT 2021 · 27 citations
- Constructing Locally Leakage-Resilient Linear Secret-Sharing SchemesHemanta K. Maji, Anat Paskin-Cherniavsky, Tom Suad, Mingyuan WangCRYPTO 2021 · 18 citations
- Constructing Leakage-Resilient Shamir's Secret Sharing: Over Composite Order FieldsHemanta K. Maji, Hai H. Nguyen, Anat Paskin-Cherniavsky, Xiuyu YeEUROCRYPT 2024 · 8 citations
- More Efficient MPC from Improved Triple Generation and Authenticated GarblingKang Yang, Xiao Wang, Jiang ZhangCCS 2020 · 5 citations
Related papers
- Actively Secure MPC with O(|C|) Computation and Communication via CRTAlexander Bienstock, Daniel Escudero, Antigoni PolychroniadouCRYPTO 2026
- MASCOT: Faster Malicious Arithmetic Secure Computation with Oblivious TransferMarcel Keller, Emmanuela Orsini, Peter SchollCCS 2016 · 487 citations
- Constant-Overhead Unconditionally Secure Multiparty Computation Over Binary FieldsAntigoni Polychroniadou, Yifan SongEUROCRYPT 2021 · 17 citations
- Towards Building Scalable Constant-Round MPC from Minimal Assumptions via Round CollapsingVipul Goyal, Junru Li, Rafail Ostrovsky, Yifan SongCRYPTO 2025 · 3 citations
- Efficient and Generic Methods to Achieve Active Security in Private Information Retrieval and More Advanced Database SearchReo Eriguchi, Kaoru Kurosawa, Koji NuidaEUROCRYPT 2024 · 1 citation
