Lune

CRYPTO2022Top-tier venue

Formalizing Delayed Adaptive Corruptions and the Security of Flooding Networks

Christian Matt, Jesper Buus Nielsen, Søren Eller Thomsen

2022Year
13Citations
4Top-tier citations

Abstract

Many decentralized systems rely on flooding protocols for message dissemination. In such a protocol, the sender of a message sends it to a randomly selected set of peers. These peers again send the message to their randomly selected peers, until every network participant has received the message. This type of protocols clearly fail in face of an adaptive adversary who can simply corrupt all peers of the sender and thereby prevent the message from being delivered. Nevertheless, flooding protocols are commonly used within protocols that aim to be cryptographically secure, most notably in blockchain protocols. While it is possible to revert to static corruptions, this gives unsatisfactory security guarantees, especially in the setting of a blockchain that is supposed to run for an extended period of time. To be able to provide meaningful security guarantees in such settings, we give precise semantics to what we call δ\delta -delayed adversaries in the Universal Composability (UC) framework. Such adversaries can adaptively corrupt parties, but there is a delay of time δ\delta from when an adversary decides to corrupt a party until they succeed in overtaking control of the party. Within this model, we formally prove the intuitive result that flooding protocols are secure against δ\delta -delayed adversaries when δ\delta is at least the time it takes to send a message from one peer to another plus the time it takes the recipient to resend the message. To this end, we show how to reduce the adaptive setting with a δ\delta -delayed adversary to a static experiment with an Erdős-Rényi graph. Using the established theory of Erdős-Rényi graphs, we provide upper bounds on the propagation time of the flooding functionality for different neighborhood sizes of the gossip network. More concretely, we show the following for security parameter κ\kappa , point-to-point channels with delay at most Δ\varDelta , and n parties in total, with a sufficiently delayed adversary that can corrupt any constant fraction of the parties: If all parties send to Ω(κ)\varOmega (\kappa ) parties on average, then we can realize a flooding functionality with maximal delay O(Δ⋅log⁡(n))\mathcal {O}\bigl (\varDelta \cdot \log (n) \bigr ) ; and if all parties send to Ω(κn)\varOmega \bigl ( \sqrt{\kappa n} \bigr ) parties on average, we can realize a flooding functionality with maximal delay O(Δ)\mathcal {O}(\varDelta ) .

Ask about this paper

Your agent reads all of it.

Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.

Questions to start from

Your agent calls

Luneget_paper_fulltext

Ask in Lune

Free to start. No credit card required.

lune papers fulltext ec03bf93-9bf5-4f41-bb22-722301486288

Cited by top-tier papers4

Ask how each one uses it

Builds on5

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines