Post-Quantum Security of the Even-Mansour Cipher
Gorjan Alagic, Chen Bai, Jonathan Katz, Christian Majenz
摘要
The Even-Mansour cipher is a simple method for constructing a (keyed) pseudorandom permutation from a public random permutation . It is secure against classical attacks, with optimal attacks requiring queries to and queries to such that . If the attacker is given quantum access to both and , however, the cipher is completely insecure, with attacks using queries known. In any plausible real-world setting, however, a quantum attacker would have only classical access to the keyed permutation implemented by honest parties, even while retaining quantum access to . Attacks in this setting with are known, showing that security degrades as compared to the purely classical case, but leaving open the question as to whether the Even-Mansour cipher can still be proven secure in this natural,"post-quantum"setting. We resolve this question, showing that any attack in that setting requires . Our results apply to both the two-key and single-key variants of Even-Mansour. Along the way, we establish several generalizations of results from prior work on quantum-query lower bounds that may be of independent interest.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
引用它的顶会 Paper6
- Quantum Linear Key-Recovery Attacks Using the QFTAndré SchrottenloherCRYPTO 2023 · 被引用 12 次
- The Sponge Is Quantum IndifferentiableGorjan Alagic, Joseph Carolan, Christian Majenz, Saliha TokatFOCS 2025 · 被引用 6 次
- Quantum One-Wayness of the Single-Round Sponge with Invertible PermutationsJoseph Carolan, Alexander PorembaCRYPTO 2024 · 被引用 4 次
- Quantum Lifting for Invertible Permutations and Ideal CiphersAlexandru Cojocaru, Minki Hhan, Qipeng Liu, Takashi Yamakawa 等CRYPTO 2025 · 被引用 2 次
- The NISQ Complexity of Collision FindingYassine Hamoudi, Qipeng Liu, Makrand SinhaEUROCRYPT 2024 · 被引用 2 次
它引用的顶会 Paper3
- Measure-Rewind-Measure: Tighter Quantum Random Oracle Model Proofs for One-Way to Hiding and CCA SecurityVeronika Kuchta, Amin Sakzad, Damien Stehlé, Ron Steinfeld 等EUROCRYPT 2020 · 被引用 60 次
- Online-Extractability in the Quantum Random-Oracle ModelJelle Don, Serge Fehr, Christian Majenz, Christian SchaffnerEUROCRYPT 2022 · 被引用 57 次
- Quantum-Access-Secure Message Authentication via Blind-UnforgeabilityGorjan Alagic, Christian Majenz, Alexander Russell, Fang SongEUROCRYPT 2020 · 被引用 55 次
相关 Paper
- Post-quantum Security of Tweakable Even-Mansour, and ApplicationsGorjan Alagic, Chen Bai, Jonathan Katz, Christian Majenz 等EUROCRYPT 2024 · 被引用 10 次
- On the Impossibility of Key Agreements from Quantum Random OraclesPer Austrin, Hao Chung, Kai-Min Chung, Shiuan Fu 等CRYPTO 2022 · 被引用 20 次
- Cryptomania v.s. Minicrypt in a Quantum WorldLongcheng Li, Qian Li, Xingjian Li, Qipeng LiuCRYPTO 2026
- Quantum Public-Key Encryption with Tamper-Resilient Public Keys from One-Way FunctionsFuyuki Kitagawa, Tomoyuki Morimae, Ryo Nishimaki, Takashi YamakawaCRYPTO 2024 · 被引用 13 次
- Beyond Quadratic Speedups in Quantum Attacks on Symmetric SchemesXavier Bonnetain, André Schrottenloher, Ferdinand SibleyrasEUROCRYPT 2022 · 被引用 32 次
