Are These Pairing Elements Correct?: Automated Verification and Applications
Susan Hohenberger, Satyanarayana Vusirikala
摘要
Using a set of pairing product equations (PPEs) to verify the correctness of an untrusted set of pairing elements with respect to another set of trusted elements has numerous cryptographic applications. These include the design of basic and structure-preserving signature schemes, building oblivious transfer schemes from "blind" IBE, finding new verifiable random functions and keeping the IBE/ABE authority "accountable" to the user. A natural question to ask is: are all trusted-untrusted pairing element groups in the literature PPE testable? We provide original observations demonstrating that the answer is no, and moreover, it can be non-trivial to determine whether or not there exists a set of PPEs that can verify some pairing elements with respect to others. Many IBE schemes have PPE-testable private keys (with respect to the public parameters), while others, such as those based on dual-system encryption, provably do not. To aid those wishing to use PPE-based element verification in their cryptosystems, we devised rules to systematically search for a set of PPEs that can verify untrusted elements with respect to a set of trusted elements. We prove the correctness of each rule and combine them into a main searching algorithm for which we also prove correctness. We implemented this algorithm in a new software tool, called AutoPPE. Tested on over two dozen case studies, AutoPPE found a set of PPEs (on schemes where they exist) usually in just a matter of seconds. This work represents an important step towards the larger goal of improving the speed and accuracy of pairing-based cryptographic design via computer automation.
问问这篇 Paper
问问你的智能体。
Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。
引用它的顶会 Paper1
问问它们各自怎么用它相关 Paper
- PPE Circuits: Formal Definition to Software AutomationSusan Hohenberger, Satyanarayana Vusirikala, Brent WatersCCS 2020 · 被引用 1 次
- ACABELLA: Automated (Crypt)analysis of Attribute-Based Encryption Leveraging Linear AlgebraAntonio de la Piedra, Marloes Venema, Greg AlpárCCS 2023 · 被引用 4 次
- Attribute-Based Encryption in the Generic Group Model: Automated Proofs and New ConstructionsMiguel Ambrona, Gilles Barthe, Romain Gay, Hoeteck WeeCCS 2017 · 被引用 49 次
- Reducing the CRS Size in Registered ABE SystemsRachit Garg, George Lu, Brent Waters, David J. WuCRYPTO 2024 · 被引用 27 次
- FEASE: Fast and Expressive Asymmetric Searchable EncryptionLong Meng, Liqun Chen, Yangguang Tian, Mark Manulis 等USENIX Security 2024 · 被引用 22 次
