Lune

CRYPTO2023顶会

The Pseudorandom Oracle Model and Ideal Obfuscation

Aayush Jain, Huijia Lin, Ji Luo, Daniel Wichs

2023年份
10被引次数
4顶会引用

摘要

We introduce a new idealized model of hash functions, which we refer to as the pseudorandom oracle (PrO{\mathrm{Pr}\mathcal{O}}) model. Intuitively, it allows us to model cryptosystems that use the code of an ideal hash function in a non-black-box way. Formally, we model hash functions via a combination of a pseudorandom function (PRF) family and an ideal oracle. A user can initialize the hash function by choosing a PRF key kk and mapping it to a public handle hh using the oracle. Given the handle hh and some input xx, the oracle can also be called to evaluate the PRF at xx with the corresponding key kk. A user who chooses the PRF key kk therefore has a complete description of the hash function and can use its code in non-black-box constructions, while an adversary, who just gets the handle hh, only has black-box access to the hash function via the oracle.

As our main result, we show how to construct ideal obfuscation in the PrO{\mathrm{Pr}\mathcal{O}} model, starting from functional encryption (FE), which in turn can be based on well-studied polynomial hardness assumptions. In contrast, we know that ideal obfuscation cannot be instantiated in the basic random oracle model under any assumptions. We believe our result provides heuristic justification for the following: (1) most natural security goals implied by ideal obfuscation can be achieved in the real world; (2) obfuscation can be constructed from FE at polynomial security loss.

We also discuss how to interpret our result in the PrO{\mathrm{Pr}\mathcal{O}} model as a construction of ideal obfuscation using simple hardware tokens or as a way to bootstrap ideal obfuscation for PRFs to that for all functions.

问问这篇 Paper

问问你的智能体。

Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。

可以从这些问题问起

智能体调用

Lunesearch_papers

在 Lune 里问

免费开始,无需绑卡

引用它的顶会 Paper4

问问它们各自怎么用它

相关 Paper

黄昏的海面,两侧是细线勾勒的悬崖