Non-Interactive Key Exchange from Lattices in the Standard Model
Ying Li, Lei Zhang, Qiqi Lai
摘要
Existing non-interactive key exchange (NIKE) constructions in the CKS-heavy security model either incur loose security reductions or lack lattice instantiations due to the absence of suitable hash proof systems (HPS). To overcome this limitation, we introduce a new cryptographic primitive, named as decoupled key encapsulation mechanisms (decoupled KEMs), which separates recipient-independent ciphertext generation from recipient-specific key derivation. Moreover, we formalize the security of our decoupled KEM as MU-IND-wCCA^Corr+, which is a multi-user security notion. Based on this, we give a new framework that any decoupled KEM with MU-IND-wCCA^Corr+ implies a NIKE protocol with much tighter security in the CKS-heavy security model. For concrete instantiation, we first construct a specific HPS based on Modulus-LWE in the standard model, and then obtain a decoupled KEM with the desired security notion. Applying our framework, we obtain a lattice-based NIKE secure in the standard model, denoted NIKE HPS . NIKE HPS . achieves a linear security reduction loss in the number of users and close to the known optimum, improving upon the quadratic loss of SWOOSH (USENIX Security' 24) under CKS-heavy security. Experiments show that our protocol achieves significant speedups in key generation and shared-key derivation over SWOOSH.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper13
- Post-quantum Key Exchange - A New HopeErdem Alkim, Léo Ducas, Thomas Pöppelmann, Peter SchwabeUSENIX Security 2016 · 被引用 972 次
- Post-Quantum TLS Without Handshake SignaturesPeter Schwabe, Douglas Stebila, Thom WiggersCCS 2020 · 被引用 162 次
- On Ends-to-Ends Encryption: Asynchronous Group Messaging with Strong Security GuaranteesKatriel Cohn-Gordon, Cas Cremers, Luke Garratt, Jon Millican 等CCS 2018 · 被引用 140 次
- Lattice-Based Zero-Knowledge Proofs and Applications: Shorter, Simpler, and More GeneralVadim Lyubashevsky, Ngoc Khanh Nguyen, Maxime PlançonCRYPTO 2022 · 被引用 125 次
- Security Analysis and Improvements for the IETF MLS Standard for Group MessagingJoël Alwen, Sandro Coretti, Yevgeniy Dodis, Yiannis TselekounisCRYPTO 2020 · 被引用 91 次
相关 Paper
- SWOOSH: Efficient Lattice-Based Non-Interactive Key ExchangePhillip Gajland, Bor de Kock, Miguel Quaresma, Giulio Malavolta 等USENIX Security 2024 · 被引用 12 次
- Authenticated Key Exchange and Signatures with Tight Security in the Standard ModelShuai Han, Tibor Jager, Eike Kiltz, Shengli Liu 等CRYPTO 2021 · 被引用 30 次
- CuKEM: A Concise and Unified Hybrid Key Encapsulation MechanismYiting Liu, Biming Zhou, Haodong JiangCCS 2025
- Lattice-Based Authenticated Key Exchange with Tight SecurityJiaxin Pan, Benedikt Wagner, Runzhi ZengCRYPTO 2023 · 被引用 14 次
- Almost Tight Multi-user Security Under Adaptive Corruptions from LWE in the Standard ModelShuai Han, Shengli Liu, Zhedong Wang, Dawu GuCRYPTO 2023 · 被引用 9 次
