Lune

EUROCRYPT2023顶会

Unbounded Quadratic Functional Encryption and More from Pairings

Junichi Tomida

2023年份
16被引次数

摘要

We propose the first unbounded functional encryption (FE) scheme for quadratic functions and its extension, in which the sizes of messages to be encrypted are not a priori bounded. Prior to our work, all FE schemes for quadratic functions are bounded, meaning that the message length is fixed at the setup. In the first scheme, encryption takes {xi}i∈Sc\{x_{i}\}_{i \in S_{c}}, key generation takes {ci,j}i,j∈Sk\{c_{i,j}\}_{i,j \in S_{k}}, and decryption outputs ∑i,j∈Skci,jxixj\sum_{i,j \in S_{k}} c_{i,j}x_{i}x_{j} if and only if Sk⊆ScS_{k} \subseteq S_{c}, where the sizes of ScS_{c} and SkS_{k} can be arbitrary. Our second scheme is the extension of the first scheme to partially-hiding FE that computes an arithmetic branching program on a public input and a quadratic function on a private input. Concretely, encryption takes a public input u⃗\vec{u} in addition to {xi}i∈Sc\{x_{i}\}_{i \in S_{c}}, a secret key is associated with arithmetic branching programs {fi,j}i,j∈Sk\{f_{i,j}\}_{i,j \in S_{k}}, and decryption yields ∑i,j∈Skfi,j(u⃗)xixj\sum_{i,j \in S_{k}} f_{i,j}(\vec{u})x_{i}x_{j} if and only if Sk⊆ScS_{k} \subseteq S_{c}. Both our schemes are based on pairings and secure in the simulation-based model under the standard MDDH assumption.

问问这篇 Paper

问问你的智能体。

Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。

可以从这些问题问起

智能体调用

Lunesearch_papers

在 Lune 里问

免费开始,无需绑卡

相关 Paper

黄昏的海面,两侧是细线勾勒的悬崖