On the Security of Padding-Based Encryption Schemes --- or --- Why We Cannot Prove OAEP Secure in the Standard Model

作者: Eike Kiltz , Krzysztof Pietrzak

DOI: 10.1007/978-3-642-01001-9_23

关键词:

摘要: We investigate the security of "padding-based" encryption schemes in standard model. This class contains all public-key where algorithm first applies some invertible public transformation to message (the "padding"), followed by a trapdoor permutation. In particular, this OAEP and its variants. Our main result is black-box impossibility showing that one cannot prove any such padding-based scheme chosen-ciphertext secure even assuming existence ideal permutations. The latter strong abstraction permutations which inherits properties uniform random

参考文章(63)
T. Okamoto, M. Abe, Eike Kiltz, CCA-Security with Optimal Ciphertext Overhead Springer. pp. 355- 371 ,(2008)
Hideki Imai, Kazukuni Kobara, OAEP++ : A Very Simple Way to Apply OAEP to Deterministic OW-CPA Primitives. IACR Cryptology ePrint Archive. ,vol. 2002, pp. 130- ,(2002)
Daniel R. L. Brown, What Hashes Make RSA-OAEP Secure? IACR Cryptology ePrint Archive. ,vol. 2006, pp. 223- ,(2006)
Yuichi Komano, Kazuo Ohta, Efficient Universal Padding Techniques for Multiplicative Trapdoor One-Way Permutation Advances in Cryptology - CRYPTO 2003. pp. 366- 382 ,(2003) , 10.1007/978-3-540-45146-4_22
Ivan Bjerre Damgård, Collision free hash functions and public key signature schemes theory and application of cryptographic techniques. ,vol. 304, pp. 203- 216 ,(1987) , 10.1007/3-540-39118-5_19
Aggelos Kiayias, Moti Yung, Self Protecting Pirates and Black-Box Traitor Tracing international cryptology conference. pp. 63- 79 ,(2001) , 10.1007/3-540-44647-8_4
Daniel R. Simon, Finding collisions on a one-way street: Can secure hash functions be based on general assumptions? theory and application of cryptographic techniques. pp. 334- 345 ,(1998) , 10.1007/BFB0054137
Alexandra Boldyreva, Marc Fischlin, On the security of OAEP international conference on the theory and application of cryptology and information security. pp. 210- 225 ,(2006) , 10.1007/11935230_14
Masayuki Abe, Eike Kiltz, Tatsuaki Okamoto, Chosen Ciphertext Security with Optimal Ciphertext Overhead international conference on the theory and application of cryptology and information security. pp. 355- 371 ,(2008) , 10.1007/978-3-540-89255-7_22
Pascal Paillier, Jorge L. Villar, Trading one-wayness against chosen-ciphertext security in factoring-based encryption international conference on the theory and application of cryptology and information security. pp. 252- 266 ,(2006) , 10.1007/11935230_17