1. 陕西师范大学计算机科学学院,陕西,西安,710062
2. 密码科学技术国家重点实验室,北京,100878
3. 陕西师范大学计算机科学学院,陕西,西安,710062
4. 密码科学技术国家重点实验室,北京,100878
网络出版:2020-02-25,
纸质出版:2020
移动端阅览
杨启良, 周彦伟, 杨坤伟, 等. 标准模型下可公开验证的匿名IBE方案的安全性分析[J]. 电子学报, 2020,48(2):291-295.
YANG Qi-liang, ZHOU Yan-wei, YANG Kun-wei, et al. On the Security of Publicly Verifiable Anonymous IBE Scheme in the Standard Model[J]. Acta Electronica Sinica, 2020, 48(2): 291-295.
杨启良, 周彦伟, 杨坤伟, 等. 标准模型下可公开验证的匿名IBE方案的安全性分析[J]. 电子学报, 2020,48(2):291-295. DOI: 10.3969/j.issn.0372-2112.2020.02.010.
YANG Qi-liang, ZHOU Yan-wei, YANG Kun-wei, et al. On the Security of Publicly Verifiable Anonymous IBE Scheme in the Standard Model[J]. Acta Electronica Sinica, 2020, 48(2): 291-295. DOI: 10.3969/j.issn.0372-2112.2020.02.010.
现有的可公开验证的匿名基于身份的加密(Identity-Based Encryption,IBE)机制声称解决了在静态困难性假设之上构造紧的选择密文安全的IBE机制的困难性问题.然而,本文发现,由于该机制的密文不具备防扩展性,使得任何敌手可基于已知的有效密文生成任意消息的合法加密密文,导致该机制无法满足其所声称的选择密文安全性.我们根据不同的密文相等判定条件分别提出两种方法对原始方案的安全性进行了分析,同时在分析基础上指出原始安全性证明过程中所存在的不足.
How to create an identity-based encryption (IBE) scheme with tight chosen-ciphertext attacks (CCA) security based on the static assumption is an open problem. A publicly verifiable anonymous IBE scheme designed in the standard model claimed that the CCA security of proposed scheme was proved based on the classic static assumption. However
in this paper
we demonstrate that the previous IBE scheme cannot achieve the claimed CCA security because the ciphertext was extensile. In other words
a valid encrypted ciphertext can be forged by any adversary from a known ciphertext. To analyze the security of the previous IBE scheme
two methods are proposed based on the criterion of ciphertext equality. Additionally
based on the analysis of the previous IBE scheme
we point out the shortcomings of the original security proof.
0
浏览量
118
下载量
0
CSCD
关联资源
相关文章
相关作者
相关机构
京公网安备11010802024621