Breaking HK17 in Practice
المؤلف | Li, Haoyu |
المؤلف | Liu, Renzhang |
المؤلف | Malluhi, Qutaibah M. |
المؤلف | Pan, Yanbin |
المؤلف | Wang, Yongge |
المؤلف | Xie, Tianyuan |
تاريخ الإتاحة | 2020-05-14T09:55:44Z |
تاريخ النشر | 2019 |
اسم المنشور | IEEE International Symposium on Information Theory - Proceedings |
المصدر | Scopus |
الرقم المعياري الدولي للكتاب | 21578095 |
الملخص | In November 2017, Hecht and Kamlofsky submitted HK17, a quaternion(octonion)-based Diffie-Hellman key exchange protocol, to NIST post-quantum cryptography project, and thought that at least O(p8) arithmetic operations are needed for a passive adversary to recover the shared key where p is the modulo used in the scheme. Later, Bernstein and Lange pointed out that the shared key can be recovered with O(p) arithmetic operations, which implies that HK17 with small p is not secure. However, their attack does not work in practice for the scheme with sufficiently large p, although the scheme is still efficient. In this paper, we propose an attack to show that just constant arithmetic operations, or tilde O( { p} ) bit operations, are enough to recover the shared key for a passive adversary. Note that even the legal party in the protocol needs at least tilde O( { p} ) bit operations to establish the shared key. We break HK17 completely in the practical sense. - 2019 IEEE. |
راعي المشروع | ACKNOWLEDGMENT Y. Pan was supported by the NNSF of China (No. 61572490) and by the National Center for Mathematics and Interdisciplinary Sciences, CAS. |
اللغة | en |
الناشر | Institute of Electrical and Electronics Engineers Inc. |
الموضوع | Cryptography Security of data Lattice-based cryptography |
النوع | Conference |
الصفحات | 1877-1881 |
رقم المجلد | 2019-July |
الملفات في هذه التسجيلة
الملفات | الحجم | الصيغة | العرض |
---|---|---|---|
لا توجد ملفات لها صلة بهذه التسجيلة. |
هذه التسجيلة تظهر في المجموعات التالية
-
علوم وهندسة الحاسب [2426 items ]