Foundations for Actively Secure Card-based Cryptography

Foundations for Actively Secure Card-based Cryptography
复制标题

主动安全的基于卡的密码学的基础

DOI:
10.4230/lipics.fun.2021.17
复制
发表时间:
2017
期刊:
IACR Cryptol. ePrint Arch.
影响因子:
--
通讯作者:
Stefan Walzer
Stefan Walzer
中科院分区:
--
文献类型:
--
作者:
Alexander Koch;Stefan Walzer

文献摘要

参考文献

被引文献

相似文献

由den Boer [den Boer, 1989]首次提出的基于卡片的密码学,仅使用一副扑克牌就可以实现安全的多方计算。到目前为止,许多协议都附有“诚实但好奇”的免责声明。然而,现代密码学的目标是在偏离协议描述的主动攻击者存在的情况下提供安全性。在作者为其协议的主动安全性争论的少数地方,这是临时完成的,并且仅限于所需的具体操作,通常使用额外的物理工具,例如信封或滑动盖盒。本文提供了第一个系统的基于卡片协议的主动安全方法。主要的技术贡献涉及洗牌操作。洗牌是根据一个明确的分布随机排列牌,但对玩家隐藏所选择的排列。我们展示了如何使用线性数量的辅助牌来实现大而自然的均匀闭洗牌,即从置换组中均匀随机选择置换的洗牌。这确保了Mizuki和Shizuya [Mizuki和Shizuya, 2014]模型中的任何协议都可以以主动安全的方式实现,只要它在这个抽象模型中是安全的,并且被限制为均匀封闭的洗牌。均匀闭合洗牌已经足够用于安全计算任何电路[Mizuki和Sone, 2009]。在此过程中,我们为基于卡的加密协议开发了一个更具体的模型,其中有两个参与者,我们认为这是独立的兴趣。
Card-based cryptography, as first proposed by den Boer [den Boer, 1989], enables secure multiparty computation using only a deck of playing cards. Many protocols as of yet come with an “honest-but-curious” disclaimer. However, modern cryptography aims to provide security also in the presence of active attackers that deviate from the protocol description. In the few places where authors argue for the active security of their protocols, this is done ad-hoc and restricted to the concrete operations needed, often using additional physical tools, such as envelopes or sliding cover boxes. This paper provides the first systematic approach to active security in card-based protocols. The main technical contribution concerns shuffling operations. A shuffle randomly permutes the cards according to a well-defined distribution but hides the chosen permutation from the players. We show how the large and natural class of uniform closed shuffles, which are shuffles that select a permutation uniformly at random from a permutation group, can be implemented using only a linear number of helping cards. This ensures that any protocol in the model of Mizuki and Shizuya [Mizuki and Shizuya, 2014] can be realized in an actively secure fashion, as long as it is secure in this abstract model and restricted to uniform closed shuffles. Uniform closed shuffles are already sufficient for securely computing any circuit [Mizuki and Sone, 2009]. In the process, we develop a more concrete model for card-based cryptographic protocols with two players, which we believe to be of independent interest.
使用三张卡的三输入卡式多数投票协议
DOI: 10.23919/isita.2018.8664324
发表时间: 2018
期刊: Proc. International Symposium on Information Theory and Its Applications (ISITA2018)
影响因子: --
作者:
Yohei Watanabe;Yoshihisa Kuroki;Shinnosuke Suzuki;Yuta Koga;Mitsugu Iwamoto;Kazuo Ohta
通讯作者: Kazuo Ohta