Chosen ciphertext attack on ZHFE

Chosen ciphertext attack on ZHFE
复制标题

DOI:
10.14495/jsiaml.9.21
复制
发表时间:
2017
期刊:
JSIAM Lett.
影响因子:
--
通讯作者:
Yasufumi Hashimoto
Yasufumi Hashimoto
中科院分区:
其他
文献类型:
--
作者:
Yasufumi Hashimoto

文献摘要

相似文献

HFE (Patarin, Eurocrypt ' 96)是最著名的多变量公钥密码系统之一。遗憾的是,HFE在安全性和效率之间存在严重的权衡,缺乏HFE的实用性。最近,Porras等人在PQCrypto 2014上提出了一种新的加密方案ZHFE。虽然其结构与HFE相似,但安全性似乎比HFE更强。本文提出了一种针对ZHFE的选择密文攻击(CCA)。CCA将解密用单变量多项式的恢复问题简化为HFE上的最小秩问题。因此,ZHFE的CCA安全性与HFE对最小秩攻击的安全性几乎相同。
HFE (Patarin, Eurocrypt’96) is one of the most famous multivariate public key cryptosystems. Unfortunately, HFE has a serious trade-off between security and efficiency, which lacks HFE’s practicality. Recently, Porras et al. proposed a new encryption scheme ZHFE at PQCrypto 2014. While its construction is similar to HFE, the security seems more than HFE. The present paper proposes a chosen ciphertext attack (CCA) on ZHFE. The CCA reduces the problem of recovering the univariate polynomial for decryption to the min-rank problem on HFE. Thus the CCA security of ZHFE is almost the same as the security of HFE against the min-rank attack.