Quantifying the Security Cost of Migrating Protocols to Practice

Quantifying the Security Cost of Migrating Protocols to Practice
复制标题

量化将协议迁移到实践的安全成本

DOI:
10.1007/978-3-030-56784-2_4
复制
发表时间:
2020
期刊:
Advances in Cryptology -- CRYPTO 2020
影响因子:
--
通讯作者:
Shrimpton, Thomas
Shrimpton, Thomas
中科院分区:
--
文献类型:
--
作者:
Patton, Christopher;Shrimpton, Thomas

文献摘要

参考文献

相似文献

我们给出了一个框架,用于将"参考"协议(例如,出现在学术论文中的协议)的具体安全性与一些派生的"真实的"协议(例如,出现在密码标准中的协议)的具体安全性相关联。它基于Maurer,Renner和Holenstein(MRH)的不可微性框架,其应用仅集中在非交互式密码原语上,例如,哈希函数和Feistel网络。我们的MRH扩展支持一个明确定义的执行模型和两个组成引理,所有形式化的现代伪代码语言。总之,这些允许在各种抽象级别上精确地陈述加密对象(交互式或非交互式)的基于游戏的安全属性。作为一个现实世界的应用程序,我们设计并证明了一个潜在的TLS 1.3扩展,集成了SPAKE 2密码认证的密钥交换到握手严格的安全界限。
We give a framework for relating the concrete security of a “reference” protocol (say, one appearing in an academic paper) to that of some derived, “real” protocol (say, appearing in a cryptographic standard). It is based on the indifferentiability framework of Maurer, Renner, and Holenstein (MRH), whose application has been exclusively focused upon non-interactive cryptographic primitives, e.g., hash functions and Feistel networks. Our extension of MRH is supported by a clearly defined execution model and two composition lemmata, all formalized in a modern pseudocode language. Together, these allow for precise statements about game-based security properties of cryptographic objects (interactive or not) at various levels of abstraction. As a real-world application, we design and prove tight security bounds for a potential TLS 1.3 extension that integrates the SPAKE2 password-authenticated key-exchange into the handshake.
DOI: --
发表时间: 2018
期刊: IACR Cryptology ePrint Archive
影响因子: --
作者:
M. Barbosa;P. Farshim
通讯作者: P. Farshim
密钥交换中的密钥确认:TLS 1.3 的正式处理和启示
DOI: --
发表时间: 2016
期刊: IEEE Symposium on Security and Privacy
影响因子: --
作者:
M. Fischlin;Felix Günther;Benedikt Schmidt;B. Warinschi
通讯作者: B. Warinschi
简化基于游戏的定义:从不可区分性到正确性及其在状态 AE 中的应用
DOI: 10.1007/2f978-3-319-96881-0_1
发表时间: 2019
期刊: Advances in Crytology -- CRYPTO 2018
影响因子: --
作者:
Rogaway, Phillip;Zhang, Yusi
通讯作者: Zhang, Yusi
部分指定通道:没有省略的 TLS 1.3 记录层
DOI: 10.1145/3243734.3243789
发表时间: 2018
期刊: Proceedings of the 2018 ACM SIGSAC Conference on Computer and Communications Security
影响因子: --
作者:
Patton, Christopher;Shrimpton, Thomas
通讯作者: Shrimpton, Thomas
将 OPAQUE 与 TLS 1.3 一起使用
DOI: --
发表时间: 2019
期刊:
影响因子: --
作者:
H. Krawczyk;Richard L. Barnes;N. Sullivan;O. Friel
通讯作者: O. Friel