SaTC: CORE: Small: Practice-Driven Cryptographic Theory
SaTC: CORE: Small: Practice-Driven Cryptographic Theory
批准号:
2154272
负责人:
Mihir Bellare
金额:
$50.0万
依托单位国家:
美国
项目类别:
Standard Grant
财政年份:
2022
资助国家:
美国
项目状态:
未结题
起止时间:
2022-06-01 至 2025-05-31
中文摘要
点击翻译按钮获取中文摘要
英文摘要
When users go to a popular Internet site, their browser will show a lock symbol, indicating that cryptography is being used to secure the communications. This cryptography has different components, including signature schemes and schemes for authenticated encryption. The same cryptography is also the basis of security in popular messaging apps, and used in many cryptocurrencies. Similarly, Callisto, a tool that allows victims to report sexual assault while protecting their privacy, uses a new and advanced form of cryptography called a two-party secure computation protocol, and usage of this tool is expanding. But does all this cryptography actually work, meaning provide the expected security? This question is not moot: recent years have witnessed attacks breaking widely-deployed cryptography, and this impacts millions of people. This project aims to validate existing cryptography via mathematical proofs of security, an approach that is now well accepted as reducing the likelihood of failures. The work aims to provide such proofs for widely-used signature schemes, authenticated encryption schemes and two-party secure computation protocols, increasing security assurance for the cryptography in use today. The project will likewise identify forms of cryptography that are important to future capabilities and needs, and build this next-generation cryptography, accompanying it again by proof-based validation so as to reduce the risk of future failure. The broader impacts include a software tool called PlayCrypt that will educate students in the design of high-assurance cryptography as needed in industry today. The project will also seek to broaden participation by confronting paucity of women in academia as something to be addressed early in the pipeline, not later, and focus on identifying promising women undergraduates and, through research, advancing them to PhD positions; then, working with women PhD students, advancing them to faculty positions. EdDSA is a signature scheme that is a government standard and widely used on the Internet. Existing security proofs for it, however, suffer from three limitations: they fail to prove security of the scheme that is actually in use due to improper modeling of the hash functions; the reductions underlying the proofs are so loose that the quantitative security guarantee, for the 256-but curves in which the scheme is implemented, is almost nil; the quantitative security guarantees in the multi-user setting relevant to the Internet are even worse. This project aims to fill all these gaps, by introducing the filtered Random Oracle Model and a corresponding notion of filtered indifferentiability; and a reduction from the classical Schnorr signature scheme rather than from an algebraic problem. The project will also consider authenticated encryption schemes like Galois/Counter Mode (GCM) that are currently used to encrypt data over the Internet, and explain that they fail to provide security for certain choices of nonces, a gap to be filled with a framework that allows users to pick, with confidence, nonces we show, via proofs, to result in secure encryption. The project will also show how to extend current authenticated encryption schemes to ones that commit to their key, thereby preventing certain new classes of attacks on password-based encryption, and moreover show how key-committing authenticated encryption results in secure password-based authenticated encryption. Finally, the project will revisit the foundations of two-party secure computation, giving definitions amenable to a concrete-security treatment, and giving security proofs that deliver protocols whose security is quantitatively as high as possible, leading to the best possible efficiency for a desired level of security.This award reflects NSF's statutory mission and has been deemed worthy of support through evaluation using the Foundation's intellectual merit and broader impacts review criteria.
期刊论文(4)
专著(0)
科研奖励(0)
会议论文
Hardening Signature Schemes via Derive-then-Derandomize: Stronger Security Proofs for EdDSA
通过 Derive-then-Derandomize 强化签名方案:EdDSA 的更强安全证明
DOI:
--
发表时间:
2023
期刊:
26th IACR International Conference on Practice and Theory of Public-Key Cryptography
影响因子:
--
作者:
[Bellare, Mihir, Davis, Hannah, Di, Zijing]
通讯作者:
Di, Zijing
When Messages Are Keys: Is HMAC a Dual-PRF?
当消息成为密钥时:HMAC 是双 PRF 吗?
DOI:
--
发表时间:
2023
期刊:
Part III. Lecture Notes in Computer Science 14083, Springer 2023.
影响因子:
--
作者:
[Backendal, Matilda, Bellare, Mihir, Günther, Felix, Scarlata, Matteo]
通讯作者:
Scarlata, Matteo
Flexible Password-Based Encryption: Securing Cloud Storage and Provably Resisting Partitioning-Oracle Attacks
灵活的基于密码的加密:保护云存储并可证明抵御分区 Oracle 攻击
DOI:
--
发表时间:
2023
期刊:
Topics in Cryptology - CT-RSA 2023 - Cryptographers' Track at the RSA Conference 2023
影响因子:
--
作者:
[Bellare, Mihir, Shea, Laura]
通讯作者:
Shea, Laura
SaTC: CORE: Small: Foundations of Applied Cryptography
-
批准号:1717640
-
项目类别:Standard Grant
-
资助金额:$32.65万
-
财政年份:2017
-
负责人:Mihir Bellare
-
依托单位:
TWC: Small: Subversion-Resistant Cryptography
-
批准号:1526801
-
项目类别:Standard Grant
-
资助金额:$50.0万
-
财政年份:2015
-
负责人:Mihir Bellare
-
依托单位:
TWC: Medium: Collaborative: Deconstructing Encryption
-
批准号:1228890
-
项目类别:Standard Grant
-
资助金额:$40.0万
-
财政年份:2012
-
负责人:Mihir Bellare
-
依托单位:
TC: Small: A Cryptographic Treatment of the Wiretap Channel
-
批准号:1116800
-
项目类别:Standard Grant
-
资助金额:$49.4万
-
财政年份:2011
-
负责人:Mihir Bellare
-
依托单位:
TC:Small: Systems-Sensitive Cryptography
-
批准号:0915675
-
项目类别:Standard Grant
-
资助金额:$49.9万
-
财政年份:2009
-
负责人:Mihir Bellare
-
依托单位:
CT-ISG: Cryptography for Computational Grids
-
批准号:0627779
-
项目类别:Standard Grant
-
资助金额:$30.0万
-
财政年份:2006
-
负责人:Mihir Bellare
-
依托单位:
CT-ISG: Practice-Oriented Provable-Security for Emerging Cryptographic Applications
-
批准号:0524765
-
项目类别:Standard Grant
-
资助金额:$0.0万
-
财政年份:2005
-
负责人:Mihir Bellare
-
依托单位:
Cryptographic Mechanisms for Internet Security
-
批准号:0129617
-
项目类别:Standard Grant
-
资助金额:$21.86万
-
财政年份:2002
-
负责人:Mihir Bellare
-
依托单位:
Design and Analysis of Cryptographic Protocols for Secure Communication
-
批准号:0098123
-
项目类别:Standard Grant
-
资助金额:$23.68万
-
财政年份:2001
-
负责人:Mihir Bellare
-
依托单位:
Career: Cryptography, Proof Checking and Approximation
-
批准号:9624439
-
项目类别:Continuing Grant
-
资助金额:$20.0万
-
财政年份:1996
-
负责人:Mihir Bellare
-
依托单位:
国内基金
海外基金
登录
查看更多内容
胆固醇羟化酶CH25H非酶活依赖性促进乙型肝炎病毒蛋白Core及Pre-core降解的分子机制研究
-
批准号:82371765
-
项目类别:面上项目
-
资助金额:50万元
-
批准年份:2023
-
负责人:谭广云
-
依托单位:
锕系元素5f-in-core的GTH赝势和基组的开发
-
批准号:22303037
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2023
-
负责人:鲁俊波
-
依托单位:
基于合成致死策略搭建Core-matched前药共组装体克服肿瘤耐药的机制研究
-
批准号:--
-
项目类别:--
-
资助金额:52万元
-
批准年份:2022
-
负责人:孙丙军
-
依托单位:
鼠伤寒沙门氏菌LPS core经由CD209/SphK1促进树突状细胞迁移加重炎症性肠病的机制研究
-
批准号:--
-
项目类别:青年科学基金项目
-
资助金额:30万元
-
批准年份:2022
-
负责人:叶成林
-
依托单位:
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
-
批准号:--
-
项目类别:--
-
资助金额:55万元
-
批准年份:2020
-
负责人:张智勇
-
依托单位:
基于外泌体精准调控的“核-壳”(core-shell)同步血管化骨组织工程策略的应用与机制探讨
-
批准号:82072415
-
项目类别:面上项目
-
资助金额:55.0万元
-
批准年份:2020
-
负责人:张智勇
-
依托单位:
肌营养不良蛋白聚糖Core M3型甘露糖肽的精确制备及功能探索
-
批准号:92053110
-
项目类别:重大研究计划
-
资助金额:70.0万元
-
批准年份:2020
-
负责人:彭鹏
-
依托单位:
Core-1-O型聚糖黏蛋白缺陷诱导胃炎发生并介导慢性胃炎向胃癌转化的分子机制研究
-
批准号:81902805
-
项目类别:青年科学基金项目
-
资助金额:20.5万元
-
批准年份:2019
-
负责人:刘菲
-
依托单位:
原始地球增生晚期的Core-merging大碰撞事件:地核增生、核幔平衡与核幔边界结构的新认识
-
批准号:41973063
-
项目类别:面上项目
-
资助金额:65.0万元
-
批准年份:2019
-
负责人:周游
-
依托单位:
CORDEX-CORE区域气候模拟与预估研讨会
-
批准号:41981240365
-
项目类别:国际(地区)合作与交流项目
-
资助金额:1.5万元
-
批准年份:2019
-
负责人:陈威霖
-
依托单位: