Foundations and Real-World Aspects of Secure Cryptographic Connections

安全加密连接的基础和现实世界

基本信息

  • 批准号:
    406593006
  • 负责人:
  • 金额:
    --
  • 依托单位:
  • 依托单位国家:
    德国
  • 项目类别:
    Research Fellowships
  • 财政年份:
    2018
  • 资助国家:
    德国
  • 起止时间:
    2017-12-31 至 2019-12-31
  • 项目状态:
    已结题

项目摘要

Secure connections are at the heart of today's Internet infrastructure, protecting confidentiality, integrity, and authenticity of data in transit, e.g., when doing online banking, accessing emails, or chatting with friends. The underlying cryptographic protocols (e.g., the prominent Transport Layer Security (TLS) protocol) are composed of two core components: A key exchange protocol first establishes a shared secret key between the two communication partners over a potentially insecure network. This key is then used in the follow-up secure channel protocol to protect the actual data to be communicated.The study of key exchange and secure channels is a foundational research topic in cryptography, with a substantial body of work underpinning classical designs for such protocols. Nevertheless, novel designs of secure connection protocols in practice go beyond what the current state of understanding in cryptographic theory can comprise in terms of techniques and security goals. Prime examples are the upcoming TLS version 1.3 currently developed by the Internet Engineering Task Force or the novel secure messaging protocol Signal (also underlying, e.g., WhatsApp, Facebook Messenger, or Google Allo), which are in daily use by millions to billions of users and devices. As these protocols underpin the security of our day-to-day interactions, it is however crucial to understand the security of these novel designs and to examine their strengths and weaknesses based on scientifically solid theoretical foundations.The proposed project will provide such solid foundations in terms of extended cryptographic security models, as well as assess the practical security of proposed and deployed real-world protocols based on the newly established understanding. To this end, we will devise novel formalisms capturing advanced aspects put forward in recent protocol designs. One major focus will be on an important and strong security guarantee protecting against compromises of secrets (so-called "forward secrecy"). We will study how forward secrecy can be achieved in a secure channel as well as when establishing the communication key with low latency. Novel designs of secure connections also have implications on how these connections are used by application programs and what properties they demand from the components they employ. Therefore, we will study how recent connection protocol designs integrate with application programs as well as with the underlying cryptographic building blocks the designs rely upon. This allows us to interpret the effects of novel designs both on the security they provide to applications and on the requirements they introduce to their components. Through these steps, the proposed project will improve the cryptographic understanding of novel secure connection protocols deployed in practice and their theoretical foundations.
安全连接是当今互联网基础设施的核心,可保护传输中数据的机密性、完整性和真实性,例如,在进行网上银行、访问电子邮件或与朋友聊天时。底层加密协议(例如,主要的传输层安全(TLS)协议)由两个核心组件组成:密钥交换协议首先通过潜在不安全的网络在两个通信伙伴之间建立共享密钥。密钥交换和安全信道的研究是密码学的一个基础性研究课题,大量的工作支撑着这类协议的经典设计。然而,安全连接协议的新设计在实践中超越了密码学理论的当前理解状态,可以包括在技术和安全目标方面。最好的例子是即将到来的TLS版本1.3,目前由互联网工程任务组开发,或新的安全消息传递协议信号(也是底层的,例如,WhatsApp,Facebook Messenger或Google Allo),每天有数百万到数十亿用户和设备使用。由于这些协议支撑着我们日常互动的安全性,因此了解这些新颖设计的安全性并基于科学坚实的理论基础来检查它们的优点和缺点是至关重要的。拟议的项目将在扩展密码安全模型方面提供坚实的基础,以及基于新建立的理解评估提议和部署的真实世界协议的实际安全性。为此,我们将设计新的形式主义捕捉先进的方面提出了最近的协议设计。一个主要的重点将是一个重要的和强大的安全保障,防止泄密(所谓的“前向保密”)。我们将研究如何在安全信道中实现前向保密,以及在建立低延迟的通信密钥时。安全连接的新设计也对应用程序如何使用这些连接以及它们对所使用的组件的要求有影响。因此,我们将研究最近的连接协议设计如何与应用程序集成,以及与设计所依赖的底层密码构建块集成。这使我们能够解释新设计对它们为应用程序提供的安全性以及它们对其组件引入的要求的影响。通过这些步骤,拟议的项目将提高在实践中部署的新的安全连接协议及其理论基础的密码学理解。

项目成果

期刊论文数量(4)
专著数量(0)
科研奖励数量(0)
会议论文数量(0)
专利数量(0)
Separate Your Domains: NIST PQC KEMs, Oracle Cloning and Read-Only Indifferentiability
  • DOI:
    10.1007/978-3-030-45724-2_1
  • 发表时间:
    2020-03
  • 期刊:
  • 影响因子:
    0
  • 作者:
    M. Bellare;Hannah Davis;Felix Günther
  • 通讯作者:
    M. Bellare;Hannah Davis;Felix Günther
Breakdown Resilience of Key Exchange Protocols: NewHope, TLS 1.3, and Hybrids
  • DOI:
    10.1007/978-3-030-29962-0_25
  • 发表时间:
    2019-09
  • 期刊:
  • 影响因子:
    0
  • 作者:
    Jacqueline Brendel;M. Fischlin;Felix Günther
  • 通讯作者:
    Jacqueline Brendel;M. Fischlin;Felix Günther
A Cryptographic Analysis of the TLS 1.3 Handshake Protocol
  • DOI:
    10.1007/s00145-021-09384-1
  • 发表时间:
    2020-08
  • 期刊:
  • 影响因子:
    3
  • 作者:
    Benjamin Dowling;M. Fischlin;Felix Günther;D. Stebila
  • 通讯作者:
    Benjamin Dowling;M. Fischlin;Felix Günther;D. Stebila
{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

数据更新时间:{{ journalArticles.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ monograph.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ sciAawards.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ conferencePapers.updateTime }}

{{ item.title }}
  • 作者:
    {{ item.author }}

数据更新时间:{{ patent.updateTime }}

Dr. Felix Günther其他文献

Dr. Felix Günther的其他文献

{{ item.title }}
{{ item.translation_title }}
  • DOI:
    {{ item.doi }}
  • 发表时间:
    {{ item.publish_year }}
  • 期刊:
  • 影响因子:
    {{ item.factor }}
  • 作者:
    {{ item.authors }}
  • 通讯作者:
    {{ item.author }}

相似国自然基金

Immuno-Real Time PCR法精确定量血清MG7抗原及在早期胃癌预警中的价值
  • 批准号:
    30600737
  • 批准年份:
    2006
  • 资助金额:
    22.0 万元
  • 项目类别:
    青年科学基金项目
无色ReAl3(BO3)4(Re=Y,Lu)系列晶体紫外倍频性能与器件研究
  • 批准号:
    60608018
  • 批准年份:
    2006
  • 资助金额:
    28.0 万元
  • 项目类别:
    青年科学基金项目

相似海外基金

CAREER: Improving Real-world Performance of AI Biosignal Algorithms
职业:提高人工智能生物信号算法的实际性能
  • 批准号:
    2339669
  • 财政年份:
    2024
  • 资助金额:
    --
  • 项目类别:
    Continuing Grant
Developing Advanced Cryptanalysis Techniques for Symmetric-key Primitives with Real-world Public-key Applications
使用现实世界的公钥应用开发对称密钥原语的高级密码分析技术
  • 批准号:
    24K20733
  • 财政年份:
    2024
  • 资助金额:
    --
  • 项目类别:
    Grant-in-Aid for Early-Career Scientists
CAREER: Towards Real-world Reinforcement Learning
职业:走向现实世界的强化学习
  • 批准号:
    2339395
  • 财政年份:
    2024
  • 资助金额:
    --
  • 项目类别:
    Continuing Grant
Travel: NSF Student Travel Grant for Real World Cryptography 2024 (RWC'24)
旅行:2024 年现实世界密码学 NSF 学生旅行补助金 (RWC24)
  • 批准号:
    2410618
  • 财政年份:
    2024
  • 资助金额:
    --
  • 项目类别:
    Standard Grant
REU Site: Applied Mathematics in Real World Problems
REU 网站:现实世界问题中的应用数学
  • 批准号:
    2349382
  • 财政年份:
    2024
  • 资助金额:
    --
  • 项目类别:
    Continuing Grant
ERI: Data-Driven Analysis and Dynamic Modeling of Residential Power Demand Behavior: Using Long-Term Real-World Data from Rural Electric Systems
ERI:住宅电力需求行为的数据驱动分析和动态建模:使用农村电力系统的长期真实数据
  • 批准号:
    2301411
  • 财政年份:
    2024
  • 资助金额:
    --
  • 项目类别:
    Standard Grant
I(eye)-SCREEN: A real-world AI-based infrastructure for screening and prediction of progression in age-related macular degeneration (AMD) providing accessible shared care
I(eye)-SCREEN:基于人工智能的现实基础设施,用于筛查和预测年龄相关性黄斑变性 (AMD) 的进展,提供可及的共享护理
  • 批准号:
    10102692
  • 财政年份:
    2024
  • 资助金额:
    --
  • 项目类别:
    EU-Funded
REAL-WORLD IMPLEMENTATION, DEPLOYMENT AND VALIDATION OF EARLY DETECTION TOOLS AND LIFESTYLE ENHANCEMENT (AD-RIDDLE)
早期检测工具和生活方式增强 (AD-Riddle) 的实际实施、部署和验证
  • 批准号:
    10106509
  • 财政年份:
    2024
  • 资助金额:
    --
  • 项目类别:
    EU-Funded
Real-World Emissions Data Decision Tool to achieve Net Zero Mobility
实现净零出行的现实世界排放数据决策工具
  • 批准号:
    10111661
  • 财政年份:
    2024
  • 资助金额:
    --
  • 项目类别:
    SME Support
メタボに固執した特定健診からの脱却:real world dataを用いたAIによる評価法の創出
摆脱专注于代谢综合征的特定健康检查:使用真实世界数据创建基于人工智能的评估方法
  • 批准号:
    24K13502
  • 财政年份:
    2024
  • 资助金额:
    --
  • 项目类别:
    Grant-in-Aid for Scientific Research (C)
{{ showInfoDetail.title }}

作者:{{ showInfoDetail.author }}

知道了