Non-Interactive CCA2-Secure Threshold Cryptosystems: Achieving Adaptive Security in the Standard Model Without Pairings

Devevey, Julien;Libert, Benoît;Nguyen, Khoa;Peters, Thomas;Yung, Moti
(2021) 24th {IACR} International Conference on Practice and Theory of Public Key Cryptography — Location: Virtual Event (10.May.2021)

Files

Non-InteractiveCCA2-SecureThresholdCryptosystems-AchievingAdaptiveSecurityintheStandardModelWithoutPairings.pdf
  • Open Access
  • Adobe PDF
  • 809.86 KB

Details

Authors
  • Devevey, JulienENS de Lyon, Laboratoire LIP (U. Lyon, CNRS, ENSL, Inria, UCBL), France
    Author
  • Libert, BenoîtCNRS, Laboratoire LIP, France
    Author
  • Nguyen, KhoaNanyang Technological University, SPMS, Singapore
    Author
  • Author
  • Yung, MotiGoogle and Columbia University, USA
    Author
Abstract
We consider threshold public-key encryption, where the decryption servers distributively hold the private key shares, and we need a threshold of these servers to decrypt the message (while the system remains secure when less than the threshold is corrupt). We investigate the notion of chosen-ciphertext secure threshold systems which has been historically hard to achieve. We further require the systems to be, both, adaptively secure (i.e., secure against a strong adversary making corruption decisions dynamically during the protocol), and non-interactive (i.e., where decryption servers do not interact amongst themselves but rather efficiently contribute, each, a single message). To date, only pairing-based implementations were known to achieve security in the standard security model without relaxation (i.e., without assuming the random oracle idealization) under the above stringent requirements. Here, we investigate how to achieve the above using other assumptions (in order to understand what other algebraic building blocks and mathematical assumptions are needed to extend the domain of encryption methods achieving the above). Specifically, we show realizations under the Decision Composite Residuosity (DCR) and Learning-With-Errors (LWE) assumptions.
Affiliations

Citations

Devevey, J., Libert, B., Nguyen, K., Peters, T., & Yung, M. (2021). Non-Interactive CCA2-Secure Threshold Cryptosystems: Achieving Adaptive Security in the Standard Model Without Pairings. PKC 2021 - LNCS, 12710, 659-690. https://doi.org/10.1007/978-3-030-75245-3_24 (Original work published 2021)