Leakage-Resilient Signatures

被引:0
作者
Faust, Sebastian [1 ]
Kiltz, Eike [2 ]
Pietrzak, Krzysztof [2 ]
Rothblum, Guy N. [3 ]
机构
[1] KU Leuven ESAT COSIC IBBT, Louvain, Belgium
[2] CWI, Amsterdam, Netherlands
[3] MIT, Boston, MA USA
来源
THEORY OF CRYPTOGRAPHY, PROCEEDINGS | 2010年 / 5978卷
基金
美国国家科学基金会;
关键词
CRYPTOGRAPHY; SECURE;
D O I
暂无
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The strongest standard security notion for digital signature schemes is unforgeability under chosen message attacks. In practice, however, this notion can be insufficient due to "side-channel attacks" which exploit leakage of information about the secret internal state. In this work we put forward the notion of "leakage-resilient signatures," which strengthens the standard security notion by giving the adversary the additional power to learn a bounded amount of arbitrary information about the secret state that was accessed during every signature generation. This notion naturally implies security against all side-channel attacks as long as the amount of information leaked on each invocation is bounded and "only computation leaks information." The main result of this paper is a construction which gives a (tree-based; stateful) leakage-resilient signature scheme based on any 3-time signature scheme. The amount of information that our scheme can safely leak per signature generation is 1/3 of the information the underlying 3-time signature scheme can leak in total. Signature schemes that remain secure even if a bounded total amount of information is leaked were recently constructed, hence instantiating our construction with these schemes gives the first constructions of provably secure leakage-resilient signature schemes. The above construction assumes that the signing algorithm can sample truly random bits, and thus an implementation would need some special hardware (randomness gates). Simply generating this randomness using a leakage-resilient stream-cipher will in general not work. Our second contribution is a sound general principle to replace uniform random bits in any leakage-resilient construction with pseudorandom ones: run two leakage-resilient stream-ciphers (with independent keys) in parallel and then apply a two-source extractor to their outputs.
引用
收藏
页码:343 / +
页数:3
相关论文
共 50 条
  • [1] Fully Leakage-Resilient Signatures
    Boyle, Elette
    Segev, Gil
    Wichs, Daniel
    ADVANCES IN CRYPTOLOGY - EUROCRYPT 2011, 2011, 6632 : 89 - +
  • [2] Fully Leakage-Resilient Signatures
    Boyle, Elette
    Segev, Gil
    Wichs, Daniel
    JOURNAL OF CRYPTOLOGY, 2013, 26 (03) : 513 - 558
  • [3] Leakage-Resilient Signatures with Graceful Degradation
    Nielsen, Jesper Buus
    Venturi, Daniele
    Zottarel, Angela
    PUBLIC-KEY CRYPTOGRAPHY - PKC 2014, 2014, 8383 : 362 - 379
  • [4] Leakage-Resilient Dual-Form Signatures
    Huang, Jianye
    Huang, Qiong
    Susilo, Willy
    COMPUTER JOURNAL, 2018, 61 (08) : 1216 - 1227
  • [5] Leakage-Resilient Storage
    Davi, Francesco
    Dziembowski, Stefan
    Venturi, Daniele
    SECURITY AND CRYPTOGRAPHY FOR NETWORKS, 2010, 6280 : 121 - +
  • [6] Mind Your Coins: Fully Leakage-Resilient Signatures with Graceful Degradation
    Faonio, Antonio
    Nielsen, Jesper Buus
    Venturi, Daniele
    AUTOMATA, LANGUAGES, AND PROGRAMMING, PT I, 2015, 9134 : 456 - 468
  • [7] Leakage-resilient coin tossing
    Elette Boyle
    Shafi Goldwasser
    Yael Tauman Kalai
    Distributed Computing, 2014, 27 : 147 - 164
  • [8] Leakage-Resilient Coin Tossing
    Boyle, Elette
    Goldwasser, Shafi
    Kalai, Yael Tauman
    DISTRIBUTED COMPUTING, 2011, 6950 : 181 - +
  • [9] Leakage-resilient coin tossing
    Boyle, Elette
    Goldwasser, Shafi
    Kalai, Yael Tauman
    DISTRIBUTED COMPUTING, 2014, 27 (03) : 147 - 164
  • [10] Leakage-resilient group signature: Definitions and constructions
    Huang, Jianye
    Huang, Qiong
    Susilo, Willy
    INFORMATION SCIENCES, 2020, 509 : 119 - 132