| DOI | Trouver le DOI : https://doi.org/10.1007/978-3-031-50594-2_9 |
|---|
| Auteur | Rechercher : Tiepelt, MarcelIdentifiant ORCID : https://orcid.org/0000-0002-3389-208X; Rechercher : Eaton, Edward1; Rechercher : Stebila, DouglasIdentifiant ORCID : https://orcid.org/0000-0001-9443-3170 |
|---|
| Affiliation | - Conseil national de recherches Canada. Technologies numériques
|
|---|
| Format | Texte, Chapitre de livre |
|---|
| Conférence | 28th European Symposium on Research in Computer Security (ESORICS 2023), September 25–29, 2023, The Hague, The Netherlands |
|---|
| Sujet | password-authenticated key exchange; quantum-resistant; quantum-annoying; generic group model |
|---|
| Résumé | The KHAPE-HMQV protocol is a state-of-the-art highly efficient asymmetric password-authenticated key exchange protocol that provides several desirable security properties, but has the drawback of being vulnerable to quantum adversaries due to its reliance on discrete logarithm-based building blocks: solving a single discrete logarithm allows the attacker to perform an offline dictionary attack and recover the password. We show how to modify KHAPE-HMQV to make the protocol quantum-annoying: a classical adversary who has the additional ability to solve discrete logarithms can only break the protocol by solving a discrete logarithm for each guess of the password. While not fully resistant to attacks by quantum computers, a quantum-annoying protocol could offer some resistance to quantum adversaries for whom discrete logarithms are relatively expensive. Our modification to the protocol is small: encryption (using an ideal cipher) is added to one message. Our analysis uses the same ideal cipher model assumption as the original analysis of KHAPE, and quantum annoyingness is modelled using an extension of the generic group model which gives a classical adversary a discrete logarithm oracle. |
|---|
| Date de publication | 2024-01-12 |
|---|
| Maison d’édition | Springer Nature |
|---|
| Dans | |
|---|
| Série | |
|---|
| Langue | anglais |
|---|
| Publications évaluées par des pairs | Oui |
|---|
| Exporter la notice | Exporter en format RIS |
|---|
| Signaler une correction | Signaler une correction (s'ouvre dans un nouvel onglet) |
|---|
| Identificateur de l’enregistrement | 16d6f03f-ae1a-4291-bac8-79baa8c118df |
|---|
| Enregistrement créé | 2024-02-07 |
|---|
| Enregistrement modifié | 2024-02-07 |
|---|