International Association for Cryptologic Research

International Association
for Cryptologic Research

CryptoDB

The Cramer-Shoup Encryption Scheme is Plaintext Aware in the Standard Model

Authors:
Alexander W. Dent
Download:
URL: http://eprint.iacr.org/2005/261
Search ePrint
Search Google
Abstract: In this paper we examine the security criteria for a KEM and a DEM that are su?cient for the overall hybrid encryption scheme to be plaintext-aware in the standard model. We apply this theory to the Cramer-Shoup hybrid scheme acting on ?xed length messages and deduce that the Cramer-Shoup scheme is plaintext-aware in the standard model. This answers a previously open conjecture of Bellare and Palacio on the existence of plaintext-aware encryption schemes.
BibTeX
@misc{eprint-2005-12595,
  title={The Cramer-Shoup Encryption Scheme is Plaintext Aware in the Standard Model},
  booktitle={IACR Eprint archive},
  keywords={public-key cryptography / provable security, plaintext-awareness},
  url={http://eprint.iacr.org/2005/261},
  note={ a.dent@rhul.ac.uk 13259 received 9 Aug 2005, last revised 21 Apr 2006},
  author={Alexander W. Dent},
  year=2005
}