CryptoDB
The Cramer-Shoup Encryption Scheme is Plaintext Aware in the Standard Model
Authors: | |
---|---|
Download: | |
Abstract: | In this paper we examine the security criteria for a KEM and a DEM that are su?cient for the overall hybrid encryption scheme to be plaintext-aware in the standard model. We apply this theory to the Cramer-Shoup hybrid scheme acting on ?xed length messages and deduce that the Cramer-Shoup scheme is plaintext-aware in the standard model. This answers a previously open conjecture of Bellare and Palacio on the existence of plaintext-aware encryption schemes. |
BibTeX
@misc{eprint-2005-12595, title={The Cramer-Shoup Encryption Scheme is Plaintext Aware in the Standard Model}, booktitle={IACR Eprint archive}, keywords={public-key cryptography / provable security, plaintext-awareness}, url={http://eprint.iacr.org/2005/261}, note={ a.dent@rhul.ac.uk 13259 received 9 Aug 2005, last revised 21 Apr 2006}, author={Alexander W. Dent}, year=2005 }