Broadcast Encryption with Size N^{1/3} and More from k-Lin

Authors: Hoeteck Wee , NTT Research and ENS, Paris DOI: 10.1007/978-3-030-84259-8_6 (login may be required) Search ePrint Search Google CRYPTO 2021 We present the first pairing-based ciphertext-policy attribute-based encryption (CP-ABE) scheme for the class of degree 3 polynomials with compact parameters: the public key, ciphertext and secret keys comprise O(n) group elements, where n is input length for the function. As an immediate corollary, we obtain a pairing-based broadcast encryption scheme for N users with O(N^1/3)- sized parameters, giving the first significant parameter improvements in pairing- based broadcast encryption in over a decade. All of our constructions achieve adaptive security against unbounded collusions, and rely on the (bilateral) k-Lin assumption in prime-order bilinear groups.
