Paper: Efficient Schemes for Committing Authenticated Encryption

Mihir Bellare , University of California San Diego
Viet Tung Hoang , Florida State University
Presentation: Slides
Conference: EUROCRYPT 2022
Abstract: This paper provides efficient authenticated-encryption (AE) schemes in which a ciphertext is a commitment to the key. These are extended, at minimal additional cost, to schemes where the ciphertext is a commitment to all encryption inputs, meaning key, nonce, associated data and message. Our primary schemes are modifications of GCM (for basic, unique-nonce AE security) and AES-GCM-SIV (for misuse-resistant AE security) and add both forms of commitment without any increase in ciphertext size. We also give more generic, but somewhat more costly, solutions.
Video from EUROCRYPT 2022
