IACR News
If you have a news item you wish to distribute, they should be sent to the communications secretary. See also the events database for conference announcements.
Here you can see all recent updates to the IACR webpage. These updates are also available:
23 June 2014
CloudFlare Inc.
CloudFlare is looking for a talented software engineer to join our security team. We are working on a number of ambitious projects to secure the web and protect our customers from threats of all sorts. The role of security engineer at CloudFlare is more that of a builder than a breaker. You will have to approach problems with creativity and flexibility and be able to identify and use the best tools for the job or build better ones from scratch. At CloudFlare, we are serious about protecting our customers and advancing the state of the art in computer security.
We are looking for experienced engineers (5+ years of experience preferred) with practical expertise in the areas of:
Requirements:
Bonus Points:
21 June 2014
Alex Biryukov, Charles Bouillaguet, Dmitry Khovratovich
ranging from fast and generic symmetric ciphers to compact public key and white-box constructions based on generic affine transformations combined with specially designed low degree non-linear layers. While explaining our design process we show several instructive attacks on the
weaker variants of our schemes.
Omkant Pandey, Kim Ramchen, Brent Waters
(ABE) schemes for all boolean circuits. GVW show that TOR schemes can be constructed assuming the hardness of the learning-with-errors (LWE) problem.
We propose a slightly weaker variant of TOR schemes called correlation-relaxed two-to-one recoding (CR-TOR). Unlike the TOR schemes, our weaker variant does not require an encoding function to
be pseudorandom on correlated inputs. We instead replace it with an indistinguishability property that states a ciphertext is hard to decrypt without access to a certain encoding. The primary benefit of this relaxation is that it allows the construction of ABE for circuits using the TOR paradigm from a broader class of cryptographic assumptions.
We show how to construct a CR-TOR scheme from the noisy cryptographic multilinear maps of Garg, Gentry, and Halevi as well as those of Coron, Lepoint, and Tibouchi. Our framework leads to an instantiation of ABE for circuits that is conceptually different from the existing constructions.
Benny Applebaum, Eyal Widder
In this paper, we partially fill this gap by showing that it is possible to deal with simple additive relations at the expense of relaxing the model of the attack. We introduce several natural relaxations of RKA-security, study the relations between these notions, and describe efficient constructions either under lattice assumptions or under general assumptions. Our results enrich the landscape of RKA security and suggest useful trade-offs between the attack model and the family of possible relations.
Giorgia Azzurra Marson, Bertram Poettering
This problem was addressed only recently by the introduction of seekable sequential key generators (SSKG). Every instance of this cryptographic primitive produces a forward-secure sequence of symmetric (authentication) keys, but also offers an explicit fast-forward functionality. The only currently known SSKG construction replaces traditional hash chains by the iterated evaluation of a shortcut one-way permutation, a factoring-based and hence in practice not too efficient building block.
In this paper we revisit the challenge of marrying forward-secure key generation with seekability and show that symmetric primitives like PRGs, block ciphers, and hash functions suffice for obtaining secure SSKGs. Our scheme is not only considerably more efficient than the prior number-theoretic construction, but also extends the seeking functionality in a way that we believe is important in practice. Our construction is provably (forward-)secure in the standard model.
Shashank Agrawal, Shweta Agrawal, Manoj Prabhakaran
We provide a new framework of cryptographic agents that unifies various cryptographic objects and security definitions, similar to how the Universal Composition framework unifies various multi-party computation tasks like commitment, coin-tossing and zero-knowledge proofs.
Our contributions can be summarized as follows.
- Our main contribution is a new model of cryptographic computation, that unifies and extends cryptographic primitives such as Obfuscation, Functional Encryption, Fully Homomorphic Encryption, Witness encryption, Property Preserving Encryption and the like, all of which can be cleanly modeled as \'\'schemata\'\' in our framework. We provide a new indistinguishability preserving (IND-PRE) definition of security that interpolates indistinguishability and simulation style definitions, implying the former while (often) sidestepping the impossibilities of the latter.
- We present a notion of reduction from one schema to another and a powerful composition theorem with respect to IND-PRE security. This provides a modular means to build and analyze secure schemes for complicated schemata based on those for simpler schemata. Further, this provides a way to abstract out and study the relative complexity of different schemata. We show that obfuscation is a \'\'complete\'\' schema under this notion, under standard cryptographic assumptions.
- IND-PRE-security can be parameterized by the choice of the \'\'test\'\' family. For obfuscation, the strongest security definition (by considering all PPT tests) is unrealizable in general. But we identify a family of tests, called \\Delta, such that all known impossibility results, for obfuscation as well as functional encryption, are by-passed. On the other hand, for each of the example primitives we consider in this paper -- obfuscation, functional encryption, fully-homomorphic encryption and property-preserving encryption -- \\Delta-IND-PRE security for the corresponding schema implies the standard achievable security definitions in the literature.
- We provide a stricter notion of reduction that composes with respect to \\Delta-IND-PRE security.
- Based on \\Delta-IND-PRE-security we obtain a new definition for security of obfuscation, called adaptive differing-inputs obfuscation. We illustrate its power by using it for new constructions of functional encryption schemes, with and without function-hiding.
- Last but not the least, our framework can be used to model abstractions like the generic group model and the random oracle model, letting one translate a general class of constructions in these heuristic models to constructions based on standard model assumptions. We illustrate this by adapting a functional encryption scheme (for inner product predicate) that was shown secure in the generic group model to be secure based on a new standard model assumption we propose, called the generic bilinear group agents assumption.
Jan Camenisch, Anja Lehmann, Gregory Neven, Alfredo Rial
Dario Catalano, Dario Fiore, and Bogdan Warinschi
Jinguang Han, Willy Susilo, Yi Mu, Jianying Zhou, Man Ho Au
efficient and flexible encryption system as the encryptor can control the access structure when encrypting a message. In this paper, we propose a privacy-preserving decentralized CP-ABE (PPDCP-ABE) scheme where the central authority is not required, namely each authority can work independently without the cooperation to initialize the system. Meanwhile, a user can obtain secret keys from multiple authorities without releasing his global identifier (GID) and attributes to them. This is contrasted to the previous privacy-preserving multi-authority ABE (PPMA-ABE) schemes where a user can obtain secret keys from multiple authorities with them knowing his attributes and a central authority is required. However, some sensitive attributes can also release the user\'s identity information. Hence, contemporary PPMA-ABE schemes cannot fully protect users\' privacy as multiple authorities can cooperate to identifier a user by collecting and analyzing his attributes. Therefore, it remains a challenging and important work to construct a PPMA-ABE scheme where the central authority is not required and both the identifiers and the attributes are considered
Jianting Ning, Zhenfu Cao, Xiaolei Dong, Lifei Wei, and Xiaodong Lin
19 June 2014
University of New Brunswick, Canada, North America
Candidates are expected to be proficient in networking, have basic knowledge of computer security, to demonstrate interest in network security.
To apply send your CV.
Ecole Normale Supérieure, Lyon, France
Laboratoire de l’Informatique du Parallélisme
An emerging group on cryptography is looking for excellent researchers to participate to projects on functional encryption and/or lattice-based cryptography, from the algorithmic foundations to the design and implementation of advanced cryptographic primitives.
Candidates must hold (or be close to holding) a PhD thesis related to cryptology, with an emphasis on its mathematical aspects. A strong research record is expected (i.e., publications in first-tier conferences or journals).
Applications should include a CV and recommendation letters. They should be sent before July 31, 2014 but will be considered until the positions are filled. Post-doc duration is negotiable. Salary can be adjusted for senior post-docs.
Ecole Normale Supérieure, Lyon, France
Laboratoire de l’Informatique du Parallélisme
An emerging group on cryptography is looking for excellent researchers to participate to projects on functional encryption and/or lattice-based cryptography, from the algorithmic foundations to the design and implementation of advanced cryptographic primitives.
Candidates must hold (or be close to holding) a PhD thesis related to cryptology, with an emphasis on its mathematical aspects. A strong research record is expected (i.e., publications in first-tier conferences or journals).
Applications should include a CV and recommendation letters. They should be sent before July 31, 2014 but will be considered until the positions are filled. Post-doc duration is negotiable. Salary can be adjusted for senior post-docs.
University of New Brunswick, Canada, North America
Analysis and Risk Management for Large-Scale Systems project. The proposed toolset will incorporate a set of techniques for automated risk identification, security assessment and mitigation planning. Within this toolset a risk management methodology will be provided to
support a process of identifying system threats and assessing the corresponding risks. The risk management toolset will also be equipped with means to trace and analyze roots of these threats for proper selection of follow-up mitigation strategies. This project is funded under the Atlantic Innovation Foundation program. For more information about ISCX, please see www.iscx.ca.
Applicants should have a Ph.D. and expertise in one or both of following research areas:
• Information and Network Security, and network technologies and tools.
• Machine learning and data mining techniques and tools.
The following skills and experiences are very helpful:
• Development under Linux operating system
• Malware detection and analysis concepts and tools
Successful applicants will assist in one or more of following tasks:
• Developing novel learning and mining techniques for malware detection and analysis
• Develop security data-mining approaches for risk mitigation, automated understanding and predictive analytics.
• Preparing technical documents and writing and submitting the research results for publication.
The post-doc appointment is for two years and can be extended for two more year depending upon the availability of funding.
Applications will be considered until the available position is filled. To apply send your curriculum vita that in
ID Quantique SA, Geneva, Swiss, Europe
Main Responsabilities:
•Provide internal expertise on cryptographic algorithms and protocols.
•Participation in internal as well as collaborative interdisciplinary R&D projects in the field of quantum-safe cryptography primitives, protocols and solutions.
•Implementation of cryptographic protocols.
•Monitoring of vulnerabilities and attacks relevant to the company’s products and services.
•Engagement with customers in the context of pre-sales activities.
17 June 2014
University of Paderborn
Candidates should be proficient in complexity theory, cryptography, and number theory. A Master in Computer Science or a similar field is a condition of employment. It is expected of any candidate that a doctorate\\\'s degree will be pursued.
Applications, preferably by email, with the usual documents can be sent until June 30th, 2014.
IMDEA Software Institute, Madrid
The IMDEA Software Institute (Madrid, Spain) has openings for two Ph.D. positions. We are looking for highly motivated students with a background in at least one of the following fields:
- cryptography,
- programming languages,
- verification
and an interest in carrying out research at their intersection.
The positions are within the computer-assisted cryptography group. The group is actively working on:
- the development of new programming languages and verification methods for the design and analysis of cryptographic systems,
- the implementation of computer-aided tools for cryptographic proofs, including EasyCrypt and ZooCrypt, and
- their application to the formal verification of descriptions and implementations of cryptographic standards and systems.
For more information about the group and our recent research, please visit: https://www.easycrypt.info/Team
The positions start from September 1, 2014 (negotiable); it is expected that students will complete their Ph.D. in 4 years. The salary is around 24K euros per year, which provides for very comfortable living in Madrid; in addition, students will have access to a generous health package. The working language is English.
Applications should arrive no later than July 6, 2014 and should include a CV, a cover letter, and the names and contact details for two references. Later applications will be considered until the positions are filled.
Chennai, India, October 8 - October 10
Location: Chennai, India
More Information: http://www.imsc.res.in/~ecc14