Matches in SemOpenAlex for { <https://semopenalex.org/work/W3121130432> ?p ?o ?g. }
Showing items 1 to 82 of
82
with 100 items per page.
- W3121130432 endingPage "122" @default.
- W3121130432 startingPage "91" @default.
- W3121130432 abstract "We provide a formal treatment of security of digital signatures against subversion attacks (SAs). Our model of subversion generalizes previous work in several directions, and is inspired by the proliferation of software attacks (e.g., malware and buffer overflow attacks), and by the recent revelations of Edward Snowden about intelligence agencies trying to surreptitiously sabotage cryptographic algorithms. The main security requirement we put forward demands that a signature scheme should remain unforgeable even in the presence of an attacker applying SAs (within a certain class of allowed attacks) in a fully-adaptive and continuous fashion. Previous notions—e.g., the notion of security against algorithm-substitution attacks introduced by Bellare et al. (CRYPTO ‘14) for symmetric encryption—were non-adaptive and non-continuous. In this vein, we show both positive and negative results for the goal of constructing subversion-resilient signature schemes. Negative results. We show that a broad class of randomized signature schemes is insecure against stateful SAs, even if using just a single bit of randomness. On the other hand, we establish that signature schemes with enough min-entropy are insecure against stateless SAs. The attacks we design are undetectable to the end-users (even if they know the signing key). Positive results. We complement the above negative results by showing that signature schemes with unique signatures are subversion-resilient against all attacks that meet an undetectability requirement. A similar result was shown by Bellare et al. for symmetric encryption, who proved the necessity to rely on stateful schemes; in contrast unique signatures are stateless, and in fact they are among the fastest and most established digital signatures available. As our second positive result, we show how to construct subversion-resilient identification schemes from subversion-resilient signature schemes. We finally show that it is possible to devise signature schemes secure against arbitrary tampering with the computation, by making use of an un-tamperable cryptographic reverse firewall (Mironov and Stephens-Davidowitz, EUROCRYPT ‘15), i.e., an algorithm that “sanitizes” any signature given as input (using only public information). The firewall we design allows us to successfully protect so-called re-randomizable signature schemes (which include unique signatures as a special case)." @default.
- W3121130432 created "2021-02-01" @default.
- W3121130432 creator A5003125236 @default.
- W3121130432 creator A5028263902 @default.
- W3121130432 creator A5067359936 @default.
- W3121130432 date "2020-06-01" @default.
- W3121130432 modified "2023-09-24" @default.
- W3121130432 title "Subversion-resilient signatures: Definitions, constructions and applications" @default.
- W3121130432 cites W1974232544 @default.
- W3121130432 cites W1989060313 @default.
- W3121130432 cites W2057636642 @default.
- W3121130432 cites W2067264567 @default.
- W3121130432 cites W2075903118 @default.
- W3121130432 cites W2081301452 @default.
- W3121130432 cites W2094955058 @default.
- W3121130432 cites W2149145634 @default.
- W3121130432 cites W3029670809 @default.
- W3121130432 doi "https://doi.org/10.1016/j.tcs.2020.03.021" @default.
- W3121130432 hasPublicationYear "2020" @default.
- W3121130432 type Work @default.
- W3121130432 sameAs 3121130432 @default.
- W3121130432 citedByCount "7" @default.
- W3121130432 countsByYear W31211304322020 @default.
- W3121130432 countsByYear W31211304322021 @default.
- W3121130432 countsByYear W31211304322022 @default.
- W3121130432 countsByYear W31211304322023 @default.
- W3121130432 crossrefType "journal-article" @default.
- W3121130432 hasAuthorship W3121130432A5003125236 @default.
- W3121130432 hasAuthorship W3121130432A5028263902 @default.
- W3121130432 hasAuthorship W3121130432A5067359936 @default.
- W3121130432 hasBestOaLocation W31211304322 @default.
- W3121130432 hasConcept C103613024 @default.
- W3121130432 hasConcept C118463975 @default.
- W3121130432 hasConcept C148730421 @default.
- W3121130432 hasConcept C158379750 @default.
- W3121130432 hasConcept C17744445 @default.
- W3121130432 hasConcept C178489894 @default.
- W3121130432 hasConcept C199539241 @default.
- W3121130432 hasConcept C22927095 @default.
- W3121130432 hasConcept C2777367489 @default.
- W3121130432 hasConcept C38652104 @default.
- W3121130432 hasConcept C41008148 @default.
- W3121130432 hasConcept C80444323 @default.
- W3121130432 hasConcept C94625758 @default.
- W3121130432 hasConcept C99138194 @default.
- W3121130432 hasConceptScore W3121130432C103613024 @default.
- W3121130432 hasConceptScore W3121130432C118463975 @default.
- W3121130432 hasConceptScore W3121130432C148730421 @default.
- W3121130432 hasConceptScore W3121130432C158379750 @default.
- W3121130432 hasConceptScore W3121130432C17744445 @default.
- W3121130432 hasConceptScore W3121130432C178489894 @default.
- W3121130432 hasConceptScore W3121130432C199539241 @default.
- W3121130432 hasConceptScore W3121130432C22927095 @default.
- W3121130432 hasConceptScore W3121130432C2777367489 @default.
- W3121130432 hasConceptScore W3121130432C38652104 @default.
- W3121130432 hasConceptScore W3121130432C41008148 @default.
- W3121130432 hasConceptScore W3121130432C80444323 @default.
- W3121130432 hasConceptScore W3121130432C94625758 @default.
- W3121130432 hasConceptScore W3121130432C99138194 @default.
- W3121130432 hasFunder F4320332999 @default.
- W3121130432 hasLocation W31211304321 @default.
- W3121130432 hasLocation W31211304322 @default.
- W3121130432 hasLocation W31211304323 @default.
- W3121130432 hasOpenAccess W3121130432 @default.
- W3121130432 hasPrimaryLocation W31211304321 @default.
- W3121130432 hasRelatedWork W2141288318 @default.
- W3121130432 hasRelatedWork W2192392585 @default.
- W3121130432 hasRelatedWork W2771724667 @default.
- W3121130432 hasRelatedWork W2891802659 @default.
- W3121130432 hasRelatedWork W2964795317 @default.
- W3121130432 hasRelatedWork W2982567430 @default.
- W3121130432 hasRelatedWork W3006618194 @default.
- W3121130432 hasRelatedWork W3028657456 @default.
- W3121130432 hasRelatedWork W4214673953 @default.
- W3121130432 hasRelatedWork W4295110078 @default.
- W3121130432 hasVolume "820" @default.
- W3121130432 isParatext "false" @default.
- W3121130432 isRetracted "false" @default.
- W3121130432 magId "3121130432" @default.
- W3121130432 workType "article" @default.