|
ABSTRACT
Multi-receiver Identity-Based Key Encapsulation Mechanism (mIB-KEM) allows a sender to distribute messages for a set of receivers using the receiver's identity as a public key. Recently, Chatterjee and Sarkar [12] suggested a new mIB-KEM which has sublinear-size ciphertexts and private keys simultaneously. They demonstrated that their scheme is secure against chosen plaintext (or ciphertext) attacks without random oracles. In this paper, we show that their scheme is not secure in that a revoked user can easily decrypt cipher-texts. We next propose a new mIB-KEM which overcomes the security flaw identified in the construction of Chatterjee and Sarkar.
REFERENCES
Note: OCR errors may be found in this Reference List extracted from the full text article. ACM has opted to expose the complete List rather than only correct and linked references.
| |
1
|
M. Abdalla, E. Kiltz, and G. Neven. Generalized key delegation for hierarchical identity-based encryption. In Proc. ESORICS 2007, volume 4734 of LNCS, pages 139--154. Springer, 2007.
|
| |
2
|
J. Baek, R. Safavi-Naini, and W. Susilo. Efficient multi-receiver identity-based encryption and its application to broadcast encryption. In Proc. PKC 2005, volume 3386 of LNCS, pages 380--397. Springer, 2005.
|
| |
3
|
M. Barosa and P. Farshim. Efficient identity-based key encapsulation to multiple parties. In Proc. IMA 2005, volume 3796 of LNCS, pages 428--441. Springer, 2005.
|
| |
4
|
D. Boneh and X. Boyen. Efficient selective-id secure identity based encryption without random oracles. In Proc. Eurocrypt 2004, volume 3027 of LNCS, pages 223--238. Springer, 2004.
|
| |
5
|
D. Boneh, X. Boyen, and E. Goh. Hierarchical identity based encryption with constant size ciphertext. In Proc. Eurocrypt 2005, volume 3494 of LNCS, pages 440--456. Springer, 2005.
|
| |
6
|
|
| |
7
|
D. Boneh, C. Gentry, and B. Waters. Collusion resistant broadcast encryption with short ciphertexts and private keys. In Proc. CRYPTO 2005, volume 3621 of LNCS, pages 258--275. Springer, 2005.
|
| |
8
|
D. Boneh and J. Katz. Improved efficiency for cca-secure cryptosystems built using identity-based encryption. In Proc. CT-RSA 2005, volume 3376 of LNCS, pages 87--103. Springer, 2005.
|
 |
9
|
|
| |
10
|
C. Canetti, S. Halevi, and J. Katz. Chosen ciphertext security from identity-based encryption. In Proc. Eurocrypt 2004, volume 3027 of LNCS, pages 207--222. Springer, 2004.
|
| |
11
|
S. Chatterjee and P. Sarkar. Generalization of the selective-id security model for hibe protocols. In Proc. PKC 2006, volume 3958 of LNCS, pages 241--256. Springer, 2006.
|
| |
12
|
S. Chatterjee and P. Sarkar. Multi-receiver identity-based key encapsulation with shortened ciphertext. In Proc. Indocrypt 2006, volume 4329 of LNCS, pages 394--408. Springer, 2006.
|
| |
13
|
C. Cocks. ibe-3. In TeX90 Conference Proceedings, pages 84--89. TeX Users Group, March 1991.
|
| |
14
|
X. Du, Y. Wang, J. Ge, and Y. Wang. An id-based broadcast encryptoin scheme for key distribution. IEEE Transaction on Broadcasting, 51(2):264--266, 2005.
|
| |
15
|
D. Galindo and E. Kiltz. Direct chosen ciphertext secure identity-based key encapsulation without random oracles. In Proc. ASISP 2006, volume 4058 of LNCS, pages 336--347. Springer, 2006.
|
| |
16
|
C. Gentry. Practical identity-based encryption without random oracles. In Proc. Eurocrypt 2006, volume 4004 of LNCS, pages 445--464. Springer, 2006.
|
| |
17
|
|
| |
18
|
R. Sakai and J. Furukawa. Identity-based broadcast encryption. In Cryptology ePrint Archive. Report 2007/217, http://eprint.iacr.org/2007/217, 2007.
|
| |
19
|
|
| |
20
|
B. Waters. Efficient identity-based encryption without random oracles. In Proc. Eurocrypt 2005, volume 3494 of LNCS, pages 114--124. Springer, 2005.
|
|