On Modeling IND-CCA Security in Cryptographic Protocols.

Dennis Hofheinz, Jörn Müller‐Quade, Rainer Steinwandt · IACR Cryptology ePrint Archive · 2003

Two common notions of security for public key encryption schemes are shown to be equivalent: we prove that indistinguishability against chosen-ciphertext attacks (IND-CCA) is in fact polynomially equivalent to (yet “slightly” weaker than) securely realizing the ideal functionality FPKE in the general modeling of cryptographic protocols of [Can01a]. This disproves in particular the claim that security in the sense of IND-CCA strictly implies security in the sense of realizing FPKE (see [Can01a]). Moreover, we give concrete reductions among such security notions and show that these relations hold for both uniform and non-uniform adversarial entities.

Read the paper · More papers on PaperTik