Message and Key Substitution Attacks on Verifiably Encrypted Signature Schemes

Bennian Dou · IEICE Transactions on Fundamentals of Electronics Communications and Computer Sciences · 2013

In 2004, Menezes and Smart left an open problem that is whether there exists a realistic scenario where message and key substitution (MKS) attacks can have damaging consequences. In this letter, we show that MKS attacks can have damaging consequences in practice, by pointing out that a verifiably encrypted signature (VES) scheme is not opaque if MKS attacks are possible.

Read the paper · More papers on PaperTik