On constructing practical multi‐recipient key‐encapsulation with short ciphertext and public key
Zheng Yang · Security and Communication Networks · 2015
Abstract In this paper, we introduce a novel multiple‐recipient key‐encapsulation mechanism (mKEM) scheme which takes as input multiple public keys and outputs a single key shared by corresponding recipients. We focus on seeking practical construction for mKEM with short ciphertext and public key. Our scheme is IND‐CCA2 secure without random oracles. The security is reduced to a new variant of square bilinear Diffie–Hellman assumption. Copyright © 2015 John Wiley & Sons, Ltd.