Security for Authenticated Key Exchange Based on Non-Malleability
H. Hada, Keisuke Tanaka · 2005
This paper continues the study of password-based protocols for authenticated key exchange (AKE). In 2000, Bellare, Pointcheval, and Rogaway [2] proposed the formal model on AKE. In this paper, we propose new security notions on AKE, based on the non-malleability of session keys. Then we prove that those security notion are equivalent to that proposed in [2]. Furthermore, we show that there is a protocol secure in the random oracle model, not always secure in the standard model with collision-resistant hash functions.