On The Security of The ElGamal Encryption Scheme and Damgard's Variant.

Jiang Wu, Douglas R. Stinson · 2008

Abstract. In this paper, we give security proofs for ElGamal encryption scheme and its variant by Damg˚ard (DEG). For the ElGamal encryption, we show that (1) under the delayed-target discrete log assumption and a variant of the generalized knowledge-of-exponent assumption, ElGamal encryption is one-way under non-adaptive chosen cipher attacks; (2) one-wayness of ElGamal encryption under non-adaptive chosen cipher attacks is equivalent to the hardness of the delayed-target computational Diffie-Hellman problem. For DEG, (1) we give a new proof that DEG is semantically secure against non-adaptive chosen ciphertext attacks under the delayed-target decisional Diffie-Hellman assumption (although the same result has been presented in the literature before, our proof seems simpler); (2) we show that the DHK1 assumption, which was first proposed for DEG security proof, is stronger than necessary. A decisional (thus weaker) version of DHK1 assumption is sufficient for DEG security proof. Keywords: ElGamal encryption, Damg˚ard’s ElGamal, security proof. 1

Read the paper · More papers on PaperTik