EHE: nonce misuse-resistant message authentication.

Sergey Agievich · zvestiya of the National Academy of Sciences of Belarus (National Academy of Sciences of Belarus) · 2017

We propose a nonce misuse-resistant message authentication scheme called EHE (Encrypt-Hash-Encrypt). In EHE, a message-dependent polynomial is evaluated at the point which is an encrypted nonce. The resulting polynomial hash value is encrypted again and becomes an authentication tag. We prove the prf-security of the EHE scheme and extend it to two authenticated encryption modes which follow the “encrypt-then-authenticate” paradigm.

Read the paper · More papers on PaperTik