Published December 23, 2015 | Version v1
Conference paper Open

Chosen-Ciphertext Security from Subset Sum

  • 1. Horst-Gortz Institute for IT Security and Faculty of Mathematics
  • 2. Ruhr-Universitat Bochum, Bochum
  • 3. Department of Computer Science, Sapienza University of Rome

Description

We construct a public-key encryption (PKE) scheme whose
security is polynomial-time equivalent to the hardness of the Subset Sum
problem. Our scheme achieves the standard notion of indistinguishability
against chosen-ciphertext attacks (IND-CCA) and can be used to
encrypt messages of arbitrary polynomial length, improving upon a previous
construction by Lyubashevsky, Palacio, and Segev (TCC 2010)
which achieved only the weaker notion of semantic security (IND-CPA)
and whose concrete security decreases with the length of the message
being encrypted.
At the core of our construction is a trapdoor technique which originates
in the work of Micciancio and Peikert (Eurocrypt 2012).

Files

16-Chosen-Ciphertext_Security_from_Subset_Sum.pdf

Files (320.2 kB)

Name Size Download all
md5:f14df5539c299832c1c2c7604028fa30
320.2 kB Preview Download