<p>This paper presents two distinct chosen-ciphertext attacks (CCA) against lattice-based encryption and decryption schemes, in particular based on the LWE problem, a class of post-quantum cryptographic algorithms. First we attack fully homomorphic encryption-decryption schemes (FHE) exploiting the additional information that the small modulus reduction offers. We compare this attack with the <InlineEquation ID="IEq2"> <EquationSource Format="TEX">\(CPA^D\)</EquationSource> </InlineEquation> attack presented in Checri (2024). Afterwards we present an attack against Kyber.CPAPKE, and another against a weakened version of Kyber.KEM where the cyphertext is not checked for correctness; and compare them to the previous Key Mismatch Attack in Qin (2021). Our work remarks the importance of protecting the decryption function in the different implementations of these cryptographic schemes, and the importance of CCA security in nowadays cryptosystems.</p>

错误:搜索内容不能为空,请输入英文关键词
错误:关键词超出字数限制,请精简
高级检索

CCA-attacks on lattice-based encryption-decryption schemes

  • Alba Hernández Costoya,
  • Alba Larraya Sancho,
  • Miguel Ángel Marco Buzunáriz

摘要

This paper presents two distinct chosen-ciphertext attacks (CCA) against lattice-based encryption and decryption schemes, in particular based on the LWE problem, a class of post-quantum cryptographic algorithms. First we attack fully homomorphic encryption-decryption schemes (FHE) exploiting the additional information that the small modulus reduction offers. We compare this attack with the \(CPA^D\) attack presented in Checri (2024). Afterwards we present an attack against Kyber.CPAPKE, and another against a weakened version of Kyber.KEM where the cyphertext is not checked for correctness; and compare them to the previous Key Mismatch Attack in Qin (2021). Our work remarks the importance of protecting the decryption function in the different implementations of these cryptographic schemes, and the importance of CCA security in nowadays cryptosystems.