...
首页> 外文期刊>Journal of Engineering & Applied Sciences >Insecure Instantiations of Random Oracles in Password-Based Key Exchange Protocols
【24h】

Insecure Instantiations of Random Oracles in Password-Based Key Exchange Protocols

机译:基于密码的密钥交换协议中随机oracles的不安全实例化

获取原文
获取原文并翻译 | 示例
           

摘要

Protocols for Password-based Authenticated Key Exchange (PAKE) allow users to generate a shared secret key from their easy-to-remember passwords but at the same time have to protect the user's passwords from the notorious dictionary attacks. PAKE protocols often use a hash function that maps user passwords into elements of the underlying cyclic group G generated by an arbitrary fixed element g∈G. Such a hash function is usually modelled as a random oracle G in proofs of security of protocols. One obvious way of instantiating the random oracle G is to use a random oracle H: {0, 1} *→Z_q and then define G(.) = g~H(.). However, we argue that this obvious instantiation of G is likely to result in a critical vulnerability for most of PAKE protocols. In the present research, we provide a strong evidence in support of this argument by showing that two popular protocols-Bresson two-party PAKE protocol and Abdalla and Pointcheval's three-party PAKE protocol-become susceptible to an offline dictionary attack as soon as G is instantiated as G (.) = g~H(.). Our result suggests that designers of PAKE protocols should clearly specify how G can be securely instantiated for their protocols in order to prevent protocol implementers from employing an insecure instantiation of G.
机译:基于密码的身份验证密钥交换(PANK)的协议允许用户从其易于记忆的密码生成共享密钥,但同时必须保护用户的密码免受臭名昭着的字典攻击。普及协议通常使用哈希函数将用户密码映射到由任意固定元件G∈g生成的基础循环组G的元素。这种哈希函数通常在协议的安全证明中被建模为随机的Oracle G.实例化随机Oracle G的一种明显的方法是使用随机的Oracle H:{0,1} *→z_q然后定义g(。)= g〜h(。)。但是,我们认为G的这种明显的实例化可能导致大多数普及议定书的关键脆弱性。在目前的研究中,我们通过表明两个流行的协议 - Bresson双方探剂协议和Abdalla和Pointcheval的三方普照协议 - 一旦G是将g(。)= g〜h(。)实例化。我们的效果表明,举例议定书的设计者应明确指明如何为其协议安全地实例化G,以防止议定书实施者采用G的不安全实例化。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号