Another look at HMQV

被引:38
|
作者
Menezes, Alfred [1 ]
机构
[1] Univ Waterloo, Dept Combinator & Optimizat, Waterloo, ON, Canada
关键词
Cryptography; key agreement protocols; provable security;
D O I
10.1515/JMC.2007.004
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The HMQV protocols are 'hashed variants' of the MQV key agreement protocols. They were introduced at CRYPTO 2005 by Krawczyk, who claimed that the HMQV protocols have very significant advantages over their MQV counterparts: (i) security proofs under reasonable assumptions in the (extended) Canetti-Krawczyk model for key exchange; and (ii) superior performance in some situations. In this paper we demonstrate that the HMQV protocols are insecure by presenting realistic attacks in the Canetti-Krawczyk model that recover a victim's static private key. We propose HMQV-1, patched versions of the HMQV protocols that resists our attacks (but do not have any performance advantages over MQV). We also identify some fallacies in the security proofs for HMQV, critique the security model, and raise some questions about the assurances that proofs in this model can provide.
引用
收藏
页码:47 / 64
页数:18
相关论文
共 50 条
  • [31] Another look at the road
    Otra mirada a la carretera
    [J]. Aurín, R., 1600, Colegio de Ingenieros de Caminos Canales y Puertos, Almagro 42, Madrid, 28010, Spain (160):
  • [32] Another look back
    Jenkins, T
    [J]. AMERICAN JOURNAL OF HUMAN GENETICS, 2000, 67 (02) : 527 - 527
  • [33] Another Look at Connections
    Dumitrescu, Florin
    [J]. RENDICONTI DEL SEMINARIO MATEMATICO DELLA UNIVERSITA DI PADOVA, 2012, 127 : 99 - 105
  • [34] Another Look at Li
    Peterson, Willard J.
    [J]. JOURNAL OF SONG-YUAN STUDIES, 2021, 50 : 219 - 220
  • [35] Worth another look?
    Nicola McCarthy
    [J]. Nature Reviews Cancer, 2012, 12 : 2 - 2
  • [36] Another look at minocycline
    Alarcon, GS
    Tilley, B
    Cooper, S
    Clegg, DO
    Trentham, DE
    Pillemer, SR
    Neuner, R
    Fowler, S
    [J]. BULLETIN ON THE RHEUMATIC DISEASES, 1996, 45 (08) : 6 - 7
  • [37] ANOTHER LOOK AT THE VIKINGS
    DAMELL, D
    MODIN, M
    [J]. ARCHAEOLOGY, 1979, 32 (03) : 15 - 21
  • [38] ANOTHER LOOK AT ETHERNET
    PETERSON, GE
    [J]. BYTE, 1991, 16 (07): : 20 - 20
  • [39] ANOTHER LOOK WORTHWHILE
    BEJAN, A
    [J]. MECHANICAL ENGINEERING, 1982, 104 (05): : 5 - 5
  • [40] ANOTHER LOOK AT THE IEEE
    SCHANKER, JZ
    [J]. COMPUTER DESIGN, 1984, 23 (02): : 17 - 17