Cryptographic Administration for Secure Group Messaging

被引:0
|
作者
Balbas, David [1 ,2 ]
Collins, Daniel [3 ]
Vaudenay, Serge [3 ]
机构
[1] IMDEA Software Inst, Madrid, Spain
[2] Univ Politecn Madrid, Madrid, Spain
[3] Ecole Polytech Fed Lausanne, Lausanne, Switzerland
基金
欧洲研究理事会;
关键词
D O I
暂无
中图分类号
TP [自动化技术、计算机技术];
学科分类号
0812 ;
摘要
Many real-world group messaging systems delegate group administration to the application level, failing to provide formal guarantees related to group membership. Taking a cryptographic approach to group administration can prevent both implementation and protocol design pitfalls that result in a loss of confidentiality and consistency for group members. In this work, we introduce a cryptographic framework for the design of group messaging protocols that offer strong security guarantees for group membership. To this end, we extend the continuous group key agreement (CGKA) paradigm used in the ongoing IETF MLS group messaging standardisation process and introduce the administrated CGKA (A-CGKA) primitive. Our primitive natively enables a subset of group members, the group admins, to control the addition and removal of parties and to update their own keying material in a secure manner. Notably, our security model prevents even corrupted (non-admin) members from forging messages that modify group membership. Moreover, we present two efficient and modular constructions of group administrators that are correct and secure with respect to our definitions. Finally, we propose, implement, and benchmark an efficient extension of MLS that integrates cryptographic administrators.
引用
收藏
页码:1253 / 1270
页数:18
相关论文
共 50 条
  • [1] Secure group instant messaging using cryptographic primitives
    Thukral, A
    Zou, X
    [J]. NETWORKING AND MOBILE COMPUTING, PROCEEDINGS, 2005, 3619 : 1002 - 1011
  • [2] Is Cryptographic Deniability Sufficient? Non-Expert Perceptions of Deniability in Secure Messaging
    Reitinger, Nathan
    Malkin, Nathan
    Akgul, Omer
    Mazurek, Michelle L.
    Miers, Ian
    [J]. 2023 IEEE SYMPOSIUM ON SECURITY AND PRIVACY, SP, 2023, : 274 - 292
  • [3] Post-quantum Secure Group Messaging
    Bobrysheva, Julia
    Zapechnikov, Sergey
    [J]. PROCEEDINGS OF THE 2021 IEEE CONFERENCE OF RUSSIAN YOUNG RESEARCHERS IN ELECTRICAL AND ELECTRONIC ENGINEERING (ELCONRUS), 2021, : 2323 - 2326
  • [4] A Secured Cryptographic Messaging System
    Mathkour, Hassan
    Assassa, Ghazy
    Al-Muharib, A.
    Juma'h, A.
    [J]. PROCEEDINGS OF 2009 INTERNATIONAL CONFERENCE ON MACHINE LEARNING AND COMPUTING (IACSIT ICMLC 2009), 2009, : 354 - 359
  • [5] Modular Design of Secure Group Messaging Protocols and the Security of MLS
    Alwen, Joel
    Coretti, Sandro
    Dodis, Yevgeniy
    Tselekounis, Yiannis
    [J]. CCS '21: PROCEEDINGS OF THE 2021 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2021, : 1463 - 1483
  • [6] An analysis of patient-provider secure messaging at two Veterans Health Administration medical centers: message content and resolution through secure messaging
    Shimada, Stephanie L.
    Petrakis, Beth Ann
    Rothendler, James A.
    Zirkle, Maryan
    Zhao, Shibei
    Feng, Hua
    Fix, Gemmae M.
    Ozkaynak, Mustafa
    Martin, Tracey
    Johnson, Sharon A.
    Tulu, Bengisu
    Gordon, Howard S.
    Simon, Steven R.
    Woods, Susan S.
    [J]. JOURNAL OF THE AMERICAN MEDICAL INFORMATICS ASSOCIATION, 2017, 24 (05) : 942 - 949
  • [7] The Complexities of Healing in Secure Group Messaging: Why Cross-Group Effects Matter
    Cremers, Cas
    Hale, Britta
    Kohbrok, Konrad
    [J]. PROCEEDINGS OF THE 30TH USENIX SECURITY SYMPOSIUM, 2021, : 1847 - 1864
  • [8] From Secure Messaging to Secure Collaboration
    Kleppmann, Martin
    Kollmann, Stephan A.
    Vasile, Diana A.
    Beresford, Alastair R.
    [J]. SECURITY PROTOCOLS XXVI, 2018, 11286 : 179 - 185
  • [9] Key Agreement for Decentralized Secure Group Messaging with Strong Security Guarantees
    Weidner, Matthew
    Kleppmann, Martin
    Hugenroth, Daniel
    Beresford, Alastair R.
    [J]. CCS '21: PROCEEDINGS OF THE 2021 ACM SIGSAC CONFERENCE ON COMPUTER AND COMMUNICATIONS SECURITY, 2021, : 2024 - 2045
  • [10] Secure messaging in BACnet®
    Holmberg, DG
    [J]. ASHRAE JOURNAL, 2005, 47 (11) : B23 - B26