The random oracle model: a twenty-year retrospective

被引:0
|
作者
Neal Koblitz
Alfred J. Menezes
机构
[1] University of Washington,Department of Mathematics
[2] University of Waterloo,Department of Combinatorics & Optimization
来源
关键词
Cryptography; Public key; Random oracle; 94A60;
D O I
暂无
中图分类号
学科分类号
摘要
It has been roughly two decades since the random oracle model for reductionist security arguments was introduced and one decade since we first discussed the controversy that had arisen concerning its use. In this retrospective we argue that there is no evidence that the need for the random oracle assumption in a proof indicates the presence of a real-world security weakness in the corresponding protocol. We give several examples of attempts to avoid random oracles that have led to protocols that have security weaknesses that were not present in the original ones whose proofs required random oracles. We also argue that the willingness to use random oracles gives one the flexibility to modify certain protocols so as to reduce dependence on potentially vulnerable pseudorandom bit generators. Finally, we discuss a modified version of ECDSA, which we call ECDSA+\documentclass[12pt]{minimal} \usepackage{amsmath} \usepackage{wasysym} \usepackage{amsfonts} \usepackage{amssymb} \usepackage{amsbsy} \usepackage{mathrsfs} \usepackage{upgreek} \setlength{\oddsidemargin}{-69pt} \begin{document}$${}^+$$\end{document}, that may have better real-world security than standard ECDSA, and compare it with a modified Schnorr signature. If one is willing to use the random oracle model (and the analogous generic group model), then various security arguments are known for these two schemes. If one shuns these models, then no provable security result is known for them.
引用
下载
收藏
页码:587 / 610
页数:23
相关论文
共 50 条
  • [1] The random oracle model: a twenty-year retrospective
    Koblitz, Neal
    Menezes, Alfred J.
    DESIGNS CODES AND CRYPTOGRAPHY, 2015, 77 (2-3) : 587 - 610
  • [2] Twenty-year retrospective of quality engineering
    Caplan, Frank
    Bisgaard, Soren
    Quality Engineering, 2007, 20 (01) : 3 - 5
  • [3] Twenty-Year Experience with Liver Transplantation: A Retrospective Study
    Roig Casaban, Vicent
    Rico Gonzalez, Aurora
    de Ocariz Olmos, Lucia Lopez
    Talavan Serna, Julio
    Rodriguez Argente, Gemma
    Galan Torres, Juan
    LIVER TRANSPLANTATION, 2011, 17 (06) : S248 - S248
  • [4] A Twenty-Year Retrospective Diagnosis of Congenital Cytomegalovirus Infection
    Hayashi, Manami
    Nishiyama, Itsuko
    Moriuchi, Masako
    Moriuchi, Hiroyuki
    PEDIATRIC NEUROLOGY, 2018, 86 : 71 - 72
  • [5] Inside the Windows Security Push: A Twenty-Year Retrospective
    Lipner S.
    Howard M.
    IEEE Security and Privacy, 2023, 21 (02): : 24 - 31
  • [6] Aston Cantlow v Wallbank: a twenty-year retrospective
    Hill, K. C. Mark
    ECCLESIASTICAL LAW JOURNAL, 2024, 26 (01) : 6 - 19
  • [7] A twenty-year epidemic
    de León, SP
    SALUD PUBLICA DE MEXICO, 2001, 43 (04): : 266 - 267
  • [9] Thyrotoxicosis in children and adolescence in Iceland: A twenty-year retrospective study
    Thornorsson, Thornorbergur Atli
    Bjarnason, Ragnar
    Jonasdottir, Soffia Guorun
    Jonsdottir, Berglind
    HORMONE RESEARCH IN PAEDIATRICS, 2022, 95 (SUPPL 2): : 420 - 420
  • [10] The Twenty-Year Death
    Scanlon, Seamus
    LIBRARY JOURNAL, 2012, 137 (14) : 95 - 96