Message Transmission with Reverse Firewalls—Secure Communication on Corrupted Machines

计算机科学 计算机网络 传输(电信) 计算机安全 电信
作者
Yevgeniy Dodis,Ilya Mironov,Noah Stephens-Davidowitz
出处
期刊:Lecture Notes in Computer Science 卷期号:: 341-372 被引量:47
标识
DOI:10.1007/978-3-662-53018-4_13
摘要

Suppose Alice wishes to send a message to Bob privately over an untrusted channel. Cryptographers have developed a whole suite of tools to accomplish this task, with a wide variety of notions of security, setup assumptions, and running times. However, almost all prior work on this topic made a seemingly innocent assumption: that Alice has access to a trusted computer with a proper implementation of the protocol. The Snowden revelations show us that, in fact, powerful adversaries can and will corrupt users' machines in order to compromise their security. And, presumably accidental vulnerabilities are regularly found in popular cryptographic software, showing that users cannot even trust implementations that were created honestly. This leads to the following seemingly absurd question: Can Alice securely send a message to Bob even if she cannot trust her own computer?! Bellare, Paterson, and Rogaway recently studied this question. They show a strong impossibility result that in particular rules out even semantically secure public-key encryption in their model. However, Mironov and Stephens-Davidowitz recently introduced a new framework for solving such problems: reverse firewalls. A secure reverse firewall is a third party that sits between Alice and the outside world and modifies her sent and received messages so that even if the her machine has been corrupted, Alice's security is still guaranteed. We show how to use reverse firewalls to sidestep the impossibility result of Bellare et al., and we achieve strong security guarantees in this extreme setting. Indeed, we find a rich structure of solutions that vary in efficiency, security, and setup assumptions, in close analogy with message transmission in the classical setting. Our strongest and most important result shows a protocol that achieves interactive, concurrent CCA-secure message transmission with a reverse firewall--i.e., CCA-secure message transmission on a possibly compromised machine! Surprisingly, this protocol is quite efficient and simple, requiring only four rounds and a small constant number of public-key operations for each party. It could easily be used in practice. Behind this result is a technical composition theorem that shows how key agreement with a sufficiently secure reverse firewall can be used to construct a message-transmission protocol with its own secure reverse firewall.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
1秒前
2秒前
贪玩飞机完成签到,获得积分10
3秒前
keyan发布了新的文献求助30
3秒前
Serendipity完成签到,获得积分10
3秒前
Asha发布了新的文献求助10
4秒前
在水一方应助dasier采纳,获得10
4秒前
lxl完成签到 ,获得积分10
4秒前
4秒前
李健的小迷弟应助哲999采纳,获得10
4秒前
4秒前
5秒前
KK发布了新的文献求助30
5秒前
中微子发布了新的文献求助10
5秒前
FLY完成签到,获得积分10
6秒前
6秒前
俊逸惋庭发布了新的文献求助10
7秒前
7秒前
7秒前
8秒前
Nightingale完成签到,获得积分10
9秒前
香蕉觅云应助小脚丫采纳,获得10
9秒前
10秒前
JING完成签到,获得积分10
10秒前
10秒前
10秒前
落雁发布了新的文献求助10
11秒前
11秒前
11秒前
粗暴的遥完成签到 ,获得积分10
12秒前
lalala发布了新的文献求助10
12秒前
12秒前
genggeng完成签到,获得积分10
12秒前
adasd发布了新的文献求助10
13秒前
HHH完成签到,获得积分10
13秒前
zfx1114完成签到 ,获得积分10
14秒前
leo发布了新的文献求助10
14秒前
vivi发布了新的文献求助10
14秒前
333完成签到,获得积分20
15秒前
Hui发布了新的文献求助10
16秒前
高分求助中
(应助此贴封号)【重要!!请各用户(尤其是新用户)详细阅读】【科研通的精品贴汇总】 10000
Cronologia da história de Macau 5000
咳嗽・喀痰の診療ガイドライン第2版2025 800
Petrology and Plate Tectonics 800
Electrode Potentials 550
The globalisation of real estate: the politics and practice of foreign real estate investment 500
Handbook Of Synthetic Methodologies And Protocols Of Nanomaterials 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 内科学 物理 复合材料 催化作用 细胞生物学 无机化学 光电子学 物理化学 电极 基因
热门帖子
关注 科研通微信公众号,转发送积分 7012321
求助须知:如何正确求助?哪些是违规求助? 8685953
关于积分的说明 18412515
捐赠科研通 6498906
什么是DOI,文献DOI怎么找? 3105512
关于科研通互助平台的介绍 2175393
邀请新用户注册赠送积分活动 2081642