Message Transmission with Reverse Firewalls—Secure Communication on Corrupted Machines

计算机科学 计算机网络 传输(电信) 计算机安全 电信
作者
Yevgeniy Dodis,Ilya Mironov,Noah Stephens-Davidowitz
出处
期刊:Lecture Notes in Computer Science 卷期号:: 341-372 被引量:47
标识
DOI:10.1007/978-3-662-53018-4_13
摘要

Suppose Alice wishes to send a message to Bob privately over an untrusted channel. Cryptographers have developed a whole suite of tools to accomplish this task, with a wide variety of notions of security, setup assumptions, and running times. However, almost all prior work on this topic made a seemingly innocent assumption: that Alice has access to a trusted computer with a proper implementation of the protocol. The Snowden revelations show us that, in fact, powerful adversaries can and will corrupt users' machines in order to compromise their security. And, presumably accidental vulnerabilities are regularly found in popular cryptographic software, showing that users cannot even trust implementations that were created honestly. This leads to the following seemingly absurd question: Can Alice securely send a message to Bob even if she cannot trust her own computer?! Bellare, Paterson, and Rogaway recently studied this question. They show a strong impossibility result that in particular rules out even semantically secure public-key encryption in their model. However, Mironov and Stephens-Davidowitz recently introduced a new framework for solving such problems: reverse firewalls. A secure reverse firewall is a third party that sits between Alice and the outside world and modifies her sent and received messages so that even if the her machine has been corrupted, Alice's security is still guaranteed. We show how to use reverse firewalls to sidestep the impossibility result of Bellare et al., and we achieve strong security guarantees in this extreme setting. Indeed, we find a rich structure of solutions that vary in efficiency, security, and setup assumptions, in close analogy with message transmission in the classical setting. Our strongest and most important result shows a protocol that achieves interactive, concurrent CCA-secure message transmission with a reverse firewall--i.e., CCA-secure message transmission on a possibly compromised machine! Surprisingly, this protocol is quite efficient and simple, requiring only four rounds and a small constant number of public-key operations for each party. It could easily be used in practice. Behind this result is a technical composition theorem that shows how key agreement with a sufficiently secure reverse firewall can be used to construct a message-transmission protocol with its own secure reverse firewall.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
刚刚
1秒前
勤劳的靖儿完成签到,获得积分10
1秒前
Liberation发布了新的文献求助10
1秒前
CodeCraft应助MNing采纳,获得10
1秒前
ZZZ发布了新的文献求助10
1秒前
fyy完成签到 ,获得积分10
1秒前
木然完成签到,获得积分10
1秒前
秋慕蕊发布了新的文献求助10
2秒前
adasdad完成签到 ,获得积分10
2秒前
麦辣基米堡完成签到,获得积分10
2秒前
zzzzz完成签到,获得积分10
3秒前
simons发布了新的文献求助20
3秒前
摩天大楼完成签到,获得积分10
3秒前
3秒前
大力哈密瓜完成签到,获得积分10
3秒前
无辜的翠安完成签到,获得积分10
4秒前
一对二完成签到,获得积分10
4秒前
SCH完成签到 ,获得积分10
4秒前
5秒前
春风沂水完成签到,获得积分10
5秒前
99完成签到,获得积分10
5秒前
5秒前
5秒前
华仔应助刘凯采纳,获得10
6秒前
6秒前
言标完成签到,获得积分10
6秒前
Akim应助BinFang采纳,获得10
6秒前
张宁宁发布了新的文献求助10
7秒前
君墨笑完成签到,获得积分20
7秒前
cxf完成签到,获得积分10
7秒前
英姑应助Liberation采纳,获得10
7秒前
wqy完成签到,获得积分10
7秒前
7秒前
书是人类进步的阶梯完成签到 ,获得积分10
7秒前
8秒前
Ashore完成签到,获得积分10
8秒前
缥缈谷冬完成签到,获得积分10
9秒前
kaojirayu完成签到,获得积分10
9秒前
9秒前
高分求助中
Signals, Systems, and Signal Processing 610
Fundamentals of Pharmaceutical and Biologics Regulations: A Global Perspective, Second Edition 600
久松真一著作集〈第5巻〉禅と芸術 500
Fundamentals of Modern Mathematics: A Practical Review (Dover Books on Mathematics) 500
Cold War Transcended: Australia's China Policy, 1949-1990 470
Cybercrime: The Transformation of Crime in the Information Age, 2nd Edition 400
Moore's Clinically Oriented Anatomy 10th Edition 400
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 化学工程 生物化学 计算机科学 物理 内科学 复合材料 催化作用 物理化学 光电子学 电极 细胞生物学 基因 无机化学
热门帖子
关注 科研通微信公众号,转发送积分 6616224
求助须知:如何正确求助?哪些是违规求助? 8380810
关于积分的说明 17929178
捐赠科研通 5784747
什么是DOI,文献DOI怎么找? 2959508
邀请新用户注册赠送积分活动 1934716
关于科研通互助平台的介绍 1838740