Message Transmission with Reverse Firewalls—Secure Communication on Corrupted Machines

计算机科学 计算机网络 传输(电信) 计算机安全 电信
作者
Yevgeniy Dodis,Ilya Mironov,Noah Stephens-Davidowitz
出处
期刊:Lecture Notes in Computer Science 卷期号:: 341-372 被引量:47
标识
DOI:10.1007/978-3-662-53018-4_13
摘要

Suppose Alice wishes to send a message to Bob privately over an untrusted channel. Cryptographers have developed a whole suite of tools to accomplish this task, with a wide variety of notions of security, setup assumptions, and running times. However, almost all prior work on this topic made a seemingly innocent assumption: that Alice has access to a trusted computer with a proper implementation of the protocol. The Snowden revelations show us that, in fact, powerful adversaries can and will corrupt users' machines in order to compromise their security. And, presumably accidental vulnerabilities are regularly found in popular cryptographic software, showing that users cannot even trust implementations that were created honestly. This leads to the following seemingly absurd question: Can Alice securely send a message to Bob even if she cannot trust her own computer?! Bellare, Paterson, and Rogaway recently studied this question. They show a strong impossibility result that in particular rules out even semantically secure public-key encryption in their model. However, Mironov and Stephens-Davidowitz recently introduced a new framework for solving such problems: reverse firewalls. A secure reverse firewall is a third party that sits between Alice and the outside world and modifies her sent and received messages so that even if the her machine has been corrupted, Alice's security is still guaranteed. We show how to use reverse firewalls to sidestep the impossibility result of Bellare et al., and we achieve strong security guarantees in this extreme setting. Indeed, we find a rich structure of solutions that vary in efficiency, security, and setup assumptions, in close analogy with message transmission in the classical setting. Our strongest and most important result shows a protocol that achieves interactive, concurrent CCA-secure message transmission with a reverse firewall--i.e., CCA-secure message transmission on a possibly compromised machine! Surprisingly, this protocol is quite efficient and simple, requiring only four rounds and a small constant number of public-key operations for each party. It could easily be used in practice. Behind this result is a technical composition theorem that shows how key agreement with a sufficiently secure reverse firewall can be used to construct a message-transmission protocol with its own secure reverse firewall.

科研通智能强力驱动
Strongly Powered by AbleSci AI
科研通是完全免费的文献互助平台,具备全网最快的应助速度,最高的求助完成率。 对每一个文献求助,科研通都将尽心尽力,给求助人一个满意的交代。
实时播报
1秒前
思源应助健壮的凝安采纳,获得10
1秒前
安静思山发布了新的文献求助10
2秒前
Lucas应助LXY采纳,获得10
3秒前
刘总发布了新的文献求助10
3秒前
端庄毛巾完成签到,获得积分10
4秒前
5秒前
5秒前
5秒前
5秒前
5秒前
天飞翔完成签到,获得积分10
5秒前
6秒前
orixero应助seele采纳,获得10
6秒前
6秒前
谨慎青枫完成签到,获得积分10
6秒前
个性的夜天完成签到,获得积分10
7秒前
8秒前
姜姜完成签到,获得积分10
8秒前
李根苗完成签到,获得积分10
9秒前
彭于晏应助科研通管家采纳,获得10
10秒前
10秒前
科研通AI6.1应助fev123采纳,获得10
10秒前
lucylu发布了新的文献求助10
10秒前
10秒前
11秒前
11秒前
Jasper应助科研通管家采纳,获得10
11秒前
11秒前
毛豆应助科研通管家采纳,获得10
11秒前
乐乐应助科研通管家采纳,获得10
11秒前
Lsong完成签到,获得积分10
12秒前
小蘑菇应助科研通管家采纳,获得10
12秒前
wanci应助科研通管家采纳,获得10
12秒前
molihuakai应助科研通管家采纳,获得10
12秒前
seven发布了新的文献求助10
13秒前
科目三应助科研通管家采纳,获得10
13秒前
Jing发布了新的文献求助10
13秒前
姜姜发布了新的文献求助10
13秒前
所所应助科研通管家采纳,获得10
13秒前
高分求助中
液晶指向矢仿真分析数据集 8888
GL 2 A method for assessing the in-place cleanability of food processing equipment, Fourth Edition, December 2023 3000
Invited Discussant 63O and 64O 1000
Ideology and Meaning-Making under the Putin Regime 750
Advanced Memory Technology 500
Petrology and Plate Tectonics 500
Writing Systems 500
热门求助领域 (近24小时)
化学 材料科学 医学 生物 纳米技术 工程类 有机化学 计算机科学 化学工程 生物化学 物理 内科学 复合材料 催化作用 光电子学 物理化学 电极 细胞生物学 基因 遗传学
热门帖子
关注 科研通微信公众号,转发送积分 6861472
求助须知:如何正确求助?哪些是违规求助? 8564956
关于积分的说明 18212907
捐赠科研通 6227790
什么是DOI,文献DOI怎么找? 3047733
关于科研通互助平台的介绍 2048015
邀请新用户注册赠送积分活动 2025375