Threshold public-key encryption with adaptive security and short ciphertexts

  • Authors:
  • Bo Qin;Qianhong Wu;Lei Zhang;Josep Domingo-Ferrer

  • Affiliations:
  • Universitat Rovira i Virgili, Dept. of Comp. Eng., Tarragona, Catalonia and Dept. of Maths, School of Science, Xi'an University of Technology, China;Universitat Rovira i Virgili, Dept. of Comp. Eng., Tarragona, Catalonia and Key Lab. of Aerospace Information Security and Trusted Computing, Ministry of Education, School of Computer, Wuhan Unive ...;Universitat Rovira i Virgili, Dept. of Comp. Eng., Tarragona, Catalonia;Universitat Rovira i Virgili, Dept. of Comp. Eng., Tarragona, Catalonia

  • Venue:
  • ICICS'10 Proceedings of the 12th international conference on Information and communications security
  • Year:
  • 2010

Quantified Score

Hi-index 0.00

Visualization

Abstract

Threshold public-key encryption (TPKE) allows a set of users to decrypt a ciphertext if a given threshold of authorized users cooperate. Existing TPKE schemes suffer from either long ciphertexts with size linear in the number of authorized users or can only achieve non-adaptive security. A non-adaptive attacker is assumed to disclose her target attacking set of users even before the system parameters are published. The notion of non-adaptive security is too weak to capture the capacity of the attackers in the real world. In this paper, we bridge these gaps by proposing an efficient TPKE scheme with constant-size ciphertexts and adaptive security. Security is proven under the decision Bilinear Diffie-Hellman Exponentiation (BDHE) assumption in the standard model. This implies that our proposal preserves security even if the attacker adaptively corrupts all the users outside the authorized set and some users in the authorized set, provided that the number of corrupted users in the authorized set is less than a threshold. We also propose an efficient tradeoff between the key size and the ciphertext size, which gives the first TPKE scheme with adaptive security and sublinear-size public key, decryption keys and ciphertext.