Security weaknesses of certain broadcast encryption schemes

  • Authors:
  • Miodrag J. Mihaljević;Marc P. C. Fossorier;Hideki Imai

  • Affiliations:
  • Mathematical Institute, Serbian Academy of Sciences and Arts, Belgrade, Serbia and Montenegro;Department of Electrical Engineering, University of Hawaii, Honolulu, HI;Institute of Industrial Science, University of Tokyo, Tokyo, Japan

  • Venue:
  • DRMTICS'05 Proceedings of the First international conference on Digital Rights Management: technologies, Issues, Challenges and Systems
  • Year:
  • 2005

Quantified Score

Hi-index 0.00

Visualization

Abstract

This paper points out to a generic vulnerability of certain broadcast encryption schemes. This vulnerability can be effectively explored assuming chosen plaintext attacks, and in some cases even under ciphertext only attack. The developed methods for cryptanalysis are based on an attacking approach not taken into account in the security evaluations of the reported broadcast encryption schemes. The proposed attacks are based on employment of a dedicated time-data-memory trade-off approach for cryptanalysis. Two algorithms for cryptanalysis are proposed (both in the basic and the generalized versions) and their main characteristics regarding the complexity and required sample are pointed out. The algorithms are applied for cryptanalysis of particular recently reported broadcast encryption schemes implying that their security is far below the claimed ones.