[Resource Topic] 2014/613: A Security Analysis of the Composition of ChaCha20 and Poly1305

Welcome to the resource topic for 2014/613

Title:
A Security Analysis of the Composition of ChaCha20 and Poly1305

Authors: Gordon Procter

Abstract:

This note contains a security reduction to demonstrate that Langley’s composition of Bernstein’s ChaCha20 and Poly1305, as proposed for use in IETF protocols, is a secure authenticated encryption scheme. The reduction assumes that ChaCha20 is a PRF, that Poly1305 is epsilon-almost-Delta-universal, and that the adversary is nonce respecting.

ePrint: https://eprint.iacr.org/2014/613

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .