[Resource Topic] 2018/458: Characterizing Collision and Second-Preimage Resistance in Linicrypt

Welcome to the resource topic for 2018/458

Title:
Characterizing Collision and Second-Preimage Resistance in Linicrypt

Authors: Ian McQuoid, Trevor Swope, Mike Rosulek

Abstract:

Linicrypt (Carmer & Rosulek, Crypto 2016) refers to the class of algorithms that make calls to a random oracle and otherwise manipulate values via fixed linear operations. We give a characterization of collision-resistance and second-preimage resistance for a significant class of Linicrypt programs (specifically, those that achieve domain separation on their random oracle queries via nonces). Our characterization implies that collision-resistance and second-preimage resistance are equivalent, in an asymptotic sense, for this class. Furthermore, there is a polynomial-time procedure for determining whether such a Linicrypt program is collision/second-preimage resistant.

ePrint: https://eprint.iacr.org/2018/458

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .