Welcome to the resource topic for 2023/924
Title:
Generalized Initialization of the Duplex Construction
Authors: Christoph Dobraunig, Bart Mennink
Abstract:The duplex construction is already well analyzed with many papers proving its security in the random permutation model. However, so far, the first phase of the duplex, where the state is initialized with a secret key and an initialization vector (\mathit{IV}), is typically analyzed in a worst case manner. More detailed, it is always assumed that the adversary is allowed to choose the \mathit{IV} on its will. In this paper, we analyze how the security changes if restrictions on the choice of the \mathit{IV} are imposed, varying from the global nonce case over the random \mathit{IV} case to the \mathit{IV} on key case. The last one, in particular, is the duplex analogue of the use of a nonce masked with a secret in AES-GCM in TLS 1.3. We apply our findings to duplex-based encryption and authenticated encryption, and discuss the practical applications of our results.
ePrint: https://eprint.iacr.org/2023/924
See all topics related to this paper.
Feel free to post resources that are related to this paper below.
Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.
For more information, see the rules for Resource Topics .