Abstract
In ACM CCS 2007, Canetti and Hohenberger left an interesting open problem of how to construct a chosen-ciphertext secure proxy re-encryption (PRE) scheme without bilinear maps. This is a rather interesting problem and has attracted great interest in recent years. In PKC 2010, Matsuda, Nishimaki and Tanaka introduced a novel primitive named re-applicable lossy trapdoor function, and then used it to construct a PRE scheme without bilinear maps. Their scheme is claimed to be chosen-ciphertext secure in the standard model. In this paper, we make a careful observation on their PRE scheme, and indicate that their scheme does not satisfy chosen-ciphertext security. The purpose of this paper is to clarify the fact that, it is still an open problem to come up with a chosen-ciphertext secure PRE scheme without bilinear maps in the standard model. © 2011 International Association for Cryptologic Research.
Author supplied keywords
Cite
CITATION STYLE
Weng, J., Zhao, Y., & Hanaoka, G. (2011). On the security of a bidirectional proxy re-encryption scheme from PKC 2010. In Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics) (Vol. 6571 LNCS, pp. 284–295). Springer Verlag. https://doi.org/10.1007/978-3-642-19379-8_18
Register to see more suggestions
Mendeley helps you to discover research relevant for your work.