Indistinguishability of random systems

135Citations
Citations of this article
57Readers
Mendeley users who have this article in their library.

This article is free to access.

Abstract

An (X, Y)-random system takes inputs X1,X2, … ∈ X and generates, for each new input Xi, an output Yi ∈ Y, depending probabilistically on X1, …, Xi and Y1, …, Yi−1. Many cryptographic systems like block ciphers, MAC-schemes, pseudo-random functions, etc., can be modeled as random systems, where in fact Yi often depends only on Xi, i.e., the system is stateless. The security proof of such a system (e.g. a block cipher) amounts to showing that it is indistinguishable from a certain perfect system (e.g. a random permutation). We propose a general framework for proving the indistinguishability of two random systems, based on the concept of the equivalence of two systems, conditioned on certain events. This abstraction demonstrates the common denominator among many security proofs in the literature, allows to unify, simplify, generalize, and in some cases strengthen them, and opens the door to proving new indistinguishability results. We also propose the previously implicit concept of quasi-randomness and give an efficient construction of a quasi-random function which can be used as a building block in cryptographic systems based on pseudorandom functions.

Cite

CITATION STYLE

APA

Maurer, U. (2002). Indistinguishability of random systems. In Lecture Notes in Computer Science (Vol. 2332, pp. 110–133). Springer Verlag. https://doi.org/10.1007/3-540-46035-7_8

Register to see more suggestions

Mendeley helps you to discover research relevant for your work.

Already have an account?

Save time finding and organizing research with Mendeley

Sign up for free