American Institute of Mathematical Sciences

November  2019, 13(4): 705-732. doi: 10.3934/amc.2019042

$\textsf{DWCDM+}$: A BBB secure nonce based MAC

 1 Indian Statistical Institute, Kolkata, India 2 NTT Secure Platform Laboratories, NTT Corporation, Japan

* Corresponding author

Received  November 2018 Revised  January 2019 Published  June 2019

Fund Project: This is an extended version of the article accepted in IACR-CRYPTO 2018. Section 3, section 4 and section 5 contains the substantial changes from our article accepted in IACR-CRYPTO 2018. Mridul Nandi is supported by R.C.Bose Centre for Cryptology and Security.

In CRYPTO 2016, Cogliati and Seurin have proposed a nonce-based MAC called Encrypted Wegman-Carter with Davies-Meyer (
 $\textsf{EWCDM}$
), from an
 $n$
-bit block cipher
 $\textsf{E}$
and an
 $n$
-bit almost xor universal hash function
 $\textsf{H}$
as
 $\textsf{E}_{K_2}\bigl(\textsf{E}_{K_1}(N)\oplus N\oplus \textsf{H}_{K_h}(M)\bigr),$
for a nonce
 $N$
and a message
 $M$
that provides roughly
 $2n/3$
-bit MAC security. However, obtaining the similar security using a single block cipher key was posed as an open research problem. In this paper, we present Decrypted Wegman-Carter with Davies-Meyer (
 $\textsf{DWCDM+}$
) construction based on a single block cipher key that provides
 $2n/3$
-bit MAC security from an
 $n$
-bit block cipher
 $\textsf{E}$
and an
 $n$
-bit
 $k$
-regular (
 $\forall k \leq n$
), almost xor universal hash function
 $\textsf{H}$
as
 $\textsf{E}^{-1}_{K}\bigl(\textsf{E}_{K}(N)\oplus N \oplus \textsf{H}_{K_h}(M)\bigr).$
 $\textsf{DWCDM+}$
is structurally very similar to its predecessor
 $\textsf{EWCDM}$
except that the facts that (i) the number of block cipher keys reduced from
 $2$
to
 $1$
and (ⅱ) the outer encryption call is replaced by a decryption one. To make the construction truely single-keyed, here we derive the hash key
 $K_h$
as the block cipher output of a fixed string
 $0^{n-2} \| 10$
as long as the hash key is of
 $n$
bits. We show that if the nonce space is restricted to
 $(n-1)$
bits,
 $\textsf{DWCDM+}$
is secured roughly up to
 $2^{2n/3}$
MAC queries (
 $2^{n/2}$
MAC queries) and
 $2^n$
verification queries against nonce respecting (nonce misuse resp.) adversaries.
Citation: Nilanjan Datta, Avijit Dutta, Mridul Nandi, Kan Yasuda. $\textsf{DWCDM+}$: A BBB secure nonce based MAC. Advances in Mathematics of Communications, 2019, 13 (4) : 705-732. doi: 10.3934/amc.2019042
References:

show all references

References:
$\textsf{DWCDM+}$ construction with an n-bit block cipher EK and n-bit keyed hash function HL where L = EK(0n−2║10).
Birthday bound MAC attack against $\textsf{DWCDM+}$ if full nonce space is used.
 [1] Jianqin Zhou, Wanquan Liu, Xifeng Wang, Guanglu Zhou. On the $k$-error linear complexity for $p^n$-periodic binary sequences via hypercube theory. Mathematical Foundations of Computing, 2019, 2 (4) : 279-297. doi: 10.3934/mfc.2019018 [2] Pak Tung Ho. Prescribing $Q$-curvature on $S^n$ in the presence of symmetry. Communications on Pure & Applied Analysis, 2020, 19 (2) : 715-722. doi: 10.3934/cpaa.2020033 [3] Dean Crnković, Nina Mostarac, Bernardo G. Rodrigues, Leo Storme. $s$-PD-sets for codes from projective planes $\mathrm{PG}(2,2^h)$, $5 \leq h\leq 9$. Advances in Mathematics of Communications, 2019, 0 (0) : 0-0. doi: 10.3934/amc.2020075 [4] Harbir Antil, Mahamadi Warma. Optimal control of the coefficient for the regional fractional $p$-Laplace equation: Approximation and convergence. Mathematical Control & Related Fields, 2019, 9 (1) : 1-38. doi: 10.3934/mcrf.2019001 [5] Umberto De Maio, Peter I. Kogut, Gabriella Zecca. On optimal $L^1$-control in coefficients for quasi-linear Dirichlet boundary value problems with $BMO$-anisotropic $p$-Laplacian. Mathematical Control & Related Fields, 2019, 0 (0) : 0-0. doi: 10.3934/mcrf.2020021 [6] Jennifer D. Key, Bernardo G. Rodrigues. Binary codes from $m$-ary $n$-cubes $Q^m_n$. Advances in Mathematics of Communications, 2019, 0 (0) : 0-0. doi: 10.3934/amc.2020079 [7] Ildoo Kim. An $L_p$-Lipschitz theory for parabolic equations with time measurable pseudo-differential operators. Communications on Pure & Applied Analysis, 2018, 17 (6) : 2751-2771. doi: 10.3934/cpaa.2018130 [8] Melvin Faierman. Fredholm theory for an elliptic differential operator defined on $\mathbb{R}^n$ and acting on generalized Sobolev spaces. Communications on Pure & Applied Analysis, 2020, 19 (3) : 1463-1483. doi: 10.3934/cpaa.2020074 [9] Florin Diacu, Shuqiang Zhu. Almost all 3-body relative equilibria on $\mathbb S^2$ and $\mathbb H^2$ are inclined. Discrete & Continuous Dynamical Systems - S, 2020, 13 (4) : 1131-1143. doi: 10.3934/dcdss.2020067 [10] Lin Du, Yun Zhang. $\mathcal{H}_∞$ filtering for switched nonlinear systems: A state projection method. Journal of Industrial & Management Optimization, 2018, 14 (1) : 19-33. doi: 10.3934/jimo.2017035 [11] Shengbing Deng. Construction solutions for Neumann problem with Hénon term in $\mathbb{R}^2$. Discrete & Continuous Dynamical Systems - A, 2019, 39 (4) : 2233-2253. doi: 10.3934/dcds.2019094 [12] Lakehal Belarbi. Ricci solitons of the $\mathbb{H}^{2} \times \mathbb{R}$ Lie group. Electronic Research Archive, 2020, 28 (1) : 157-163. doi: 10.3934/era.2020010 [13] Sugata Gangopadhyay, Goutam Paul, Nishant Sinha, Pantelimon Stǎnicǎ. Generalized nonlinearity of $S$-boxes. Advances in Mathematics of Communications, 2018, 12 (1) : 115-122. doi: 10.3934/amc.2018007 [14] Gyula Csató. On the isoperimetric problem with perimeter density $r^p$. Communications on Pure & Applied Analysis, 2018, 17 (6) : 2729-2749. doi: 10.3934/cpaa.2018129 [15] Haisheng Tan, Liuyan Liu, Hongyu Liang. Total $\{k\}$-domination in special graphs. Mathematical Foundations of Computing, 2018, 1 (3) : 255-263. doi: 10.3934/mfc.2018011 [16] Pak Tung Ho. Prescribing the $Q'$-curvature in three dimension. Discrete & Continuous Dynamical Systems - A, 2019, 39 (4) : 2285-2294. doi: 10.3934/dcds.2019096 [17] Eun-Kyung Cho, Cunsheng Ding, Jong Yoon Hyun. A spectral characterisation of $t$-designs and its applications. Advances in Mathematics of Communications, 2019, 13 (3) : 477-503. doi: 10.3934/amc.2019030 [18] Zalman Balanov, Yakov Krasnov. On good deformations of $A_m$-singularities. Discrete & Continuous Dynamical Systems - S, 2019, 12 (7) : 1851-1866. doi: 10.3934/dcdss.2019122 [19] Annalisa Cesaroni, Serena Dipierro, Matteo Novaga, Enrico Valdinoci. Minimizers of the $p$-oscillation functional. Discrete & Continuous Dynamical Systems - A, 2019, 39 (12) : 6785-6799. doi: 10.3934/dcds.2019231 [20] Chaoqian Li, Yajun Liu, Yaotang Li. Note on $Z$-eigenvalue inclusion theorems for tensors. Journal of Industrial & Management Optimization, 2017, 13 (5) : 0-0. doi: 10.3934/jimo.2019129

2018 Impact Factor: 0.879

Metrics

• HTML views (328)
• Cited by (0)

• on AIMS