Short Signatures from the Weil Pairing
Dan Boneh,Ben Lynn,Hovav Shacham +2 more
- pp 514-532
TLDR
A short signature scheme based on the Computational Diffie-Hellman assumption on certain elliptic and hyperelliptic curves is introduced, designed for systems where signatures are typed in by a human or signatures are sent over a low-bandwidth channel.Abstract:
We introduce a short signature scheme based on the Computational Diffie-Hellman assumption on certain elliptic and hyperelliptic curves. The signature length is half the size of a DSA signature for a similar level of security. Our short signature scheme is designed for systems where signatures are typed in by a human or signatures are sent over a low-bandwidth channel.read more
Citations
More filters
Journal ArticleDOI
EFFECT: an efficient flexible privacy-preserving data aggregation scheme with authentication in smart grid
TL;DR: EFFECT, an efficient flexible privacy-preserving aggregation scheme with authentication in smart grid, achieves both data source authentication and data aggregation in high efficiency and can satisfy the desired security requirements of smart grid.
Journal ArticleDOI
Efficient and Privacy-Preserving Online Medical Prediagnosis Framework Using Nonlinear SVM
TL;DR: It is shown that eDiag can ensure that users’ health information and healthcare provider's prediction model are kept confidential, and has significantly less computation and communication overhead than existing schemes.
Book ChapterDOI
Dynamic k -times anonymous authentication
Lan Nguyen,Reihaneh Safavi-Naini +1 more
TL;DR: In this paper, a dynamic k-times anonymous authentication (k-TAA) scheme is proposed, in which application providers can independently grant or revoke users from their own groups and so have the required control on their clients.
Book ChapterDOI
CloudSeal: End-to-End Content Protection in Cloud-Based Storage and Delivery Services
TL;DR: This work proposes CloudSeal, a scheme for securely sharing and distributing data via cloud-based data storage and content delivery services, which ensures the confidentiality of content stored in public cloud storage services, by encrypting it before sharing at the cloud.
Book ChapterDOI
A Scalable Scheme for Privacy-Preserving Aggregation of Time-Series Data
Marc Joye,Benoît Libert +1 more
TL;DR: This paper presents a practical scheme which, advantageously, can accommodate large plaintext spaces, is efficient for both encryption and decryption/aggregation and can operate in an off-line/on-line mode.
References
More filters
Book
Handbook of Applied Cryptography
TL;DR: A valuable reference for the novice as well as for the expert who needs a wider scope of coverage within the area of cryptography, this book provides easy and rapid access of information and includes more than 200 algorithms and protocols.
Proceedings ArticleDOI
Random oracles are practical: a paradigm for designing efficient protocols
Mihir Bellare,Phillip Rogaway +1 more
TL;DR: It is argued that the random oracles model—where all parties have access to a public random oracle—provides a bridge between cryptographic theory and cryptographic practice, and yields protocols much more efficient than standard ones while retaining many of the advantages of provable security.
Journal ArticleDOI
Identity-Based Encryption from the Weil Pairing
Dan Boneh,Matthew K. Franklin +1 more
TL;DR: This work proposes a fully functional identity-based encryption (IBE) scheme based on bilinear maps between groups and gives precise definitions for secure IBE schemes and gives several applications for such systems.
Book
The Arithmetic of Elliptic Curves
TL;DR: It is shown here how Elliptic Curves over Finite Fields, Local Fields, and Global Fields affect the geometry of the elliptic curves.
Journal ArticleDOI
A digital signature scheme secure against adaptive chosen-message attacks
TL;DR: A digital signature scheme based on the computational difficulty of integer factorization possesses the novel property of being robust against an adaptive chosen-message attack: an adversary who receives signatures for messages of his choice cannot later forge the signature of even a single additional message.