Foundations of nonmalleable hash and oneway functions
 In ASIACRYPT
, 2009
related message m ∗. This notion has been studied extensively for primitives like encryption, commitments and zeroknowledge. Nonmalleability of oneway functions and hash functions has surfaced as a crucial property in several recent results, but it has not undergone a comprehensive treatment so far
NonMalleable Cryptography
 SIAM Journal on Computing
, 2000
The notion of nonmalleable cryptography, an extension of semantically secure cryptography, is defined. Informally, in the context of encryption the additional requirement is that given the ciphertext it is impossible to generate a different ciphertext so that the respective plaintexts are related
PseudoRandom Generation from OneWay Functions
 PROC. 20TH STOC
, 1988
Pseudorandom generators are fundamental to many theoretical and applied aspects of computing. We show howto construct a pseudorandom generator from any oneway function. Since it is easy to construct a oneway function from a pseudorandom generator, this result shows that there is a pseudorandom
Constantround NonMalleable Commitment from Strong OneWay Functions
 In Crypto08, Springer LNCS 5157
, 2008
Abstract. We present a constantround nonmalleable commitment scheme based on the existence of subexponential oneway functions and using a blackbox proof of security. As far as we know, this is the first construction of a constantround nonmalleable protocol based on only onewayness
Universal OneWay Hash Functions and their Cryptographic Applications
, 1989
We define a Universal OneWay Hash Function family, a new primitive which enables the compression of elements in the function domain. The main property of this primitive is that given an element x in the domain, it is computationally hard to find a different domain element which collides with x. We
Concurrent NonMalleable Zero Knowledge
 In Proceedings of the 47th Annual IEEE Symposium on Foundations of Computer Science
, 2006
be correlated with each other); corrupted provers, of course, can chose the statements adaptively. We also prove that there exists some functionality F (a combination of zero knowledge and oblivious transfer) such that it is impossible to obtain a concurrent nonmalleable protocol for F in this model. Pre
ConstantRound NonMalleable Commitments from Any OneWay Function
, 2011
We show unconditionally that the existence of commitment schemes implies the existence of constantround nonmalleable commitments; earlier protocols required additional assumptions such as collision resistant hash functions or subexponential oneway functions. Our protocol also satisfies
NonMalleability Amplification
 In 41st STOC
, 2009
(1) log ∗ nround (i.e., “essentially ” constantround) nonmalleable commitments from any oneway function, and using a blackbox proof of security.
Noninteractive and Reusable NonMalleable Commitment Schemes
 In proceedings of STOC ’03
, 2003
We consider nonmalleable (NM) and universally composable (UC) commitment schemes in the common reference string (CRS) model.
