Breaking and Fixing the NeedhamSchroeder PublicKey Protocol using FDR
, 1996
, 1996
In this paper we analyse the well known NeedhamSchroeder PublicKey Protocol using FDR, a refinement checker for CSP. We use FDR to discover an attack upon the protocol, which allows an intruder to impersonate another agent. We adapt the protocol, and then use FDR to show that the new protocol is s
Abstract

Cited by 716 (13 self)
In this paper we analyse the well known NeedhamSchroeder PublicKey Protocol using FDR, a refinement checker for CSP. We use FDR to discover an attack upon the protocol, which allows an intruder to impersonate another agent. We adapt the protocol, and then use FDR to show that the new protocol
NonMalleable Cryptography
 SIAM Journal on Computing
, 2000
, 2000
The notion of nonmalleable cryptography, an extension of semantically secure cryptography, is defined. Informally, in the context of encryption the additional requirement is that given the ciphertext it is impossible to generate a different ciphertext so that the respective plaintexts are related.
Abstract

Cited by 490 (21 self)
The notion of nonmalleable cryptography, an extension of semantically secure cryptography, is defined. Informally, in the context of encryption the additional requirement is that given the ciphertext it is impossible to generate a different ciphertext so that the respective plaintexts are related
New Directions in Cryptography
, 1976
, 1976
Two kinds of contemporary developments in cryptography are examined. Widening applications of teleprocessing have given rise to a need for new types of cryptographic systems, which minimize the need for secure key distribution channels and supply the equivalent of a written signature. This paper sug
Abstract

Cited by 3499 (7 self)
Two kinds of contemporary developments in cryptography are examined. Widening applications of teleprocessing have given rise to a need for new types of cryptographic systems, which minimize the need for secure key distribution channels and supply the equivalent of a written signature. This paper
Random Oracles are Practical: A Paradigm for Designing Efficient Protocols
, 1995
, 1995
We argue that the random oracle model  where all parties have access to a public random oracle  provides a bridge between cryptographic theory and cryptographic practice. In the paradigm we suggest, a practical protocol P is produced by first devising and proving correct a protocol P R for the
Abstract

Cited by 1643 (75 self)
We argue that the random oracle model  where all parties have access to a public random oracle  provides a bridge between cryptographic theory and cryptographic practice. In the paradigm we suggest, a practical protocol P is produced by first devising and proving correct a protocol P R
PublicKey Cryptography and Password Protocols
 ACM Transactions on Information and System Security
, 1999
, 1999
We study protocols for strong authentication and key exchange in asymmetric scenarios where the authentication server possesses a pair of private and public keys while the client has only a weak humanmemorizable password as its authentication key. We present and analyze several simple password p
Abstract

Cited by 136 (6 self)
We study protocols for strong authentication and key exchange in asymmetric scenarios where the authentication server possesses a pair of private and public keys while the client has only a weak humanmemorizable password as its authentication key. We present and analyze several simple password
A public key cryptosystem and a signature scheme based on discrete logarithms
 Adv. in Cryptology, SpringerVerlag
, 1985
, 1985
AbstractA new signature scheme is proposed, together with an implementation of the DiffieHellman key distribution scheme that achieves a public key cryptosystem. The security of both systems relies on the difficulty of computing discrete logarithms over finite fields. I.
Abstract

Cited by 1520 (0 self)
AbstractA new signature scheme is proposed, together with an implementation of the DiffieHellman key distribution scheme that achieves a public key cryptosystem. The security of both systems relies on the difficulty of computing discrete logarithms over finite fields. I.
An algebraic method for publickey cryptography
 MATHEMATICAL RESEARCH LETTERS
, 1999
, 1999
Algebraic key establishment protocols based on the difficulty of solving equations over algebraic structures are described as a theoretical basis for constructing publickey cryptosystems.
Abstract

Cited by 151 (2 self)
Algebraic key establishment protocols based on the difficulty of solving equations over algebraic structures are described as a theoretical basis for constructing publickey cryptosystems.
Number Theory and PublicKey Cryptography
, 2000
, 2000
For a long time, cryptology had been a mystic art more than a science, solving the confidentiality concerns with secret and private techniques. Automatic machines, electronic and namely computers modified the environment and the basic requirements. The main difference was the need of public mechan
Abstract
realized to provide such objects. A new direction in cryptography was under investigations: asymmetric cryptography and provable security. In this paper we review the main problems that cryptography tries to solve, and how it achieves these goals thanks to the algorithmic number theory. After a brief
Certificateless Public Key Cryptography
 ASIACRYPT'03
, 2003
, 2003
This paper introduces the concept of certificateless public key cryptography (CLPKC). In contrast to traditional public key cryptographic systems, CLPKC does not require the use of certificates to guarantee the authenticity of public keys. It does rely on the use of a trusted third party (TTP) who
Abstract

Cited by 227 (4 self)
) who is in possession of a master key. In these respects, CLPKC is similar to identitybased public key cryptography (IDPKC). On the other hand, CLPKC does not suffer from the key escrow property that seems to be inherent in IDPKC. Thus CLPKC can be seen as a model for the use of public key
