Skip to main navigation Skip to search Skip to main content

(In)security of concrete instantiation of Lin17’s functional encryption scheme from noisy multilinear maps

  • Wonhee Cho
  • , Jiseung Kim
  • , Changmin Lee*
  • *Corresponding author for this work
  • Seoul National University
  • Korea Institute for Advanced Study
  • École normale supérieure de Lyon

Research output: Contribution to journalJournal articlepeer-review

Abstract

Functional encryption (FE) is a novel cryptographic paradigm. In comparison to conventional encryption schemes, FE allows producing secret keys skf corresponding to a function f that decrypt encryptions of x to f(x). Recently, Lin proposed FE for arbitrary degree polynomials from the SXDH assumption to an exact multilinear map (CRYPTO’17). However, there is no concrete instantiation of the scheme in the absence of an exact multilinear map. Although Lin’s FE can be instantiated by noisy multilinear maps such as the GGH13, CLT13, and GGH15 schemes, the security of FE instantiated by noisy multilinear maps is unclear. In this paper, we point out the weakness of the Lin’s FE when it is instantiated by well-known candidates of noisy multilinear maps. In other words, we present a polynomial time attack of the FE on each noisy multilinear map. In the proposed method, our attack captures Lin’s FE for arbitrary degree polynomials instantiated by GGH13 and CLT13 and is also applicable to FE for polynomials of degree O(log 2λ) when instantiated by GGH15 under the current parameters where λ is the security parameter.

Original languageEnglish
Pages (from-to)973-1016
Number of pages44
JournalDesigns, Codes, and Cryptography
Volume89
Issue number5
DOIs
StatePublished - 2021.05

Keywords

  • Cryptanalysis
  • Functional encryption
  • Noisy multilinear maps

Fingerprint

Dive into the research topics of '(In)security of concrete instantiation of Lin17’s functional encryption scheme from noisy multilinear maps'. Together they form a unique fingerprint.

Cite this