A note on quantum security for post-quantum cryptography
From MaRDI portal
Abstract: Shor's quantum factoring algorithm and a few other efficient quantum algorithms break many classical crypto-systems. In response, people proposed post-quantum cryptography based on computational problems that are believed hard even for quantum computers. However, security of these schemes against emph{quantum} attacks is elusive. This is because existing security analysis (almost) only deals with classical attackers and arguing security in the presence of quantum adversaries is challenging due to unique quantum features such as no-cloning. This work proposes a general framework to study which classical security proofs can be restored in the quantum setting. Basically, we split a security proof into (a sequence of) classical security reductions, and investigate what security reductions are "quantum-friendly". We characterize sufficient conditions such that a classical reduction can be "lifted" to the quantum setting. We then apply our lifting theorems to post-quantum signature schemes. We are able to show that the classical generic construction of hash-tree based signatures from one-way functions and and a more efficient variant proposed in~cite{BDH11} carry over to the quantum setting. Namely, assuming existence of (classical) one-way functions that are resistant to efficient quantum inversion algorithms, there exists a quantum-secure signature scheme. We note that the scheme in~cite{BDH11} is a promising (post-quantum) candidate to be implemented in practice and our result further justifies it. Finally we demonstrate the generality of our framework by showing that several existing works (Full-Domain hash in the quantum random-oracle model~cite{Zha12ibe} and the simple hybrid arguments framework in~cite{HSS11}) can be reformulated under our unified framework.
Recommendations
- Secure signatures and chosen ciphertext security in a quantum computing world
- Provable secure post-quantum signature scheme based on isomorphism of polynomials in quantum random oracle model
- Random oracles in a quantum world
- Post-quantum insecurity from LWE
- Leighton-Micali hash-based signatures in the quantum random-oracle model
Cited in
(22)- Provable secure post-quantum signature scheme based on isomorphism of polynomials in quantum random oracle model
- Classical vs quantum random oracles
- KEMTLS with delayed forward identity protection in (almost) a single round trip
- Layering quantum-resistance into classical digital signature algorithms
- Post-quantum forward-secure onion routing (future anonymity in today's budget)
- An efficient post-quantum one-time signature scheme
- Secure signatures and chosen ciphertext security in a quantum computing world
- Computational Security of Quantum Encryption
- A note on quantum related-key attacks
- Encryption Schemes Using Random Oracles: From Classical to Post-Quantum Security
- Hash-based signatures revisited: a dynamic FORS with adaptive chosen message security
- Quantum cryptography: key distribution and beyond
- Post-quantum security on the Lai-Massey scheme
- Sponge-based authenticated encryption: security against quantum attackers
- Post-quantum insecurity from LWE
- On the Quantum Security of HAWK
- Two-round concurrent 2PC from sub-exponential LWE
- Finding collisions in a quantum world: quantum black-box separation of collision-resistance and one-wayness
- Zero-knowledge proof systems for QMA
- Post-quantum security with twisted Edwards curves and ECC integration
- A note on the minimality of one-way functions in post-quantum cryptography
- Quantum cryptography beyond quantum key distribution
This page was built for publication: A note on quantum security for post-quantum cryptography
Report a bug (only for logged in users!)Click here to report a bug for this page (MaRDI item Q2938687)