arrow
Return

Comments on Identity-Based Revocation From Subset Difference Methods Under Simple Assumptions

delete2021-01-01
delete0
delete
OA
AI
J
Ji Young Chun
S
Soohyung Kim
J
Jung Yeon Hwang *
DOI:10.1109/ACCESS.2021.3064965delete
deleteOriginal
deleteShare
deleteSave
View PDF
Abstract

Abstract

En 中文
An identity-based revocation (IBR) scheme is a useful one-to-many cryptographic message transmission method in which a message can be encrypted using receivers' identities such as e-mail addresses as public keys and a trusted message sender who holds users' private keys is not required. Recently, a construction method for an IBR scheme was presented with symmetric broadcast encryption (SBE) schemes called SD or LSD. In this article we clarify that the SBE schemes are completely different from the original subset difference (SD) scheme by Naor, Naor, and Lotspietch or the layered SD (LSD) by Halevy and Shamir. To be precise, we show that the IBR schemes built on top of the original SD or the original LSD scheme is insecure so that even revoked users can easily decrypt a ciphertext generated for a user group excluding the revoked users.
Keywords:
Cryptography
Public key
Receivers
Encryption
Resistance
Licenses
Law
Cryptanalysis
broadcast encryption
identity-based revocation
subset difference method
AI Summary

AI Summary

Key information extracted from the uploaded paper, including a brief overview, abstract, background, key highlights, visual analysis, and future outlook.

Journal

IEEE Access cover
IEEE Access
IF:
3.6
Papers:
9.8W
Citations:
29.4W

Organization