The Cramer-Shoup system is an asymmetric key encryption algorithm, and was the first efficient scheme proven to be secure against adaptive chosen ciphertext attack using standard cryptographic assumptions. Its security is based on the computational intractability (widely assumed, but not proved) of the decisional Diffie-Hellman assumption. Developed by Ronald Cramer and Victor Shoup in 1998, it is an extension of the Elgamal cryptosystem.

PropertyValue
dbpprop:abstract
  • The Cramer-Shoup system is an asymmetric key encryption algorithm, and was the first efficient scheme proven to be secure against adaptive chosen ciphertext attack using standard cryptographic assumptions. Its security is based on the computational intractability (widely assumed, but not proved) of the decisional Diffie-Hellman assumption. Developed by Ronald Cramer and Victor Shoup in 1998, it is an extension of the Elgamal cryptosystem. In contrast to Elgamal, which is extremely malleable, Cramer-Shoup adds additional elements to ensure non-malleability even against a resourceful attacker. This non-malleability is achieved through the use of a collision-resistant hash function and additional computations, resulting in a ciphertext which is twice as large as in Elgamal.
  • Cramer-Shoup暗号とは標準モデルで適切な仮定のもIND-CCA2安全が示された初めての「効率の良い」公開鍵暗号である。 安全性はDDH仮定に基づいている。 1998年にen:Ronald Cramerとen:Victor Shoupによって提案された。1998年版はElGamal暗号の拡張である。 ElGamal暗号は頑強性を持たないが、Cramer-Shoup暗号は別の要素を加えることによりより強力な敵に対しても頑強性を達成している。 頑強性はハッシュ関数の利用とElGamal暗号にはない計算によって得られている。 そのため、暗号文はElGamal暗号の2倍長い。
dbpprop:hasPhotoCollection
dbpprop:reference
rdf:type
rdfs:comment
  • The Cramer-Shoup system is an asymmetric key encryption algorithm, and was the first efficient scheme proven to be secure against adaptive chosen ciphertext attack using standard cryptographic assumptions. Its security is based on the computational intractability (widely assumed, but not proved) of the decisional Diffie-Hellman assumption. Developed by Ronald Cramer and Victor Shoup in 1998, it is an extension of the Elgamal cryptosystem.
rdfs:label
  • Cramer-Shoup cryptosystem
  • Cramer-Shoup暗号
owl:sameAs
skos:subject
foaf:page
is dbpprop:redirect of
is owl:sameAs of