(2021) Revisiting the Security of COMET Authenticated Encryption Scheme.
|
Text
paper.pdf Download (532kB) | Preview |
Abstract
COMETv1, by Gueron, Jha and Nandi, is a mode of operation for nonce-based authenticated encryption with associated data functionality. It was one of the second round candidates in the ongoing NIST Lightweight Cryptography Standardization Process. In this paper, we study a generalized version of COMETv1, that we call gCOMET, from provable security perspective. First, we present a comprehensive and complete security proof for gCOMET in the ideal cipher model. Second, we view COMET, the underlying mode of operation in COMETv1, as an instantiation of gCOMET, and derive its concrete security bounds. Finally, we propose another instantiation of gCOMET, dubbed COMETv2, and show that this version achieves better security guarantees as well as memory-efficient implementations as compared to COMETv1.
Item Type: | Conference or Workshop Item (A Paper) (Paper) |
---|---|
Divisions: | BenoƮt-Michel Cogliati (BC) |
Conference: | INDOCRYPT International Conference on Cryptology in India |
Depositing User: | Ashwin Jha |
Date Deposited: | 01 Mar 2022 09:01 |
Last Modified: | 01 Mar 2022 09:01 |
Primary Research Area: | NRA1: Trustworthy Information Processing |
URI: | https://publications.cispa.saarland/id/eprint/3578 |
Actions
Actions (login required)
View Item |