Key Substitution in the Symbolic Analysis of Cryptographic Protocols (extended version)

dc.creatorChevalier, Yannick
dc.creatorKourjieh, Mounira
dc.date2007-10-30
dc.date.accessioned2026-07-07T08:39:29Z
dc.date.available2026-07-07T08:39:29Z
dc.descriptionKey substitution vulnerable signature schemes are signature schemes that permit an intruder, given a public verification key and a signed message, to compute a pair of signature and verification keys such that the message appears to be signed with the new signature key. A digital signature scheme is said to be vulnerable to destructive exclusive ownership property (DEO) If it is computationaly feasible for an intruder, given a public verification key and a pair of message and its valid signature relatively to the given public key, to compute a pair of signature and verification keys and a new message such that the given signature appears to be valid for the new message relatively to the new verification key. In this paper, we prove decidability of the insecurity problem of cryptographic protocols where the signature schemes employed in the concrete realisation have this two properties.
dc.identifierhttps://arxiv.org/abs/0710.5674
dc.identifierhttp://arxiv.org/abs/0710.5674
dc.identifier.urihttp://salesiana.dossiersoluciones.com/handle/123456789/141091
dc.subjectCryptography and Security
dc.titleKey Substitution in the Symbolic Analysis of Cryptographic Protocols (extended version)
dc.typetext

Files

Collections