Security analysis of the ISO standard OFB-DRBGISO 국제 표준 OFB-DRBG의 이론적 안전성 증명

Cited 0 time in webofscience Cited 0 time in scopus
  • Hit : 2
  • Download : 0
Deterministic Random Bit Generators (DRBGs) are essential tools in modern cryptography for generating secure and unpredictable random numbers. The ISO DRBG standards provide guidelines for designing and implementing DRBGs, including four algorithms: $\mathsf{HASH}\text{-}\mathsf{DRBG}$, $\mathsf{HMAC}\text{-}\mathsf{DRBG}$, $\mathsf{CTR}\text{-}\mathsf{DRBG}$, and $\mathsf{OFB}\text{-}\mathsf{DRBG}$. While security analyses have been conducted for the former three algorithms, there is a lack of specific security analysis for the $\mathsf{OFB}$-$\mathsf{DRBG}$ algorithm. We prove its security in the robustness security framework that has been used to analyze $\mathsf{CTR}\text{-}\mathsf{DRBG}$ by Hoang and Shen at Crypto 2020. More precisely, we proves that $\mathsf{OFB}$-$\mathsf{DRBG}$ provides $O(\min\left\{ \frac{\lambda}{3}, \frac{n}{2} \right\})$-bit security, including ideal cipher queries, where $\lambda$ and $n$ denote the lower bound of min-entropy and the size of the underlying block cipher, respectively. The proof strategy is to transform the robustness game of $\mathsf{OFB}$-$\mathsf{DRBG}$ into an indistinguishability game and then apply the H-coefficient technique to upper bound the distinguishing advantage.
Advisors
이주영researcher
Description
한국과학기술원 :정보보호대학원,
Publisher
한국과학기술원
Issue Date
2024
Identifier
325007
Language
eng
Description

학위논문(석사) - 한국과학기술원 : 정보보호대학원, 2024.2,[iii, 21 p. :]

Keywords

결정론적 의사 난수 발생기▼aISO 결정론적 의사 난수 발생기 표준▼aOFB-DRBG 알고리즘▼a증명 가능한 안전성; Deterministic random bit generator▼aISO DRBG standards▼aOFB-DRBG algorithm▼aProvable security

URI
http://hdl.handle.net/10203/321810
Link
http://library.kaist.ac.kr/search/detail/view.do?bibCtrlNo=1097342&flag=dissertation
Appears in Collection
IS-Theses_Master(석사논문)
Files in This Item
There are no files associated with this item.

qr_code

  • mendeley

    citeulike


rss_1.0 rss_2.0 atom_1.0