Provably Secure Commitment-based Protocols over Unauthenticated Channels
Rodrigo Mart\'in S\'anchez-Ledesma, David Domingo Mart\'in, Iv\'an, Blanco Chac\'on, Ignacio Luengo Velasco

TL;DR
This paper introduces a new security framework based on commitment schemes for protocols over unauthenticated channels, analyzing their security and robustness against attacks.
Contribution
It proposes an alternative model for secure communication without long-term cryptographic exchange, applicable to both KEX and KEM primitives.
Findings
Protocols are resistant to Man-in-the-Middle attacks.
The model applies to both established and new cryptographic paradigms.
Practical protocols are provided for implementation.
Abstract
In this work we construct an alternative Unauthenticated Model, intended to build a theoretic security framework to cover communications protocols whose characteristics may not always concur with the specifics of already existing models for authenticated exchanges. This model is constructed from the notion of commitment schemes, employing ephemeral information, therefore avoiding the exchange of long-term cryptographic material. From this model, we propose a number of Commitment-based protocols to establish a shared secret between two parties, and study their resistance over unauthenticated channels. This means analyzing the security of the protocol itself, and its robustness against Man-in-the-Middle attacks, by formalizing their security under this model. The key-exchange protocols are constructed from KEX and KEM primitives, to show that this model can be applied to both established…
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsAdvanced Authentication Protocols Security · User Authentication and Security Systems · RFID technology advancements
