A Security Weakness in Composite-Order Pairing-Based Protocols with Imbedding Degree $k>2$

Neal Koblitz

Abstract: In this note we describe a security weakness in pairing-based protocols when the group order is composite and the imbedding degree $k$ is greater than $2$.

Category / Keywords: public-key cryptography / pairing-based protocol, imbedding degree

Date: received 22 Apr 2010

