We construct classical systems that remain secure when exposed to such quantum queries. For signatures we construct two compilers that convert classically secure signatures into signatures secure in the quantum setting and apply these compilers to existing post-quantum signatures. We also show that standard constructions such as Lamport one-time signatures and Merkle signatures remain secure under quantum chosen message attacks, thus giving signatures whose quantum security is based on generic assumptions. For encryption, we define security under quantum chosen ciphertext attacks and present both public-key and symmetric-key constructions.
Category / Keywords: foundations / Quantum computing, signatures, encryption, post-quantum security, chosen ciphertext security Date: received 20 Feb 2013, last revised 20 Feb 2013 Contact author: mzhandry at stanford edu Available formats: PDF | BibTeX Citation Version: 20130221:024156 (All versions of this report) Discussion forum: Show discussion | Start new discussion