A new security proof for Damgård's ElGamal

Kristian Gjøsteen

Abstract: We provide a new security proof for a variant of ElGamal proposed by Damgård, showing that it is secure against non-adaptive chosen ciphertext. Unlike previous security proofs for this cryptosystem, which rely on somewhat problematic assumptions, our computational problem is similar to accepted problems such the Gap and Decision Diffie-Hellman problems.

Category / Keywords: public-key cryptography / subgroup membership problem, hash proof system

Date: received 20 Dec 2004, last revised 17 Mar 2005

