Tightly-Secure PAK(E)

José Becerra and Vincenzo Iovino and Dimiter Ostrev and Petra Šala and Marjan Škrobot

Abstract: We present a security reduction for the PAK protocol instantiated over Gap Diffie-Hellman Groups that is tighter than previously known reductions. We discuss the implications of our results for concrete security. Our proof is the first to show that the PAK protocol can provide meaningful security guarantees for values of the parameters typical in today's world.

Original Publication (in the same form): CANS 2017

Date: received 24 Oct 2017

