Paper 2025/1217

Cymric: Short-tailed but Mighty

Alexandre Adomnicăi, Independent Researcher, Paris, France
Wonseok Choi, DGIST, Daegu, Korea
Yeongmin Lee, DESILO Inc., Seoul, Korea
Kazuhiko Minematsu, NEC, Kawasaki, Japan
Yusuke Naito, Mitsubishi Electric Corporation, Kanagawa, Japan
Abstract

Authenticated encryption (AE) is a fundamental tool in today's secure communication. Numerous designs have been proposed, including well-known standards such as GCM. While their performance for long inputs is excellent, that for short inputs is often problematic due to high overhead in computation, showing a gap between the real need for IoT-like protocols where packets are often very short. Existing dedicated short-input AEs are very scarce, the classical Encode-then-encipher (Bellare and Rogaway, Asiacrypt 2000) and Manx (Adomnic\u{a}i et al., CT-RSA 2023), using up to two block cipher calls. They have superior performance for (very) short inputs, however, security is up to $n/2$ bits, where $n$ is the block size of the underlying block cipher. This paper proposes a new family of short-input AEs, dubbed Cymric, which ensures beyond-birthday-bound (BBB) security. It supports a wider range of input space than EtE and Manx with the help of one additional block cipher call (thus three calls). In terms of the number of block cipher calls, Cymric is the known minimum construction of BBB-secure AEs, and we also prove this is indeed minimal by presenting an impossibility result on BBB-secure AE with two calls. Finally, we show a comprehensive benchmark on microcontrollers to show performance advantage over existing schemes.

Metadata
Available format(s)
PDF
Category
Secret-key cryptography
Publication info
A minor revision of an IACR publication in TCHES 2025
DOI
10.46586/tches.v2025.i3.437-469
Keywords
Authenticated EncryptionShort inputBeyond birthday bound security
Contact author(s)
alexandre @ adomnicai me
wonseok @ dgist ac kr
yeongmin lee @ desilo ai
k-minematsu @ nec com
Naito Yusuke @ ce mitsubishielectric co jp
History
2025-07-15: revised
2025-06-30: received
See all versions
Short URL
https://ia.cr/2025/1217
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2025/1217,
      author = {Alexandre Adomnicăi and Wonseok Choi and Yeongmin Lee and Kazuhiko Minematsu and Yusuke Naito},
      title = {Cymric: Short-tailed but Mighty},
      howpublished = {Cryptology {ePrint} Archive, Paper 2025/1217},
      year = {2025},
      doi = {10.46586/tches.v2025.i3.437-469},
      url = {https://eprint.iacr.org/2025/1217}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.