Paper 2025/1416
Binding Security of Combined KEMs: An Analysis of Real-World KEM Combiners
Abstract
In this work we analyze the various binding properties of combiners for KEMs. We show that several binding properties follow easily for the most general combiner—assuming a collision-resistant hash function—while more performance-oriented combiners require the respective property from one or both of the underlying KEMs. Other binding properties are not obtained as directly and require either more properties of one underlying KEM or the respective property from both KEMs. Additionally, we provide an overview of the binding properties for several combinations of real-world KEMs.
Metadata
- Available format(s)
-
PDF
- Category
- Public-key cryptography
- Publication info
- Preprint.
- Keywords
- KEMBindingCombiner
- Contact author(s)
-
juliane kraemer @ ur de
patrick struck @ uni kn
maximiliane weishaeupl @ ur de - History
- 2025-11-20: revised
- 2025-08-04: received
- See all versions
- Short URL
- https://ia.cr/2025/1416
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2025/1416,
author = {Juliane Krämer and Patrick Struck and Maximiliane Weishäupl},
title = {Binding Security of Combined {KEMs}: An Analysis of Real-World {KEM} Combiners},
howpublished = {Cryptology {ePrint} Archive, Paper 2025/1416},
year = {2025},
url = {https://eprint.iacr.org/2025/1416}
}