Paper 2025/1416

Binding Security of Combined KEMs: An Analysis of Real-World KEM Combiners

Juliane Krämer, University of Regensburg
Patrick Struck, University of Konstanz
Maximiliane Weishäupl, University of Regensburg
Abstract

In this work we analyze the various binding properties of combiners for KEMs. We show that several binding properties follow easily for the most general combiner—assuming a collision-resistant hash function—while more performance-oriented combiners require the respective property from one or both of the underlying KEMs. Other binding properties are not obtained as directly and require either more properties of one underlying KEM or the respective property from both KEMs. Additionally, we provide an overview of the binding properties for several combinations of real-world KEMs.

Metadata
Available format(s)
PDF
Category
Public-key cryptography
Publication info
Preprint.
Keywords
KEMBindingCombiner
Contact author(s)
juliane kraemer @ ur de
patrick struck @ uni kn
maximiliane weishaeupl @ ur de
History
2025-11-20: revised
2025-08-04: received
See all versions
Short URL
https://ia.cr/2025/1416
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2025/1416,
      author = {Juliane Krämer and Patrick Struck and Maximiliane Weishäupl},
      title = {Binding Security of Combined {KEMs}: An Analysis of Real-World {KEM} Combiners},
      howpublished = {Cryptology {ePrint} Archive, Paper 2025/1416},
      year = {2025},
      url = {https://eprint.iacr.org/2025/1416}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.