Paper 2025/1890
Cryptanalysis on Lightweight Verifiable Homomorphic Encryption
Abstract
Verifiable Homomorphic Encryption (VHE) is a cryptographic technique that integrates Homomorphic Encryption (HE) with Verifiable Computation (VC). It serves as a crucial technology for ensuring both privacy and integrity in outsourced computation, where a client sends input ciphertexts $\mathsf{ct}$ and a function $f$ to a server and verifies the correctness of the evaluation upon receiving the evaluation result $f(\mathsf{ct})$ from the server. Chatel et al. (CCS'24) introduced two VHE schemes: Replication Encoding (REP) and Polynomial Encoding (PE). A similar approach to REP was used by Albrecht et al. (EUROCRYPT'24) to develop a Verifiable Oblivious PRF scheme (vADDG). A key approach in these schemes is to embed specific secret information within ciphertexts and use them to verify homomorphic evaluations. This paper presents efficient forgery attacks against the verifiability guarantees of these VHE schemes. We introduce two attack strategies. The first targets REP and vADDG, extracting secret information in encrypted form from input ciphertexts and leveraging it to forge output ciphertexts without being detected by the verification algorithm. The second targets PE, exploiting its secret embedding structure to forge output ciphertexts that remain valid on input values for verification, yet violate the verifiability property. Our forgery attack on vADDG demonstrates that the proposed 80-bit security parameters provide at most 10 bits of concrete security. Our attack on REP and \PE achieves a probability 1 attack with linear time complexity when using fully homomorphic encryption.
Metadata
- Available format(s)
-
PDF
- Category
- Attacks and cryptanalysis
- Publication info
- A minor revision of an IACR publication in ASIACRYPT 2025
- Keywords
- Verifiable Homomorphic EncryptionVerifiable OPRFForgery AttackCryptanalysis
- Contact author(s)
-
jhcheon @ snu ac kr
jadh0309 @ snu ac kr - History
- 2025-10-11: approved
- 2025-10-10: received
- See all versions
- Short URL
- https://ia.cr/2025/1890
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2025/1890,
author = {Jung Hee Cheon and Daehyun Jang},
title = {Cryptanalysis on Lightweight Verifiable Homomorphic Encryption},
howpublished = {Cryptology {ePrint} Archive, Paper 2025/1890},
year = {2025},
url = {https://eprint.iacr.org/2025/1890}
}