Please use this identifier to cite or link to this item: https://hdl.handle.net/11147/4782
Title: On the importance of public-key validation in the MQV and HMQV key agreement protocols
Authors: Menezes, Alfred
Ustaoğlu, Berkant
Keywords: Key agreement protocols
HMQV
MQV
Publisher: Springer Verlag
Source: Menezes, A., and Ustaoğlu, B. (2006). On the importance of public-key validation in the MQV and HMQV key agreement protocols. Lecture Notes in Computer Science, 4329, 133-147. doi:10.1007/11941378_11
Abstract: HMQV is a hashed variant of the MQV key agreement protocol proposed by Krawczyk at CRYPTO 2005. In this paper, we present some attacks on HMQV and MQV that are successful if public keys are not properly validated. In particular, we present an attack on the two-pass HMQV protocol that does not require knowledge of the victim's ephemeral private keys. The attacks illustrate the importance of performing some form of public-key validation in Diffie-Hellman key agreement protocols, and furthermore highlight the dangers of relying on security proofs for discrete-logarithm protocols where a concrete representation for the underlying group is not specified.
Description: 7th International Conference on Cryptology in India, Calcutta, INDIA
URI: http://doi.org/10.1007/11941378_11
http://hdl.handle.net/11147/4782
ISBN: 9783540497677
ISSN: 0302-9743
1611-3349
Appears in Collections:Mathematics / Matematik
Scopus İndeksli Yayınlar Koleksiyonu / Scopus Indexed Publications Collection
WoS İndeksli Yayınlar Koleksiyonu / WoS Indexed Publications Collection

Files in This Item:
File Description SizeFormat 
4782.pdfConference Paper267.46 kBAdobe PDFThumbnail
View/Open
Show full item record



CORE Recommender

SCOPUSTM   
Citations

43
checked on Mar 22, 2024

WEB OF SCIENCETM
Citations

33
checked on Mar 16, 2024

Page view(s)

33,436
checked on Mar 25, 2024

Download(s)

170
checked on Mar 25, 2024

Google ScholarTM

Check




Altmetric


Items in GCRIS Repository are protected by copyright, with all rights reserved, unless otherwise indicated.