Soliloquy 发表于 2025-3-23 13:43:08
http://reply.papertrans.cn/95/9439/943832/943832_11.png取之不竭 发表于 2025-3-23 16:10:41
acker gets a piece of .-bit advice about the random oracle and makes . oracle queries..Akshima, Cash, Drucker and Wee (CRYPTO 2020), based on the work of Coretti, Dodis, Guo and Steinberger (EUROCRYPT 2018), showed a simple attack for . (with respect to a random salt). The attack achieves advantagebiopsy 发表于 2025-3-23 21:36:51
ctive level of efficiency, particularly when instantiated with structured compact trapdoors. In particular, NIST postquantum finalist . is both quite fast for signing and verification and quite compact: NIST notes that it has the smallest bandwidth (as measured in combined size of public key and sig竖琴 发表于 2025-3-24 01:42:53
mise security (for restoring security). It supports ., allowing messages to be re-ordered or dropped at the protocol level without affecting correctness. In this work, we consider strong ., where parties are able to immediately detect active attacks under certain conditions. We first consider in-ban急急忙忙 发表于 2025-3-24 04:55:36
http://reply.papertrans.cn/95/9439/943832/943832_15.png含水层 发表于 2025-3-24 08:41:24
didates. As a core building block of hash-based signatures, the efficiency of one-time signature (OTS) largely dominates that of hash-based signatures. The WOTS. signature scheme (Africacrypt 2013) is the current state-of-the-art OTS adopted by the signature schemes standardized by NIST—XMSS, LMS, a蚊子 发表于 2025-3-24 12:16:50
n model. This has motivated a line of work on identifying and securely generating useful correlations..Different kinds of correlations can vary greatly in terms of usefulness and ease of generation. While there has been major progress on efficiently generating . (OT) correlations, other useful kindscauda-equina 发表于 2025-3-24 15:13:04
n polynomially hard collision-resistant hash functions. Since then, and especially in recent years, there have been tremendous developments in the construction of . succinct arguments for deterministic computations under standard hardness assumptions. However, the constructed succinct arguments can平躺 发表于 2025-3-24 21:32:51
http://reply.papertrans.cn/95/9439/943832/943832_19.pngtooth-decay 发表于 2025-3-25 02:45:59
http://reply.papertrans.cn/95/9439/943832/943832_20.png