Security Analysis of Two Identity Based Proxy Re-encryption Schemes in Multi-user Networks.

Xu An Wang,Jianfeng Ma,Xiaoyuan Yang,Yuechuan Wei
DOI: https://doi.org/10.1007/978-3-662-49017-4_5
2015-01-01
Abstract:In proxy re-encryption $$\\mathsf{PRE}$$, a semi-trusted proxy can convert a ciphertext originally intended for Alice into one which can be decrypted by Bob, while the proxy can not know the underlying plaintext. In multi-use $$\\mathsf{PRE}$$ schemes, the ciphertext can be transformed from Alice to Bob and to Charlie and so on. Due to its ciphertext transformation property, it is difficult to achieve chosen ciphertext security for $$\\mathsf{PRE}$$, especially for multi-use $$\\mathsf{PRE}$$. $$\\mathsf{IBE}$$ is a new kind of public-key encryption where the recipient's public key is an arbitrary string that represents the recipient's identity. Identity based proxy re-encryption $$\\textsf {IBPRE}$$ is a primitive combing the feature of $$\\mathsf{IBE}$$ and $$\\mathsf{PRE}$$. In 2010 Wang et al. has proposed a multi-use unidirectional CCA-secure identity based proxy re-encryption $$\\textsf {IBPRE}$$ scheme, and in 2011 Luo et al. has proposed an unidirectional identity based proxy re-encryption scheme. Unfortunately, we show these two proposals are not secure and thus can not be applied directly in multi-user networks.
What problem does this paper attempt to address?