Achievable CCA2 Relaxation for Homomorphic Encryption

Adi Akavia,Craig Gentry,Shai Halevi,Margarita Vald
DOI: https://doi.org/10.1007/s00145-024-09526-1
2024-11-28
Journal of Cryptology
Abstract:Homomorphic encryption ( HE ) protects data in-use, but can be computationally expensive. To avoid the costly bootstrapping procedure that refreshes ciphertexts, some works have explored client-aided outsourcing protocols, where the client intermittently refreshes ciphertexts for a server that is performing homomorphic computations. But is this approach secure against malicious servers? We present a CPA -secure encryption scheme that is completely insecure in this setting. We define a new notion of security, called funcCPA , that we prove is sufficient. Additionally, we show:
computer science, theory & methods,engineering, electrical & electronic,mathematics, applied
What problem does this paper attempt to address?