Breaking and provably repairing the SSH authenticated encryption scheme: A case study of the Encode-then-Encrypt-and-MAC paradigm

ACM Transactions on Information and System Security (TISSEC)(2004)

引用 137|浏览24
暂无评分
摘要
The secure shell (SSH) protocol is one of the most popular cryptographic protocols on the Internet. Unfortunately, the current SSH authenticated encryption mechanism is insecure. In this paper, we propose several fixes to the SSH protocol and, using techniques from modern cryptography, we prove that our modified versions of SSH meet strong new chosen-ciphertext privacy and integrity requirements. Furthermore, our proposed fixes will require relatively little modification to the SSH protocol and to SSH implementations. We believe that our new notions of privacy and integrity for encryption schemes with stateful decryption algorithms will be of independent interest.
更多
查看译文
关键词
authenticated encryption,strong new chosen-ciphertext privacy,Encode-then-Encrypt-and-MAC paradigm,integrity requirement,new notion,case study,SSH protocol,popular cryptographic protocol,SSH implementation,independent interest,secure shell,current SSH,encryption mechanism,stateful decryption,encryption scheme,security proofs
AI 理解论文
溯源树
样例
生成溯源树,研究论文发展脉络
Chat Paper
正在生成论文摘要