Cryptanalysis on the HHSS Obfuscation Arising From Absence of Safeguards

Indistinguishability Obfuscation (iO) is a hopeful tool which obfuscates a program with the least-possible leakage, and produces various applications including functional encryption and deniable encryption. Recently, Halevi et. al. proposed a state-of-the-art obfuscator implementation, called HHSS o...

Full description

Bibliographic Details
Main Authors: Jung Hee Cheon, Minki Hhan, Jiseung Kim, Changmin Lee
Format: Article
Language:English
Published: IEEE 2018-01-01
Series:IEEE Access
Subjects:
Online Access:https://ieeexplore.ieee.org/document/8401690/
Description
Summary:Indistinguishability Obfuscation (iO) is a hopeful tool which obfuscates a program with the least-possible leakage, and produces various applications including functional encryption and deniable encryption. Recently, Halevi et. al. proposed a state-of-the-art obfuscator implementation, called HHSS obfuscation, in ACM-CCS'17. In this paper, we describe a polynomial time distinguishing attack on HHSS obfuscation. In other words, we show that there exist two functionally equivalent branching programs but obfuscated programs are actually distinguishable. This attack implies that HHSS obfuscation fails to achieve a general purpose of iO security. The idea of the attack is quite simple; we multiply a left kernel vector of the branching program P to an evaluation of obfuscated matrix, which yields a small value when the program P is obfuscated. Our attack algorithm is also applicable even if evasive functions are obfuscated.
ISSN:2169-3536