Reconsidering the Security Bound of AES-GCM-SIV

We make a number of remarks about the AES-GCM-SIV nonce-misuse resistant authenticated encryption scheme currently considered for standardization by the Crypto Forum Research Group (CFRG). First, we point out that the security analysis proposed in the ePrint report 2017/168 is incorrect, leading to...

Full description

Bibliographic Details
Main Authors: Tetsu Iwata, Yannick Seurin
Format: Article
Language:English
Published: Ruhr-Universität Bochum 2017-12-01
Series:IACR Transactions on Symmetric Cryptology
Subjects:
Online Access:https://tosc.iacr.org/index.php/ToSC/article/view/810