posted on 2023-11-29, 18:18authored byShay Gueron, Ashwin Jha, Mridul Nandi
COMETv1, by Gueron, Jha and Nandi, is a mode of operation for nonce-based authenticated encryption with associated data functionality. It was one of the second round candidates in the ongoing NIST Lightweight Cryptography Standardization Process. In this paper, we study a generalized version of COMETv1, that we call gCOMET, from provable security perspective. First, we present a comprehensive and complete security proof for gCOMET in the ideal cipher model. Second, we view COMET, the underlying mode of operation in COMETv1, as an instantiation of gCOMET, and derive its concrete security bounds. Finally, we propose another instantiation of gCOMET, dubbed COMETv2, and show that this version achieves better security guarantees as well as memory-efficient implementations as compared to COMETv1.
History
Preferred Citation
Shay Gueron, Ashwin Jha and Mridul Nandi. Revisiting the Security of COMET Authenticated Encryption Scheme. In: International Conference on Cryptology in India (Indocrypt). 2021.
Primary Research Area
Algorithmic Foundations and Cryptography
Name of Conference
International Conference on Cryptology in India (Indocrypt)
Legacy Posted Date
2022-03-01
Open Access Type
Unknown
BibTeX
@inproceedings{cispa_all_3578,
title = "Revisiting the Security of COMET Authenticated Encryption Scheme",
author = "Gueron, Shay and Jha, Ashwin and Nandi, Mridul",
booktitle="{International Conference on Cryptology in India (Indocrypt)}",
year="2021",
}