Online-Extractability in the Quantum Random-Oracle Model

03/04/2021
by   Jelle Don, et al.
0

We show the following generic result. Whenever a quantum query algorithm in the quantum random-oracle model outputs a classical value t that is promised to be in some tight relation with H(x) for some x, then x can be efficiently extracted with almost certainty. The extraction is by means of a suitable simulation of the random oracle and works online, meaning that it is straightline, i.e., without rewinding, and on-the-fly, i.e., during the protocol execution and without disturbing it. The technical core of our result is a new commutator bound that bounds the operator norm of the commutator of the unitary operator that describes the evolution of the compressed oracle (which is used to simulate the random oracle above) and of the measurement that extracts x. We show two applications of our generic online extractability result. We show tight online extractability of commit-and-open Σ-protocols in the quantum setting, and we offer the first non-asymptotic post-quantum security proof of the textbook Fujisaki-Okamoto transformation, i.e, without adjustments to facilitate the proof.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
02/20/2019

Security of the Fiat-Shamir Transformation in the Quantum Random-Oracle Model

The famous Fiat-Shamir transformation turns any public-coin three-round ...
research
10/28/2020

Tight adaptive reprogramming in the QROM

The random oracle model (ROM) enjoys widespread popularity, mostly becau...
research
02/28/2022

Efficient NIZKs and Signatures from Commit-and-Open Protocols in the QROM

Commit-and-open Sigma-protocols are a popular class of protocols for con...
research
06/16/2022

Adaptive versus Static Multi-oracle Algorithms, and Quantum Security of a Split-key PRF

In the first part of the paper, we show a generic compiler that transfor...
research
03/18/2022

Failing gracefully: Decryption failures and the Fujisaki-Okamoto transform

In known security reductions for the Fujisaki-Okamoto transformation, de...
research
10/13/2022

Non-uniformity and Quantum Advice in the Quantum Random Oracle Model

QROM (quantum random oracle model), introduced by Boneh et al. (Asiacryp...
research
03/11/2020

The Measure-and-Reprogram Technique 2.0: Multi-Round Fiat-Shamir and More

We revisit recent works by Don, Fehr, Majenz and Schaffner and by Liu an...

Please sign up or login with your details

Forgot password? Click here to reset