<rss version="2.0">
<channel>
<title>sci.crypt.research :: Cryptography, cryptanalysis, and related issues. (Moderated)</title>
<link>http://www.nnseek.com/e/sci.crypt.research/</link>
<description>Posts for sci.crypt.research</description>
<lastBuildDate>Sat, 10 May 2008 06:10:14 PDT</lastBuildDate>
  <image>
    <title>http://www.nnseek.com/</title>
    <link>http://www.nnseek.com/</link>
    <url>http://www.nnseek.com/img/64.png</url>
    <width>64</width>
    <height>64</height>
    <description>NNSeek</description>
  </image>
<item>
	<title><![CDATA[[ACM DRM 2008] Submission server open]]></title>
	<guid>http://www.nnseek.com/e/sci.crypt.research/acm_drm_2008_submission_server_open_104100890t.html</guid>
	<link>http://www.nnseek.com/e/sci.crypt.research/acm_drm_2008_submission_server_open_104100890t.html</link>
	<description><![CDATA[<br><br>Dear all,<br><br>        The submission server for ACM DRM 2008 is open (submission deadline:<br>May 23).  Details follow.<br><br>        Best regards,<br>          -Greg and Marc.<br><br>----------------------------------------------------------------------<br>Call for Papers<br><br>                       EIGHTH ACM DRM WORKSHOP<br>      (Co-located with ACM-CCS 2008, Alexandria, Virginia, USA)<br><br><br>                   <a href="http://www.ece.unm.edu/DRM2008" rel="nofollow" class="url" target="_blank">http://www.ece.unm.edu/DRM2008</a>/<br><br><br>Submission deadline: May 23, 2008<br>Workshop: October 27, 2008 - Alexandria, Virginia, USA<br>----------------------------------------------------------------------<br><br>The ACM Workshop on Digital Rights Management is an international<br>forum that serves as an interdisplinary bridge between areas that can<br>be applied to solving the problem of Intellectual Property protection<br>of digital content.  These include: cryptography, software and<br>computer systems design, trusted computing, information and signal<br>processing, intellectual property law, policy-making, as well as<br>business analysis and economics. Its purpose is to bring together<br>researchers from the above fields for a full day of formal talks and<br>informal discussions, covering new results that will spur new<br>investigations regarding the foundations and practices of DRM.<br><br><br>This year's workshop, the eighth in the series, continues this<br>tradition. As in the previous editions, it is sponsored by ACM SIGSAC<br>and is held in conjunction with the ACM Conference in Computer and<br>Communications Security (CCS).<br><br>Topics of interest include but are not limited to:<br>* anonymous publishing, privacy and DRM<br>* architectures for DRM systems<br>* business models for online content distribution, risk management<br>* copyright-law issues, including but not limited to fair use<br>* digital goods and online multiplayer games<br>* digital policy management<br>* DRM and consumer rights, labeling and competition law<br>* implementations and case studies<br>* information theory and  combinatorics, including marking assumptions<br>  and related codes<br>* robust identification of digital content<br>* security  issues,  including   but  not  limited  to  authorization,<br>  encryption, tamper resistance, and watermarking<br>* regulatory authority for DRM, interoperability<br>* supporting  cryptographic technology  including but  not  limited to<br>  traitor tracing, broadcast encryption, obfuscation<br>* threat and vulnerability assessment<br>* trusted   computing,   attestation,   hardware  support   for   DRM,<br>  side-channels<br>* usability aspects of DRM systems<br>* web services related to DRM systems<br><br><br>IMPORTANT DATES<br><br>Submission deadline: May 23, 2008<br>Notification of acceptance: July 10, 2008 Camera-ready version: August<br>8, 2008<br>Workshop: October 27, 2008<br><br><br>INSTRUCTIONS FOR AUTHORS<br><br>Submissions must not overlap with papers that have been published or<br>that are simultaneously submitted to a journal or a conference with<br>proceedings.  Submissions should be at most 15 pages excluding the<br>bibliography and well- marked appendices, using at least 11-point font<br>and reasonable margins.  Committee members are not required to read<br>the appendices, and thus submissions should be intelligible without<br>them. Each submission should start with the title, abstract, and names<br>and contact information of authors.  All submissions will be handled<br>electronically.  For submission instructions and further information<br>please point your web-browser to:<br><br>                   <a href="http://www.ece.unm.edu/DRM2008" rel="nofollow" class="url" target="_blank">http://www.ece.unm.edu/DRM2008</a>/<br><br><br>PROCEEDINGS<br><br>Accepted papers will be published in an archival proceedings volume by<br>ACM Press and will be distributed at the time of the workshop.<br><br><br>ORGANIZATION<br><br>Program Chairs<br>- Gregory Heileman (U. New Mexico, USA)<br>- Marc Joye (Thomson, France)<br><br>Program Committee<br>- Olivier Billet (Orange Labs, France)<br>- Xavier Boyen (Voltage, USA)<br>- Alain Durand (Thomson, France)<br>- Rudiger Grimm (U. Koblenz, Germany)<br>- Bill Horne (Hewlett-Packard, USA)<br>- Hongxia Jin (IBM, USA)<br>- Aggelos Kiayias (U. Connecticut, USA)<br>- David Kravitz (Motorola Labs, USA)<br>- Brian LaMacchia (Microsoft, USA)<br>- William Lehr (MIT, USA)<br>- Nasir Memon (Polytechnic U., USA)<br>- Fernando Perez-Gonzalez (U. Vigo, Spain)<br>- Rei Safavi-Naini (U. Calgary, Canada)<br>- Bin Zhu (Microsoft, China)<br><br>General Chair<br>- Peng Ning (NCSU, USA)<br>  (also General chair for ACM-CCS 2008)<br><br>Steering Committee<br>- Joan Feigenbaum (Yale U., USA)<br>- Aggelos Kiayias (U. Connecticut, USA)<br>- Rei Safavi-Naini (U. Calgary, Canada)<br>- Tomas Sander (Hewlett-Packard, USA)<br>- Moti Yung (Google & Columbia U., USA)<br><br>
    <table border="0" cellspacing="0" cellpadding="0">
      <tr>
        <td width="30">&nbsp;</td>
        <td>Posted In: <a href="http://www.nnseek.com/e/sci.crypt.research/">sci.crypt.research</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/acm_drm_2008_submission_server_open_104100890t.html">no comments</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/acm_drm_2008_submission_server_open_104100890m.html">Reply</a></td>
      </tr></table><br>]]></description>
	<pubDate>Sat, 10 May 2008 06:10:14 PDT</pubDate>
</item>
<item>
	<title><![CDATA[Correlation between Statistical and Algebraic Analysis on Block Cipher]]></title>
	<guid>http://www.nnseek.com/e/sci.crypt.research/correlation_between_statistical_and_algebraic_analysis_103454746t.html</guid>
	<link>http://www.nnseek.com/e/sci.crypt.research/correlation_between_statistical_and_algebraic_analysis_103454746t.html</link>
	<description><![CDATA[<br>Is there any correlation between difficulty of statistical and<br>algebraic analysis ?<br><br>If cipher X can be expressed as more complex algebraic equation than<br>cipher Y then does cipher X tend to has better statistical<br>(differential or linear) characteristic than cipher Y ?<br>
    <table border="0" cellspacing="0" cellpadding="0">
      <tr>
        <td width="30">&nbsp;</td>
        <td>Posted In: <a href="http://www.nnseek.com/e/sci.crypt.research/">sci.crypt.research</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/correlation_between_statistical_and_algebraic_analysis_103454746t.html">no comments</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/correlation_between_statistical_and_algebraic_analysis_103454746m.html">Reply</a></td>
      </tr></table><br>]]></description>
	<pubDate>Sun, 04 May 2008 11:59:51 PDT</pubDate>
</item>
<item>
	<title><![CDATA[CFP: StorageSS '08]]></title>
	<guid>http://www.nnseek.com/e/sci.crypt.research/cfp_storagess_08_103427866t.html</guid>
	<link>http://www.nnseek.com/e/sci.crypt.research/cfp_storagess_08_103427866t.html</link>
	<description><![CDATA[<br><br>---------------------------------------------------<br>Apologies if you received multiple copies of this posting.<br>---------------------------------------------------<br>                     *** CALL FOR PAPERS ***<br><br>4th International Workshop on Storage Security and Survivability<br>                              StorageSS 2008<br>                         ACM CCS 2008 Workshop<br>                                   Oct. 31, 2008<br>                          George Mason University<br>                        <a href="http://storagess.org/2008" rel="nofollow" class="url" target="_blank">http://storagess.org/2008</a>/<br><br>IMPORTANT DATES:<br>    - Submissions due:  May 23<br>    - Notification:     July 3<br>    - Camera-ready due: August 3<br><br>The 4th ACM International Workshop on Storage Security and<br>Survivability (StorageSS 2008) will bring together researchers in<br>storage systems, computer and network security, and cryptography. We<br>encourage paper submissions from both research and industry presenting<br>novel ideas on all theoretical and practical aspects of protecting<br>data in storage and file systems.<br><br>TOPICS OF INTEREST include, but aren't limited to:<br>    * storage protection tradeoffs<br>    * storage protection deployment (including case studies)<br>    * smart storage for security and/or survivability<br>    * analysis of covert storage channels and leaks<br>    * mobile storage protection<br>    * novel backup protection techniques<br>    * protection using versioning<br>    * storage encryption techniques (modes of operation,<br>      fast software/hardware encryption)<br>    * key management techniques<br>    * encrypted keyword search and database query<br>    * security analysis of deployed file/volume encryptor, encrypted<br>disc<br>    * tamper-evident storage protection techniques<br>    * immutable storage protection techniques, provenance<br>    * storage threat models<br>    * storage intrusion detection systems<br>    * security for long-term / archival storage<br>    * privacy and trust issues in (untrusted) remote/hosted storage<br>    * TPM and storage security<br><br>The StorageSS workshop solicits full papers of up to 12 pages long as<br>well as short papers / work-in-progress, which may be up to 6 pages<br>long. Wild and controversial ideas are especially encouraged. The<br>workshop will be structured to focus on face-to-face discussion and<br>integration of people from storage, security, industry, and the open<br>source community. To foster this interaction, we will include invited<br>talks and/or panels.<br><br>Paper submission and review will be done online. Papers should be<br>formatted as two column in a font no smaller than 10<br>points. Submissions should be labeled as either a full paper (up to 12<br>pages) or short paper (up to 6 pages).<br><br>Conference proceedings will be published by the ACM and made available<br>at the workshop.  Authors of accepted papers must guarantee that their<br>paper will be presented at the workshop.<br><br>Submission site:<br>  <a href="http://www.easychair.org/conferences/?conf=storagess2008" rel="nofollow" class="url" target="_blank">http://www.easychair.org/conferences/?conf=storagess2008</a><br><br>Please contact the program chair at chair08 [at] <a href="http://storagess.org" rel="nofollow" class="url" target="_blank">storagess.org</a> if you<br>have any questions about the relevance of a paper or topic.<br><br>Program Co-chairs<br>    * Yongdae Kim (University of Minnesota, USA)<br>    * Bill Yurcik (University of Texas at Dallas, USA)<br><br>Program Committee<br>    * Giuseppe Ateniese (Johns Hopkins Univ., USA)<br>    * Randal Burns (Johns Hopkins Univ., USA)<br>    * Christian Cachin (IBM Zurich, Switzerland)<br>    * Valerie Henson (consultant, USA)<br>    * Nikolai Joukov (IBM T.J. Watson Research Center, USA)<br>    * Ethan Miller (UC Santa Cruz, USA)<br>    * Dalit Naor (IBM Haifa, Israel)<br>    * Alina Oprea (RSA Labs., USA)<br>    * Jay Wylie (HP Labs, USA)<br><br>
    <table border="0" cellspacing="0" cellpadding="0">
      <tr>
        <td width="30">&nbsp;</td>
        <td>Posted In: <a href="http://www.nnseek.com/e/sci.crypt.research/">sci.crypt.research</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/cfp_storagess_08_103427866t.html">no comments</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/cfp_storagess_08_103427866m.html">Reply</a></td>
      </tr></table><br>]]></description>
	<pubDate>Sun, 04 May 2008 03:54:02 PDT</pubDate>
</item>
<item>
	<title><![CDATA[random mapping]]></title>
	<guid>http://www.nnseek.com/e/sci.crypt.research/random_mapping_92382234t.html</guid>
	<link>http://www.nnseek.com/e/sci.crypt.research/random_mapping_92382234t.html</link>
	<description><![CDATA[<br><br>i would like to ask if anyone know how i can find following papers :<br><br>H. Rubin,R.Sitgreaves, "Probability distributions related to random<br>transformations on a finite set" Tech. Rept. Stanford University,1954.<br><br>Jay E.Folkert "the distribution of the number of components of a<br>random mapping function" unpublished PhD. Dissertation, Michigan State<br>University,1955..<br>
    <table border="0" cellspacing="0" cellpadding="0">
      <tr>
        <td width="30">&nbsp;</td>
        <td>Posted In: <a href="http://www.nnseek.com/e/sci.crypt.research/">sci.crypt.research</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/random_mapping_92382234t.html"><b>1</b> Comment</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/random_mapping_92382234m.html">Reply</a></td>
      </tr></table><br>]]></description>
	<pubDate>Wed, 23 Jan 2008 08:06:42 PST</pubDate>
</item>
<item>
	<title><![CDATA[13th European Symposium on Research in Computer Security (ESORICS'08)]]></title>
	<guid>http://www.nnseek.com/e/sci.crypt.research/_13th_european_symposium_on_research_in_computer_security_92366618t.html</guid>
	<link>http://www.nnseek.com/e/sci.crypt.research/_13th_european_symposium_on_research_in_computer_security_92366618t.html</link>
	<description><![CDATA[<br><br>F i r s t     C a l l     F o r     P a p e r s<br><br>13th European Symposium on Research in Computer Security (ESORICS'08)<br>6-8 October, 2008<br>Malaga, Spain<br><br><a href="http://www.isac.uma.es/esorics08" rel="nofollow" class="url" target="_blank">http://www.isac.uma.es/esorics08</a>/<br><br><br>Papers offering novel research contributions in any aspect of computer<br>security are<br><br>solicited for submission to the Thirteenth European Symposium<br>on Research in Computer Security (ESORICS 2008). Organized in a series<br>of European<br><br>countries, ESORICS is confirmed as the European<br>research event in computer security. The symposium started in 1990 and<br>has been held on<br><br>alternate years in different European countries and<br>attracts an international audience from both the academic and<br>industrial communities. From<br><br><br>2002 it has been held yearly. The Symposium has<br>established itself as one of the premiere, international gatherings on<br>Information<br><br>Assurance. Papers may present theory, technique, applications,<br>or practical experience on topics including:<br><br>- Access control<br>- Anonymity<br>- Authentication<br>- Authorization and delegation<br>- Cryptographic protocols<br>- Data integrity<br>- Dependability<br>- Information flow control<br>- Smartcards<br>- System security<br>- Digital right management<br>- Accountability<br>- Applied cryptography<br>- Covert channels<br>- Cybercrime<br>- Denial of service attacks<br>- Formal methods in security<br>- Inference control<br>- Information warfare<br>- Steganography<br>- Transaction management<br>- Data and application security<br>- Intellectual property protection<br>- Intrusion tolerance<br>- Peer-to-peer security<br>- Language-based security<br>- Network security<br>- Non-interference<br>- Privacy-enhancing technology<br>- Pseudonymity<br>- Subliminal channels<br>- Trustworthy user devices<br>- Identity management<br>- Security as quality of service<br>- Secure electronic commerce<br>- Security administration<br>- Security evaluation<br>- Security management<br>- Security models<br>- Security requirements engineering<br>- Security verification<br>- Survivability<br>- Information dissemination control<br>- Trust models and trust management policies<br><br>The primary focus is on high-quality original unpublished research,<br>case studies and<br><br>implementation experiences. We encourage submissions<br>of papers discussing industrial research and development. Proceedings<br>will be published by<br><br>Springer-Verlag in the Lecture Notes in Computer<br>Science series.<br><br><br>* Instructions for paper submission<br><br>Submitted papers must not substantially overlap papers that have been<br>published or that<br><br>are simultaneously submitted to a journal or a conference<br>with proceedings. Papers should be at most 15 pages excluding the<br>bibliography and<br><br>well-marked appendices (using 11-point font), and at most<br>20 pages total. Committee members are not required to read the<br>appendices, and so the<br><br>paper should be intelligible without them.<br>Authors must submit their paper using the conference web site<br>following the requirements<br><br>stated there.<br>Submissions must be received by March 31, 2008 in order to be<br>considered. Notification<br><br>will be sent to authors by June 16, 2008. Authors of<br>accepted papers must be prepared to sign a copyright statement and<br>must guarantee that<br><br>their paper will be presented at the conference. Authors<br>of accepted papers must follow the Springer Information for Authors'<br>guidelines for the<br><br>preparation of the manuscript and use the templates<br>provided there.<br><br><br>* Program Chairs<br><br>Sushil Jajodia, George Mason University, USA<br>Javier Lopez, University of Malaga, Spain<br><br><br>* Important dates<br><br>Paper Submission due: March 31, 2008<br>Acceptance notification: June 16, 2008<br>Final papers due: July 7, 2008<br><br>
    <table border="0" cellspacing="0" cellpadding="0">
      <tr>
        <td width="30">&nbsp;</td>
        <td>Posted In: <a href="http://www.nnseek.com/e/sci.crypt.research/">sci.crypt.research</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/_13th_european_symposium_on_research_in_computer_security_92366618t.html">no comments</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/_13th_european_symposium_on_research_in_computer_security_92366618m.html">Reply</a></td>
      </tr></table><br>]]></description>
	<pubDate>Wed, 23 Jan 2008 04:37:37 PST</pubDate>
</item>
<item>
	<title><![CDATA[CFP: 50th International Symposium ELMAR-2008, Zadar, Croatia]]></title>
	<guid>http://www.nnseek.com/e/sci.crypt.research/cfp_50th_international_symposium_elmar_2008_zadar_90759194t.html</guid>
	<link>http://www.nnseek.com/e/sci.crypt.research/cfp_50th_international_symposium_elmar_2008_zadar_90759194t.html</link>
	<description><![CDATA[<br><br>                          *****<br><br>          50th International Symposium ELMAR-2008<br><br>                          *****<br><br>                   10-13 September 2008,<br>                      Zadar, CROATIA<br><br>         Paper submission deadline: March 03, 2008<br><br>                <a href="http://www.elmar-zadar.org" rel="nofollow" class="url" target="_blank">http://www.elmar-zadar.org</a>/<br><br><br>            CALL FOR PAPERS AND SPECIAL SESSIONS<br><br><br>  TECHNICAL CO-SPONSORS<br><br>  IEEE Region 8<br>  EURASIP - European Assoc. Signal, Speech and Image Processing<br>  IEEE Croatia Section<br>  IEEE Croatia Section Chapter of the Signal Processing Society<br>  IEEE Croatia Section Joint Chapter of the AP/MTT Societies<br><br><br>  CONFERENCE PROCEEDINGS INDEXED BY<br><br>  IEEE Xplore<br>  INSPEC<br><br><br>  POST-CONFERENCE JOURNAL SPECIAL ISSUES AND SPRINGER BOOK<br>  (only selected best papers)<br><br>  International Journal of Emerging Technologies in Learning (iJET)<br>  International Journal of Interactive Mobile Technologies (iJIM)<br>  Springer book - series "Studies in Computational Intelligence"<br><br><br>  TOPICS<br><br>  --> Image and Video Processing<br>  --> Multimedia Communications<br>  --> Speech and Audio Processing<br>  --> Wireless Commununications<br>  --> Telecommunications<br>  --> Antennas and Propagation<br>  --> e-Learning and m-Learning<br>  --> Navigation Systems<br>  --> Ship Electronic Systems<br>  --> Power Electronics and Automation<br>  --> Naval Architecture<br>  --> Sea Ecology<br>  --> Special Session Proposals - A special session consist<br>      of 5-6 papers which should present a unifying theme<br>      from a diversity of viewpoints; deadline for proposals<br>      is February 04, 2008.<br><br><br>  KEYNOTE TALKS<br><br>  * Professor Sanjit K. Mitra, University of Southern<br>    California, Los Angeles, California, USA:<br>    Image Processing using Quadratic Volterra Filters<br><br>  * <a href="http://Univ.Prof.Dr.techn" rel="nofollow" class="url" target="_blank">Univ.Prof.Dr.techn</a>. Markus Rupp, Vienna University<br>    of Technology, AUSTRIA:<br>    Testbeds and Rapid Prototyping in Wireless Systems<br><br>  * Professor Paul Cross, University College London, UK:<br>    GNSS Data Modeling: The Key to Increasing Safety and<br>    Legally Critical Applications of GNSS<br><br>  * Dr.-Ing. Malte Kob, RWTH Aachen University, GERMANY:<br>    The Role of Resonators in the Generation of Voice<br>    Signals<br><br><br>  SPECIAL SESSIONS (proposals open until February 04, 2008)<br><br>  SS1: "VISNET II - Networked Audiovisual Systems"<br>  Organizer: Dr. Marta Mrak, I-lab, Centre for Communication<br>  Systems Research, University of Surrey, UNITED KINGDOM<br>  Contact: <a href="http://www.ee.surrey.ac.uk/CCSR/profiles?s_id=3937" rel="nofollow" class="url" target="_blank">http://www.ee.surrey.ac.uk/CCSR/profiles?s_id=3937</a><br><br>  SS2: "Computer Vision in Art"<br>  Organizer: <a href="http://Asst.Prof" rel="nofollow" class="url" target="_blank">Asst.Prof</a>. Peter Peer (1), Dr. Borut Batagelj (1)<br>  and Prof. Karolj Skala (2) - (1) University of Ljubljana,<br>  Faculty of Computer and Information Science, Computer Vision<br>  Laboratory, SLOVENIA; (2) Rudjer Bokovic Institute, Center<br>  for Informatics and Computing, Zagreb, CROATIA<br>  Contact: <a href="http://www.lrv.fri.uni-lj.si/~peterp" rel="nofollow" class="url" target="_blank">http://www.lrv.fri.uni-lj.si/~peterp</a>/<br><br>  SS3: "Computer Vision in Art"<br>  Organizer: <a href="http://Asst.Prof" rel="nofollow" class="url" target="_blank">Asst.Prof</a>. Theodore Zahariadis, Prof. Stamatis<br>  Voliotis and Nelly Leligoy, TEI of Chalkida, Psahna, GREECE<br>  Contact: zahariad (_at_) teihal.gr<br><br><br>  SUBMISSION<br><br>  Papers accepted by two reviewers will be published in<br>  symposium proceedings available at the symposium and<br>  abstracted/indexed in the IEEE Xplore and INSPEC database.<br><br>  More info is available here: <a href="http://www.elmar-zadar.org" rel="nofollow" class="url" target="_blank">http://www.elmar-zadar.org</a>/<br><br>  IMPORTANT: Web-based (online) paper submission of papers in<br>  PDF format is required for all authors. No e-mail, fax, or<br>  postal submissions will be accepted. Authors should prepare<br>  their papers according to ELMAR-2008 paper sample, convert<br>  them to PDF based on IEEE requirements, and submit them using<br>  web-based submission system by March 03, 2008.<br><br><br>  SCHEDULE OF IMPORTANT DATES<br><br>  Deadline for submission of full papers: March 03, 2008<br>  Notification of acceptance mailed out by: April 21, 2008<br>  Submission of (final) camera-ready papers : May 05, 2008<br>  Preliminary program available online by: May 12, 2008<br>  Registration forms and payment deadline: May 19, 2008<br>  Accommodation deadline: June 02, 2008<br><br><br>  GENERAL CO-CHAIRS<br><br>  Ive Mustac, Tankerska plovidba, Zadar, Croatia<br>  Branka Zovko-Cihlar, University of Zagreb, Croatia<br><br><br>  PROGRAM CHAIR<br><br>  Mislav Grgic, University of Zagreb, Croatia<br><br><br>  INTERNATIONAL PROGRAM COMMITTEE<br><br>  Juraj Bartolic, Croatia<br>  David Broughton, United Kingdom<br>  Paul Dan Cristea, Romania<br>  Kresimir Delac, Croatia<br>  Zarko Cucej, Slovenia<br>  Marek Domanski, Poland<br>  Kalman Fazekas, Hungary<br>  Janusz Filipiak, Poland<br>  Renato Filjar, Croatia<br>  Borko Furht, USA<br>  Mohammed Ghanbari, United Kingdom<br>  Mislav Grgic, Croatia<br>  Sonja Grgic, Croatia<br>  Yo-Sung Ho, Korea<br>  Bernhard Hofmann-Wellenhof, Austria<br>  Ismail Khalil Ibrahim, Austria<br>  Bojan Ivancevic, Croatia<br>  Ebroul Izquierdo, United Kingdom<br>  Kristian Jambrosic, Croatia<br>  Aggelos K. Katsaggelos, USA<br>  Tomislav Kos, Croatia<br>  Murat Kunt, Switzerland<br>  Panos Liatsis, United Kingdom<br>  Rastislav Lukac, Canada<br>  Lidija Mandic, Croatia<br>  Gabor Matay, Hungary<br>  Branka Medved Rogina, Croatia<br>  Borivoj Modlic, Croatia<br>  Marta Mrak, United Kingdom<br>  Fernando Pereira, Portugal<br>  Pavol Podhradsky, Slovak Republic<br>  Ramjee Prasad, Denmark<br>  Kamisetty R. Rao, USA<br>  Gregor Rozinaj, Slovak Republic<br>  Gerald Schaefer, United Kingdom<br>  Mubarak Shah, USA<br>  Shiguang Shan, China<br>  Thomas Sikora, Germany<br>  Karolj Skala, Croatia<br>  Marian S. Stachowicz, USA<br>  Ryszard Stasinski, Poland<br>  Luis Torres, Spain<br>  Frantisek Vejrazka, Czech Republic<br>  Stamatis Voliotis, Greece<br>  Nick Ward, United Kingdom<br>  Krzysztof Wajda, Poland<br>  Branka Zovko-Cihlar, Croatia<br><br><br>  CONTACT INFORMATION<br><br>  <a href="http://Assoc.Prof" rel="nofollow" class="url" target="_blank">Assoc.Prof</a>. Mislav Grgic, Ph.D.<br>  FER, Unska 3/XII<br>  HR-10000 Zagreb<br>  CROATIA<br><br>  Telephone: + 385 1 6129 851<br>  Fax: + 385 1 6129 568<br>  E-mail: elmar2008 (_at_) fer.hr<br><br>  For further information please visit:<br>  <a href="http://www.elmar-zadar.org" rel="nofollow" class="url" target="_blank">http://www.elmar-zadar.org</a>/<br><br>                          *****<br>                          *****<br><br>
    <table border="0" cellspacing="0" cellpadding="0">
      <tr>
        <td width="30">&nbsp;</td>
        <td>Posted In: <a href="http://www.nnseek.com/e/sci.crypt.research/">sci.crypt.research</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/cfp_50th_international_symposium_elmar_2008_zadar_90759194t.html">no comments</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/cfp_50th_international_symposium_elmar_2008_zadar_90759194m.html">Reply</a></td>
      </tr></table><br>]]></description>
	<pubDate>Sat, 05 Jan 2008 08:06:25 PST</pubDate>
</item>
<item>
	<title><![CDATA[semi-knowledge proof vs zero-knowledge proof]]></title>
	<guid>http://www.nnseek.com/e/sci.crypt.research/semi_knowledge_proof_vs_zero_knowledge_proof_87134490t.html</guid>
	<link>http://www.nnseek.com/e/sci.crypt.research/semi_knowledge_proof_vs_zero_knowledge_proof_87134490t.html</link>
	<description><![CDATA[<br><br>Hi,all, maybe I post a non-sense topic.But when I  learned  zero-<br>knowledge proof, I wonder why there is nothing about semi-knowledge<br>proof,or maybe quantitive-knowledge proof? Then I  came to the<br>literature,I only found something about knowledge complextiy of proof<br>writen by Bellare and Goldreich.<br>In an interactive proof system,a  zero -knowledge proof system require<br>the prover  give nothing about witness via proving something<br>validly .Maybe we can define semi-knowlege proof system as<br>following :When the prover proves something,  We allow the prover leak<br>some knowledge to the verifier, but not the hardcore knowledge.Maybe<br>this form of  semi-knowledge proof  is equal to zero-knowledge proof<br>with auxiliary input.But in some situations ,<br>these two notions are not same.Maybe we can improve the effiency of<br>some zero-knowlege proof system via this way!  Thanks for your<br>attention.Please give some hints on this.<br><br>
    <table border="0" cellspacing="0" cellpadding="0">
      <tr>
        <td width="30">&nbsp;</td>
        <td>Posted In: <a href="http://www.nnseek.com/e/sci.crypt.research/">sci.crypt.research</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/semi_knowledge_proof_vs_zero_knowledge_proof_87134490t.html">no comments</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/semi_knowledge_proof_vs_zero_knowledge_proof_87134490m.html">Reply</a></td>
      </tr></table><br>]]></description>
	<pubDate>Mon, 26 Nov 2007 05:19:58 PST</pubDate>
</item>
<item>
	<title><![CDATA[Call for Participation: ASIACRYPT 2007]]></title>
	<guid>http://www.nnseek.com/e/sci.crypt.research/call_for_participation_asiacrypt_2007_86387738t.html</guid>
	<link>http://www.nnseek.com/e/sci.crypt.research/call_for_participation_asiacrypt_2007_86387738t.html</link>
	<description><![CDATA[<br><br>Dear all<br><br>Please see below the call for participation for ASIACRYPT 2007,<br>the 13th Annual International Conference on the Theory and Application<br>of Cryptology & Information Security.<br>Program with paper details is also included.<br><br>Raphael Phan<br>ASIACRYPT 2007 General Chair<br><br>---<br>Dates: December 2 - 6, 2007<br>Venue: Kuching, Sarawak, Malaysia<br><br><a href="http://www.swinburne.edu.my/asiacrypt2007" rel="nofollow" class="url" target="_blank">http://www.swinburne.edu.my/asiacrypt2007</a>/<br><br>Conference Information:<br>ASIACRYPT, the International Conference on the Theory and Application<br>of Cryptology and Information Security, is one of the three major<br>cryptology conferences sponsored<br><br>annually by the International Association for Cryptologic Research<br>(IACR), featuring latest breakthrough research in cryptology and<br>information security.   ASIACRYPT 2007<br><br>will be held in Kuching, Sarawak, Malaysia, organized by the IACR in<br>cooperation with the Swinburne University of Technology Sarawak campus<br>and the Sarawak Development<br><br>Institute, supported by the Sarawak state Government and Malaysian<br>Ministry of Tourism.  Formal proceedings published by Springer will be<br>provided to registered attendees<br><br>at the conference. Technical sessions run from Monday morning to<br>Thursday noon, with a welcome reception on Sunday evening, a guided<br>excursion on Tuesday morning, and<br><br>official banquet on Wednesday evening.  The customary Rump Session<br>will run as usual on Tuesday evening.<br><br>Venue Information:<br>Kuching is the capital of Sarawak, situated on Borneo Island.  The<br>conference will be held at Crowne Plaza Hotel, Riverside Kuching<br>located at the Kuching Waterfront<br><br>overlooking the historical Fort Margherita across the Sarawak River,<br>right in the heart of the city's entertainment, dining, shopping and<br>business district; and 20 minutes<br><br>drive from the Kuching International Airport.  Flight connections to<br>Kuching are available several times a day from Kuala Lumpur and<br>Singapore.<br><br>General Chair:<br>Raphael C.-W. Phan<br>EPFL - I&C - ISC - LASEC<br>CH-1015 Lausanne<br>SWITZERLAND<br>Tel: +41 21 693 8127<br>Email: asiacrypt2007@<a href="http://iacr.org" rel="nofollow" class="url" target="_blank">iacr.org</a><br><br>Program Chair:<br>Kaoru Kurosawa<br>Department of Computer & Information Sciences<br>Ibaraki University<br>4-12-1 Nakanarusawa, Hitachi, Ibaraki<br>316-8511, JAPAN<br>Tel/Fax: + 81 294 38 5135<br>Email: ac2007@<a href="http://mx.ibaraki.ac.jp" rel="nofollow" class="url" target="_blank">mx.ibaraki.ac.jp</a><br><br>---<br><br>Program of Asiacrypt 2007:<br>--------------------------------------------------------------<br>December 3rd (Monday)<br>--------------------------------------------------------------<br>[1. Number Theory and Elliptic curve]<br>Session Chair:  Serge Vaudenay<br>9:00-10:15<br><br>A kilobit special number field sieve factorization,<br>    Kazumaro Aoki (NTT)<br>    Jens Franke (University of Bonn, Department of Mathematics)<br>    Thorsten Kleinjung (University of Bonn, Department of Mathematics)<br>    Arjen K. Lenstra (EPFL and Bell Laboratories)<br>    Dag Arne Osvik (EPFL)<br><br>When e-th Roots Become Easier Than Factoring,<br>    Antoine Joux (DGA and Universit=E9 de Versailles)<br>    David Naccache (Ecole normale sup=E9rieure)<br>    Emmanuel Thom\'e (INRIA Lorraine, LORIA)<br><br>Faster addition and doubling on elliptic curves,<br>   Daniel J. Bernstein (University of Illinois at Chicago, USA)<br>   Tanja Lange (Technische Universiteit Eindhoven, Netherlands)<br><br>-------------------------------------------------------<br>[2. Protocol]<br>Session Chair:  Xuejia Lai<br>10:40-11:30<br><br>A Non-Interactive Shuffle with Pairing Based Verifiability,<br>   Jens Groth (University College London)<br>   Steve Lu (UCLA, Math Department)<br><br>On Privacy Models for RFID,<br>   Serge Vaudenay (EPFL)<br><br>--------------------------------------------------------<br>[Invited Talk I]<br>Session Chair:  Masayuki Abe<br>11:30-12:30<br><br>Obtaining Universally Composable Security: Towards the Bare Bones of<br>Trust,<br>    Ran Canetti (IBM T.J. Watson Research Center)<br><br>------------------------------------------------------------<br>[3. Hash Function Design]<br>Session Chair: Arjen Lenstra<br>14:00-15:15<br><br>A Simple Variant of the Merkle-Damg=E5rd Scheme with a Permutation,<br>   Shoichi Hirose (University of Fukui, Japan),<br>   Je Hong Park (ETRI Network & Communication Security Division,<br>Korea),<br>   Aaram Yun (ETRI Network & Communication Security Division, Korea)<br><br>Seven-Property-Preserving Iterated Hashing: ROX,<br>   Elena Andreeva (Katholieke Universiteit Leuven)<br>   Gregory Neven (Katholieke Universiteit Leuven)<br>   Thomas Shrimpton (Portland State University and University of<br>Lugano)<br>   Bart Preneel (Katholieke Universiteit Leuven)<br><br>How to build a hash function from any collision-resistant function,<br>   Thomas Ristenpart (University of California, San Diego)<br>   Thomas Shrimpton (Portland State University and University of<br>Lugano)<br><br>-------------------------------------------------------------<br>[4. Group/Broadcast Cryptography]<br>Session Chair: Josef Pieprzyk<br>15:40-16:55<br><br>Fully Anonymous Group Signatures without Random Oracles,<br>    Jens Groth (University College London)<br><br>Group Encryption,<br>   Aggelos Kiayias (University of Connecticut, USA)<br>   Yiannis Tsiounis (BestQuotes, USA)<br>   Moti Yung (Columbia University, USA)<br><br>Identity-Based Broadcast Encryption with Constant Size Ciphertexts and<br>Private Keys,<br>   C=E9cile Delerabl=E9e (Orange Labs)<br><br>----------------------------------------------------------------<br>December 4th (Tuesday)<br>---------------------------------------------------<br>[Guided Excursion to Semenggok Orang Utan Wildlife Centre and<br>Longhouse]<br>08:00 - 14:00<br><br>------------------------------------------------------------<br>[5. MAC and Implementation]<br>Session Chair: Thomas Johansson<br>14:00-15:15<br><br>Boosting Merkle-Damg=E5rd Hashing for Message Authentication,<br>   Kan Yasuda (NTT, Japan)<br><br>On Efficient Message Authentication Via Block Cipher Design<br>Techniques,<br>   G. Jakimoski and K. P. Subbalakshmi (Stevens Institute of<br>Technology)<br><br>Symmetric Key Cryptography on Modern Graphics Hardware,<br>   James Goodman and Jason Yang (Advanced Micro Devices, Inc.)<br><br>-------------------------------------------------------------<br>[6. Multiparty Computation I]<br>Session Chair: Jung Hee Cheon<br>15:40-16:55<br><br>Blind Identity-Based Encryption and Simulatable Oblivious Transfer,<br>    Matthew Green and Susan Hohenberger (The Johns Hopkins University)<br><br>Multi-Party Indirect Indexing and Applications,<br>    Matthew Franklin, Mark Gondree and Payman Mohassel<br>    (Dept. of Computer Science, University of California, Davis)<br><br>Two-Party Computing with Encrypted Data,<br>   Seung Geol Choi (Computer Science Department, Columbia University)<br>   Ariel Elbaz (Computer Science Department, Columbia University)<br>   Ari Juels (RSA Laboratories)<br>   Tal Malkin (Computer Science Department, Columbia University)<br>   Moti Yung (Computer Science Department, Columbia University)<br><br>----------------------------------------------------<br>[Rump Session]<br>Session Chair: Aggelos Kiayias<br>19:00-<br><br>-------------------------------------------------------------<br>December 5th (Wednesday)<br>----------------------------------------------------<br>[7. Block Cipher]<br>Session Chair: Tetsu Iwata<br>9:00-10:15<br><br>Known-Key Distinguishers for Some Block Ciphers,<br>   Lars R. Knudsen (Technical University of Denmark)<br>   Vincent Rijmen (Graz University of Technology, Austria)<br><br>Generic Attacks on Unbalanced Feistel Schemes with Expanding<br>Functions,<br>  Jacques Patarin (University of Versailles)<br>  Valerie Nachef (University of Cergy-Pontoise)<br>  Come Berbain (France Telecom Research and Developpement)<br><br>On Tweaking Luby-Rackoff Ciphers,<br>   Elizabeth Crump Schwartz (College of William and Mary)<br>   David Goldenberg (College of William and Mary)<br>   Susan Hohenberger (Johns Hopkins University)<br>   Moses Liskov (College of William and Mary)<br>   Hakan Seyalioglu (College of William and Mary)<br><br>----------------------------------------------------<br>[8. Multiparty Computation II]<br>Session Chair: Pandu Rangan<br>10:40-12:20<br><br>Secure Protocols with Asymmetric Trust,<br>   Ivan Damg=E5rd (Aarhus University)<br>   Yvo Desmedt (University College London)<br>   Matthias Fitzi (ETH Z=FCrich)<br>   Jesper Buus Nielsen (Aarhus University)<br><br>Simple and Efficient Perfectly-Secure Asynchronous MPC,<br>   Zuzana Beerliov=E1-Trub=EDniov=E1 (ETH Zurich)<br>   Martin Hirt (ETH Zurich)<br><br>Efficient Byzantine Agreement with Faulty Minority,<br>   Zuzana Beerliov=E1-Trub=EDniov=E1 (ETH Zurich)<br>   Martin Hirt (ETH Zurich)<br>   Micha Riser (ETH Zurich)<br><br>Information-theoretic security without an honest majority,<br>    Anne Broadbent and Alain Tapp (Universit=E9 de Montr=E9al)<br><br>-------------------------------------------------------<br>[9. Foundation]<br>Session Chair: Jesper Buus Nielsen<br>14:00-15:15<br><br>Black-Box Extension Fields and the Inexistence of Field-Homomorphic<br>One-Way Permutations,<br>   Ueli Maurer and Dominik Raub (ETH Zurich)<br><br>Concurrent Statistical Zero-Knowledge Arguments for NP from One Way<br>Functions,<br>    Vipul Goyal, Ryan Moriarty, Rafail Ostrovsky and Amit Sahai (UCLA)<br><br>Anonymous Quantum Communication,<br>    Gilles Brassard (Universit=E9 de Montr=E9al)<br>    Anne Broadbent (Universit=E9 de Montr=E9al)<br>    S=E9bastien Gambs (Universit=E9 de Montr=E9al)<br>    Joseph Fitzsimons (University of Oxford)<br>    Alain Tapp (Universit=E9 de Montr=E9al)<br><br>------------------------------------------------<br>[Invited Talk II]<br>Session Chair: Tsuyoshi Takagi<br>15:40-16:40<br><br>Authenticated Key Exchange and Key Encapsulation in the Standard<br>Model,<br>    Tatsuaki Okamoto (NTT, Japan)<br><br>------------------------------------------------<br>[Official Banquet]<br>20:00-22:00<br><br>------------------------------------------------<br>December 6th (Thursday)<br>---------------------------------------------------<br>[10. Public Key Encryption]<br>Session Chair:  Kaoru Kurosawa<br>9:00-10:15<br><br>Miniature CCA2 PK Encryption : Tight Security Without Redundancy,<br>   Xavier Boyen (Voltage Inc.)<br><br>Bounded CCA2-Secure Encryption,<br>   Ronald Cramer (CWI & Leiden University)<br>   Goichiro Hanaoka (AIST, Japan)<br>   Dennis Hofheinz (CWI)<br>   Hideki Imai (AIST, Japan)<br>   Eike Kiltz (CWI)<br>   Rafael Pass (Cornell University)<br>   abhi shelat (U. Virginia)<br>   Vinod Vaikuntanathan (MIT)<br><br>Relations Among Notions of Non-Malleability for Encryption,<br>   Rafael Pass (Cornell University)<br>   abhi shelat (U. Virginia)<br>   Vinod Vaikuntanathan (MIT)<br><br>------------------------------------------------------<br>[11. Cryptanalysis]<br>Session Chair: Bart Preneel<br>10:40-11:55<br><br>Cryptanalysis of the Tiger Hash Function,<br>   Florian Mendel (Institute for Applied Information Processing and<br>Communications (IAIK))<br>   Vincent Rijmen (Graz University of Technology, Austria)<br><br>Cryptanalysis of Grindahl, best paper award<br>    Thomas Peyrin (France T=E9l=E9com R&D, AIST, University of Versailles)<br><br>A Key Recovery Attack on Edon80,<br>   Martin Hell and Thomas Johansson (Lund University, Sweden)<br><br>-----------------------------------------------------<br>
    <table border="0" cellspacing="0" cellpadding="0">
      <tr>
        <td width="30">&nbsp;</td>
        <td>Posted In: <a href="http://www.nnseek.com/e/sci.crypt.research/">sci.crypt.research</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/call_for_participation_asiacrypt_2007_86387738t.html">no comments</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/call_for_participation_asiacrypt_2007_86387738m.html">Reply</a></td>
      </tr></table><br>]]></description>
	<pubDate>Tue, 20 Nov 2007 09:52:20 PST</pubDate>
</item>
<item>
	<title><![CDATA[Reversible hashing]]></title>
	<guid>http://www.nnseek.com/e/sci.crypt.research/reversible_hashing_84663578t.html</guid>
	<link>http://www.nnseek.com/e/sci.crypt.research/reversible_hashing_84663578t.html</link>
	<description><![CDATA[<br><br>Hi,<br>I would like to know if make sense the statement "Reversible hashing".<br>I mean is possible to develop a hash algorithm, or better a digest<br>algorithm, (variable input lenght, fixed output lenght) that do not<br>respect the rule to be one-way. I don't want to compare with other<br>hash algo such SHAx, MDx ecc... but, it can be done?<br>Just for curiosity; I think this question can be some kind of<br>interesting discussion, I am wrong?<br><br>Oh, sorry for my bad english ;-).<br><br>Cheers,<br>Federico.<br><br>
    <table border="0" cellspacing="0" cellpadding="0">
      <tr>
        <td width="30">&nbsp;</td>
        <td>Posted In: <a href="http://www.nnseek.com/e/sci.crypt.research/">sci.crypt.research</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/reversible_hashing_84663578t.html"><b>6</b> Comments</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/reversible_hashing_84663578m.html">Reply</a></td>
      </tr></table><br>]]></description>
	<pubDate>Sat, 03 Nov 2007 19:18:48 PDT</pubDate>
</item>
<item>
	<title><![CDATA[New practical lattice based public key cryptosystem]]></title>
	<guid>http://www.nnseek.com/e/sci.crypt.research/new_practical_lattice_based_public_key_cryptosyste_81616666t.html</guid>
	<link>http://www.nnseek.com/e/sci.crypt.research/new_practical_lattice_based_public_key_cryptosyste_81616666t.html</link>
	<description><![CDATA[<br><br>Hello,<br><br>I am a 20 year old german student and hobby cryptographer, with<br>strong interests in public key algorithms, cryptographic protocolls<br>and cryptanalysis.  In the year 2003 I came up with a new signature<br>scheme based on the closest vector problem. This scheme was successfully<br>presented at germans biggest youth science fair "Jugend Forscht" and one<br>year later at the Intel ISEF (International Science and Engineering Fair)<br>in Phoenix, Arizona.<br><br>By now, I have not only added an public key encryption algorithm but<br>also analyzed the algorithm for weaknesses.  Hence, the time has come,<br>where this algorithm has to be presented to a great audience to analyze<br>it even further.<br><br>Here is a first small (and simplyfied) overview: In order to get a<br>new type of public key encryption algorithm, that is not based on the<br>factoring problem or the discrrete logarithm in finite fields, we have<br>to find a suitable hard mathematical problem.<br><br>The closest vector problem (i.e. given a random n-dimensional lattice A,<br>and a random n-dimensional point B, find a lattice point, that is closest<br>to B. A lattice is just a normal basis for a vector space, with the<br>addition requirement, that you are only allowed to multiply the basis<br>with integer-vectors (not real-vectors), to obtain a lattice point).<br><br>This closest-vector problem can be solved in practise up to dimensions<br>of 300.  However, a basis for such a lattice contains 300*300 real values<br>(= 90000), hence it is a bit too large to be practical.<br><br>I came up with a new method, to get a hard instance (whether this is<br>really true, has to be analyzed) of this problem with a cyclic modular<br>lattice.  I need only n values, to save a complete basis. Hence I can<br>use dimension up to 1000 efficiently.<br><br>The new algorithm is based upon a "almost linear homomorphic oneway<br>function", i.e. a function, which preserves the original group structure:<br>f(a, x) + f(b, x) = f(a+b, x) + e, where e is a small error for each<br>addition (hence, it's only almost linear).  Furthermore we can exchange<br>a and x. (-> f(x, a) + f(x, b) = f(x, a+b) )<br><br>This function (and my first cryptanalytical research) is described<br>completely in the paper, which you can find on this website:<br><a href="http://turbo-crypt.sourceforge.net" rel="nofollow" class="url" target="_blank">http://turbo-crypt.sourceforge.net</a>/ You can download the paper directly,<br>from: <a href="http://turbo-crypt.sourceforge.net/TurboCrypt.pdf" rel="nofollow" class="url" target="_blank">http://turbo-crypt.sourceforge.net/TurboCrypt.pdf</a><br><br>Using this function, we can compute a public key in the following way:<br>PublicKey = {y1 = f(x1, g), y2 = f(x2, g), x1, x2}<br>The private key is g.<br><br>Now we can sign by computing:<br>1. Choose r at random<br>2. Compute R = {R1 = f(x1, r), R2 = f(x2, r)}<br>3. Compute {e1, e2} = Hash(R + Message)<br>4. Signature s = e1*g + e2*r<br>The Signature = {R, s}<br><br>The signature is verificated by:<br>1. Recompute {e1, e2} as has been done above<br>2. Compute U = {f(x1, s), f(x2, s)}<br>3. Compute V = {e1*y1 + e2*R1, e1*y2 + e2*R2}<br>4. Check, that U-V is small<br><br>There are some more details, which you can find in the paper.<br><br>The encryption function is similiar to the El Gamal encryption function.<br><br>You can find a complete description in the paper on the ciphers website:<br><a href="http://turbo-crypt.sourceforge.net" rel="nofollow" class="url" target="_blank">http://turbo-crypt.sourceforge.net</a>/<br><br>I would like, if you could send me any comment, critics or cryptanalysis<br>you can come up with, to my email address.  Your contribution will be<br>honored: I will publish you critics with your name (unless, of course,<br>you do not want me to do so) on my website for the cryptosystem.<br><br>I look forward to hearing from you.<br><br>Sincerly,<br>Gerold Gruenauer<br><br>Jetzt neu! Sch=FCtzen Sie Ihren PC mit McAfee und WEB.DE. 3 Monate<br>kostenlos testen. <a href="http://www.pc-sicherheit.web.de/startseite" rel="nofollow" class="url" target="_blank">http://www.pc-sicherheit.web.de/startseite</a>/<br>
    <table border="0" cellspacing="0" cellpadding="0">
      <tr>
        <td width="30">&nbsp;</td>
        <td>Posted In: <a href="http://www.nnseek.com/e/sci.crypt.research/">sci.crypt.research</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/new_practical_lattice_based_public_key_cryptosyste_81616666t.html">no comments</a></td>
        <td width="20">&nbsp;</td>
        <td><a href="http://www.nnseek.com/e/sci.crypt.research/new_practical_lattice_based_public_key_cryptosyste_81616666m.html">Reply</a></td>
      </tr></table><br>]]></description>
	<pubDate>Mon, 08 Oct 2007 23:17:19 PDT</pubDate>
</item>
</channel>
</rss>