RCCA security
This article relies on a single source. (March 2019) |
Replayable CCA security (RCCA security) is a security notion in cryptography that relaxes the older notion of security against a chosen-ciphertext attack (CCA, more precisely adaptive security notion CCA2). All CCA-secure systems are RCCA secure but the converse is not true. The claim is that for many use cases, CCA is too strong, and RCCA suffices.[1] A certain number of cryptographic schemes have now been proved to be RCCA-secure, instead of CCA secure.
The term was introduced in 2003 in a research publication by Ran Canetti, Hugo Krawczyk and Jesper B. Nielsen.
References
[edit]- ↑ Ran Canetti, Hugo Krawczyk, Jesper B. Nielsen, Relaxing Chosen-Ciphertext Security. 2003 eprint archive