International Association for Cryptologic Research

International Association
for Cryptologic Research


Paper: Two-Message Statistically Sender-Private OT from LWE

Zvika Brakerski
Nico Döttling
DOI: 10.1007/978-3-030-03810-6_14
Search ePrint
Search Google
Conference: TCC 2018
Abstract: We construct a two-message oblivious transfer (OT) protocol without setup that guarantees statistical privacy for the sender even against malicious receivers. Receiver privacy is game based and relies on the hardness of learning with errors (LWE). This flavor of OT has been a central building block for minimizing the round complexity of witness indistinguishable and zero knowledge proof systems, non-malleable commitment schemes and multi-party computation protocols, as well as for achieving circuit privacy for homomorphic encryption in the malicious setting. Prior to this work, all candidates in the literature from standard assumptions relied on number theoretic assumptions and were thus insecure in the post-quantum setting. This work provides the first (presumed) post-quantum secure candidate and thus allows to instantiate the aforementioned applications in a post-quantum secure manner.Technically, we rely on the transference principle: Either a lattice or its dual must have short vectors. Short vectors, in turn, can be translated to information loss in encryption. Thus encrypting one message with respect to the lattice and one with respect to its dual guarantees that at least one of them will be statistically hidden.
  title={Two-Message Statistically Sender-Private OT from LWE},
  booktitle={Theory of Cryptography},
  series={Theory of Cryptography},
  author={Zvika Brakerski and Nico Döttling},