Concurrent Encryption and Authentication
Prof. Josef Pieprzyk
Signcryption aims to provide both confidentiality and authentication of messages more efficiently than the independent application of encryption and signature. In the talk, we consider a generic and efficient signcryption scheme featuring parallel encryption and signature on top of a sponge-based message-padding underlying structure. Unlike other existing schemes, the proposed scheme also supports arbitrary long messages. We prove the construction secure when instantiated from weakly secure asymmetric primitives such as a trapdoor one-way encryption and a universal unforgeable signature.