{"id":"https://openalex.org/W4416549341","doi":"https://doi.org/10.1145/3719027.3765170","title":"IND-CPA-D of Relaxed Functional Bootstrapping: A New Attack, A General Fix, and A Stronger Model","display_name":"IND-CPA-D of Relaxed Functional Bootstrapping: A New Attack, A General Fix, and A Stronger Model","publication_year":2025,"publication_date":"2025-11-19","ids":{"openalex":"https://openalex.org/W4416549341","doi":"https://doi.org/10.1145/3719027.3765170"},"language":null,"primary_location":{"id":"doi:10.1145/3719027.3765170","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3719027.3765170","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3719027.3765170","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2025 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"gold","oa_url":"https://dl.acm.org/doi/pdf/10.1145/3719027.3765170","any_repository_has_fulltext":null},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100376632","display_name":"Zeyu Liu","orcid":"https://orcid.org/0000-0001-7291-3106"},"institutions":[{"id":"https://openalex.org/I32971472","display_name":"Yale University","ror":"https://ror.org/03v76x132","country_code":"US","type":"education","lineage":["https://openalex.org/I32971472"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Zeyu Liu","raw_affiliation_strings":["Yale University, New Haven, CT, USA"],"raw_orcid":"https://orcid.org/0000-0001-7291-3106","affiliations":[{"raw_affiliation_string":"Yale University, New Haven, CT, USA","institution_ids":["https://openalex.org/I32971472"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5113368661","display_name":"Yunhao Wang","orcid":"https://orcid.org/0009-0006-8128-2346"},"institutions":[{"id":"https://openalex.org/I32971472","display_name":"Yale University","ror":"https://ror.org/03v76x132","country_code":"US","type":"education","lineage":["https://openalex.org/I32971472"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Yunhao Wang","raw_affiliation_strings":["Yale University, New Haven, CT, USA"],"raw_orcid":"https://orcid.org/0009-0006-8128-2346","affiliations":[{"raw_affiliation_string":"Yale University, New Haven, CT, USA","institution_ids":["https://openalex.org/I32971472"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5037983878","display_name":"Ben Fisch","orcid":"https://orcid.org/0009-0007-1154-2277"},"institutions":[{"id":"https://openalex.org/I32971472","display_name":"Yale University","ror":"https://ror.org/03v76x132","country_code":"US","type":"education","lineage":["https://openalex.org/I32971472"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Ben Fisch","raw_affiliation_strings":["Yale University, New Haven, CT, USA"],"raw_orcid":"https://orcid.org/0009-0007-1154-2277","affiliations":[{"raw_affiliation_string":"Yale University, New Haven, CT, USA","institution_ids":["https://openalex.org/I32971472"]}]}],"institutions":[],"countries_distinct_count":1,"institutions_distinct_count":1,"corresponding_author_ids":[],"corresponding_institution_ids":["https://openalex.org/I32971472"],"apc_list":null,"apc_paid":null,"fwci":1.6508,"has_fulltext":true,"cited_by_count":1,"citation_normalized_percentile":{"value":0.89134237,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":95,"max":97},"biblio":{"volume":null,"issue":null,"first_page":"2907","last_page":"2921"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9108999967575073,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9108999967575073,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10951","display_name":"Cryptographic Implementations and Security","score":0.06279999762773514,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11130","display_name":"Coding theory and cryptography","score":0.004399999976158142,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/bootstrapping","display_name":"Bootstrapping (finance)","score":0.8640000224113464},{"id":"https://openalex.org/keywords/random-oracle","display_name":"Random oracle","score":0.61080002784729},{"id":"https://openalex.org/keywords/randomness","display_name":"Randomness","score":0.580299973487854},{"id":"https://openalex.org/keywords/homomorphic-encryption","display_name":"Homomorphic encryption","score":0.5157999992370605},{"id":"https://openalex.org/keywords/key","display_name":"Key (lock)","score":0.46209999918937683},{"id":"https://openalex.org/keywords/functional-encryption","display_name":"Functional encryption","score":0.43529999256134033},{"id":"https://openalex.org/keywords/oracle","display_name":"Oracle","score":0.4350999891757965},{"id":"https://openalex.org/keywords/function","display_name":"Function (biology)","score":0.4309000074863434},{"id":"https://openalex.org/keywords/adversary","display_name":"Adversary","score":0.39250001311302185}],"concepts":[{"id":"https://openalex.org/C207609745","wikidata":"https://www.wikidata.org/wiki/Q4944086","display_name":"Bootstrapping (finance)","level":2,"score":0.8640000224113464},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.6459000110626221},{"id":"https://openalex.org/C94284585","wikidata":"https://www.wikidata.org/wiki/Q228184","display_name":"Random oracle","level":4,"score":0.61080002784729},{"id":"https://openalex.org/C125112378","wikidata":"https://www.wikidata.org/wiki/Q176640","display_name":"Randomness","level":2,"score":0.580299973487854},{"id":"https://openalex.org/C158338273","wikidata":"https://www.wikidata.org/wiki/Q2154943","display_name":"Homomorphic encryption","level":3,"score":0.5157999992370605},{"id":"https://openalex.org/C26517878","wikidata":"https://www.wikidata.org/wiki/Q228039","display_name":"Key (lock)","level":2,"score":0.46209999918937683},{"id":"https://openalex.org/C80444323","wikidata":"https://www.wikidata.org/wiki/Q2878974","display_name":"Theoretical computer science","level":1,"score":0.446399986743927},{"id":"https://openalex.org/C2780746774","wikidata":"https://www.wikidata.org/wiki/Q17014981","display_name":"Functional encryption","level":4,"score":0.43529999256134033},{"id":"https://openalex.org/C55166926","wikidata":"https://www.wikidata.org/wiki/Q2892946","display_name":"Oracle","level":2,"score":0.4350999891757965},{"id":"https://openalex.org/C14036430","wikidata":"https://www.wikidata.org/wiki/Q3736076","display_name":"Function (biology)","level":2,"score":0.4309000074863434},{"id":"https://openalex.org/C41065033","wikidata":"https://www.wikidata.org/wiki/Q2825412","display_name":"Adversary","level":2,"score":0.39250001311302185},{"id":"https://openalex.org/C41608201","wikidata":"https://www.wikidata.org/wiki/Q980509","display_name":"Embedding","level":2,"score":0.39079999923706055},{"id":"https://openalex.org/C2776711565","wikidata":"https://www.wikidata.org/wiki/Q7445058","display_name":"Security parameter","level":3,"score":0.3772999942302704},{"id":"https://openalex.org/C42747912","wikidata":"https://www.wikidata.org/wiki/Q1048447","display_name":"Multiplicative function","level":2,"score":0.35010001063346863},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.3434999883174896},{"id":"https://openalex.org/C77618280","wikidata":"https://www.wikidata.org/wiki/Q1155772","display_name":"Scheme (mathematics)","level":2,"score":0.32910001277923584},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.32850000262260437},{"id":"https://openalex.org/C203062551","wikidata":"https://www.wikidata.org/wiki/Q201339","display_name":"Public-key cryptography","level":3,"score":0.30730000138282776},{"id":"https://openalex.org/C3087436","wikidata":"https://www.wikidata.org/wiki/Q1386603","display_name":"Secret sharing","level":3,"score":0.3070000112056732},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.2872999906539917},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.2847999930381775},{"id":"https://openalex.org/C2779960059","wikidata":"https://www.wikidata.org/wiki/Q7113681","display_name":"Overhead (engineering)","level":2,"score":0.28279998898506165},{"id":"https://openalex.org/C61797465","wikidata":"https://www.wikidata.org/wiki/Q1188986","display_name":"Term (time)","level":2,"score":0.2815999984741211},{"id":"https://openalex.org/C101454708","wikidata":"https://www.wikidata.org/wiki/Q17106019","display_name":"Standard Model (mathematical formulation)","level":3,"score":0.2802000045776367},{"id":"https://openalex.org/C85847156","wikidata":"https://www.wikidata.org/wiki/Q59015987","display_name":"Verifiable secret sharing","level":3,"score":0.2727999985218048},{"id":"https://openalex.org/C147343967","wikidata":"https://www.wikidata.org/wiki/Q5159078","display_name":"Concrete security","level":3,"score":0.26499998569488525},{"id":"https://openalex.org/C2779014939","wikidata":"https://www.wikidata.org/wiki/Q6510239","display_name":"Learning with errors","level":3,"score":0.2590999901294708}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3719027.3765170","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3719027.3765170","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3719027.3765170","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2025 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"}],"best_oa_location":{"id":"doi:10.1145/3719027.3765170","is_oa":true,"landing_page_url":"https://doi.org/10.1145/3719027.3765170","pdf_url":"https://dl.acm.org/doi/pdf/10.1145/3719027.3765170","source":null,"license":"cc-by","license_id":"https://openalex.org/licenses/cc-by","version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 2025 ACM SIGSAC Conference on Computer and Communications Security","raw_type":"proceedings-article"},"sustainable_development_goals":[],"awards":[],"funders":[{"id":"https://openalex.org/F4320308380","display_name":"Yale University","ror":"https://ror.org/03v76x132"}],"has_content":{"pdf":true,"grobid_xml":false},"content_urls":{"pdf":"https://content.openalex.org/works/W4416549341.pdf"},"referenced_works_count":29,"referenced_works":["https://openalex.org/W56544557","https://openalex.org/W198033559","https://openalex.org/W913176383","https://openalex.org/W1494049356","https://openalex.org/W1557386445","https://openalex.org/W1992282993","https://openalex.org/W2031533839","https://openalex.org/W2400700555","https://openalex.org/W2554750353","https://openalex.org/W2768174108","https://openalex.org/W2794634409","https://openalex.org/W2883089683","https://openalex.org/W2895782209","https://openalex.org/W3003841905","https://openalex.org/W3013288840","https://openalex.org/W3114221980","https://openalex.org/W3117449869","https://openalex.org/W3120341667","https://openalex.org/W3159746013","https://openalex.org/W3173128495","https://openalex.org/W3189616064","https://openalex.org/W3203442625","https://openalex.org/W4288057738","https://openalex.org/W4389858347","https://openalex.org/W4402052084","https://openalex.org/W4402263938","https://openalex.org/W4405181936","https://openalex.org/W4405184825","https://openalex.org/W4409852061"],"related_works":[],"abstract_inverted_index":{"Fully":[0],"homomorphic":[1],"encryption":[2],"(FHE)":[3],"is":[4,185],"a":[5,36,107,118,162,170,189],"powerful":[6],"and":[7,18,48,90,104,147],"widely":[8],"used":[9],"primitive":[10],"in":[11,121,180],"lots":[12],"of":[13,100,154],"real-world":[14],"applications.":[15,123],"Recently,":[16,43],"Li":[17],"Micciancio":[19],"[Eurocrypt'21]":[20],"introduced":[21],"IND-CPA-D":[22,66,182,202,218],"security,":[23],"which":[24,97],"strengthens":[25],"the":[26,32,70,86,130,176,181],"standard":[27],"IND-CPA":[28],"security":[29],"by":[30,68,79,187],"allowing":[31],"attacker":[33],"to":[34,217],"access":[35],"decryption":[37],"oracle":[38],"for":[39,152,208],"honestly":[40],"generated":[41],"ciphertexts.":[42],"Jung":[44],"et":[45,50],"al.":[46,51],"[CCS'24]":[47],"Checri":[49],"[Crypto'24]":[52],"have":[53],"shown":[54],"that":[55,129,173,201],"even":[56,148,160,207],"exact":[57],"FHE":[58],"schemes":[59],"like":[60],"FHEW/TFHE/BGV/BFV":[61],"may":[62,203],"still":[63],"not":[64,204],"be":[65,77,135,205],"secure,":[67],"exploiting":[69],"bootstrapping":[71,82,145,164],"failure.":[72],"However,":[73],"such":[74],"attacks":[75,179],"can":[76],"mitigated":[78],"setting":[80],"negligible":[81,163],"failure":[83,165],"probability.":[84,166],"On":[85],"other":[87],"hand,":[88],"Liu":[89],"Wang":[91],"[Asiacrypt'24]":[92],"proposed":[93],"relaxed":[94,143],"functional":[95,144],"bootstrapping,":[96],"has":[98],"orders":[99],"magnitude":[101],"performance":[102],"improvement":[103],"furthermore":[105],"allows":[106],"free":[108],"function":[109],"evaluation":[110],"during":[111],"bootstrapping.":[112],"These":[113],"efficiency":[114],"advantages":[115],"make":[116],"it":[117],"competitive":[119],"choice":[120],"many":[122],"In":[124],"this":[125,215],"work,":[126],"we":[127,168,199,213],"show":[128,200],"underlying":[131],"secret":[132],"key":[133],"could":[134],"recovered":[136],"within":[137,149],"10":[138],"minutes":[139],"against":[140],"all":[141,175],"existing":[142,177],"constructions,":[146],"1":[150],"minute":[151],"some":[153],"them.":[155],"Moreover,":[156],"our":[157],"attack":[158],"works":[159],"with":[161,194,219],"Additionally,":[167],"propose":[169],"general":[171],"fix":[172],"mitigates":[174],"modulus-switching-error-based":[178],"model.":[183,211],"This":[184],"achieved":[186],"constructing":[188],"new":[190],"modulus":[191],"switching":[192],"procedure":[193],"essentially":[195],"no":[196],"overhead.":[197],"Lastly,":[198],"sufficient":[206],"passive":[209],"adversary":[210],"Thus,":[212],"extend":[214],"model":[216],"randomness":[220],"(IND-CPA-DR).":[221]},"counts_by_year":[{"year":2026,"cited_by_count":1}],"updated_date":"2026-06-26T08:34:08.712188","created_date":"2025-11-23T00:00:00"}
