{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2025,3,25]],"date-time":"2025-03-25T20:34:14Z","timestamp":1742934854524,"version":"3.40.3"},"publisher-location":"Berlin, Heidelberg","reference-count":58,"publisher":"Springer Berlin Heidelberg","isbn-type":[{"type":"print","value":"9783540666950"},{"type":"electronic","value":"9783540477907"}],"license":[{"start":{"date-parts":[[1999,1,1]],"date-time":"1999-01-01T00:00:00Z","timestamp":915148800000},"content-version":"tdm","delay-in-days":0,"URL":"http:\/\/www.springer.com\/tdm"}],"content-domain":{"domain":["link.springer.com"],"crossmark-restriction":false},"short-container-title":[],"published-print":{"date-parts":[[1999]]},"DOI":"10.1007\/3-540-47790-x_18","type":"book-chapter","created":{"date-parts":[[2007,8,8]],"date-time":"2007-08-08T23:07:18Z","timestamp":1186614438000},"page":"207-224","update-policy":"https:\/\/doi.org\/10.1007\/springer_crossmark_policy","source":"Crossref","is-referenced-by-count":1,"title":["On the Difficulty of Key Recovery Systems"],"prefix":"10.1007","author":[{"given":"Seungjoo","family":"Kim","sequence":"first","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Insoo","family":"Lee","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Masahiro","family":"Mambo","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Sungjun","family":"Park","sequence":"additional","affiliation":[],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"297","published-online":{"date-parts":[[1999,10,22]]},"reference":[{"key":"18_CR1","unstructured":"H. Abelson, R. Anderson, S.M. Bellovin, J. Benaloh, M. Blaze, W. Diffie, J. Gilmore, P.G. Neumann, R.L. Rivest, J.I. Schiller, B. Schneier, \u201cThe risks of key recovery, key escrow and trusted third-party encryption\u201d, May 1997 (rev. 1998)."},{"key":"18_CR2","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"236","DOI":"10.1007\/3-540-44750-4_19","volume-title":"Advanced in Cryptology-Crypto\u201995","author":"R. Anderson","year":"1995","unstructured":"R. Anderson and R. Needham, \u201cRobustness principles for public-key protocols\u201d, Advanced in Cryptology-Crypto\u201995, Springer-Verlag, Lecture Notes in Computer Science, LNCS 963, 1995, pp.236\u2013247."},{"key":"18_CR3","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"134","DOI":"10.1007\/3-540-69053-0_11","volume-title":"Advanced in Cryptology-Eurocrypt\u201997","author":"R. Anderson","year":"1997","unstructured":"R. Anderson and M. Roe, \u201cThe GCHQ protocol and its problems\u201d, Advanced in Cryptology-Eurocrypt\u201997, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1233, 1997, pp.134\u2013148."},{"key":"18_CR4","unstructured":"D.M. Balenson, C.M. Ellison, S.B. Lipner, and S.T. Walker, \u201cA new approach to software key escrow encryption\u201d, manuscript, 1994."},{"key":"18_CR5","unstructured":"M. Bellare and S. Goldwasser, \u201cEncapsulated key escrow\u201d, MIT\/LCS Technical Report 688, April 1996."},{"key":"18_CR6","doi-asserted-by":"crossref","unstructured":"M. Bellare and S. Goldwasser, \u201cVerifiable partial key escrow\u201d, The 4th ACM Conference on Computer and Communications Security, 1997.","DOI":"10.1145\/266420.266439"},{"issue":"2","key":"18_CR7","doi-asserted-by":"publisher","first-page":"117","DOI":"10.1007\/PL00003819","volume":"12","author":"M. Bellare","year":"1999","unstructured":"M. Bellare and R.L. Rivest, \u201cTranslucent cryptography-An alternative to key escrow, and its implementation via fractional oblivious transfer\u201d, Journal of Cryptology. 12(2), 1999, pp.117\u2013139.","journal-title":"Journal of Cryptology"},{"key":"18_CR8","doi-asserted-by":"crossref","unstructured":"T. Beth, H.-J. Knobloch, M. Otten, G. Simmons, P. Wichmann, \u201cTowards acceptable key escrow systems\u201d, Proc. 2nd ACM Conference on Computer and Communications Security, Fairfax, Nov. 2-4, 1994, pp.51\u201358.","DOI":"10.1145\/191177.191191"},{"key":"18_CR9","unstructured":"T. Beth, M. Otten, (ed.), \u201cE.I.S.S.-Workshop on escrowed key cryptography\u201d, E.I.S.S.-Report 94\/7, University of Karlsruhe, June 22-24, 1994, 160 pages."},{"key":"18_CR10","unstructured":"M. Blaze, \u201cProtocol failure in the escrowed encryption standard\u201d, Building in Big Brother: The Cryptographic Policy Debate (Edited by L.J. Hoffman), Springer-Verlag, pp.131\u2013146."},{"key":"18_CR11","doi-asserted-by":"crossref","unstructured":"M. Blaze, \u201cProtocol failure in the escrowed encryption standard\u201d, The 2nd ACM Conference on Computer and Communications Security, November 1994, pp.59\u201367.","DOI":"10.1145\/191177.191193"},{"key":"18_CR12","doi-asserted-by":"crossref","unstructured":"M. Blaze, \u201cOblivious key escrow\u201d, Cambridge Workshop on Information Hiding, May 1996.","DOI":"10.1007\/3-540-61996-8_50"},{"key":"18_CR13","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"380","DOI":"10.1007\/3-540-49649-1_30","volume-title":"Advanced in Cryptology-Asiacrypt\u201998","author":"M. Burmester","year":"1998","unstructured":"M. Burmester, Y.G. Desmedt, and J. Seberry, \u201cEquitable key escrow with limited time span (or, How to enforce time expiration cryptographically)\u201d, Advanced in Cryptology-Asiacrypt\u201998, Springer-Verlag, Lecture Notes in Computer Science, LNCS 963, 1514, pp.380\u2013391."},{"key":"18_CR14","unstructured":"CESG, \u201cSecuring electronic mail within HMG: Part I. Infrastructure and protocol, Draft C\u201d, 21 March 1996, available at \nhttp:\/\/www.opengroup.org\/public\/tech\/security\/pki\/casm\/casm.htm"},{"key":"18_CR15","unstructured":"I. Damgard, M. Mambo and E. Okamoto, \u201cFurther study on the transformability of digital signatures and the blind decryption\u201d, The 1997 Symposium on Cryptography and Information Security, SCIS97-33C, 1997."},{"key":"18_CR16","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"87","DOI":"10.1007\/BFb0023290","volume-title":"First Australasian Conference on Information Security and Privacy, ACISP\u201996","author":"E. Dawson","year":"1996","unstructured":"E. Dawson and J. He \u201cAnother approach to software key escrow encryption\u201d, First Australasian Conference on Information Security and Privacy, ACISP\u201996, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1172, 1996, pp.87\u201395."},{"issue":"3","key":"18_CR17","doi-asserted-by":"publisher","first-page":"34","DOI":"10.1145\/227234.227239","volume":"39","author":"D.E. Denning","year":"1996","unstructured":"D.E. Denning and D.K. Branstad, \u201cA taxonomy of key escrow encryption systems\u201d, Communications of the ACM, 39(3), March 1996, pp.34\u201340.","journal-title":"Communications of the ACM"},{"key":"18_CR18","unstructured":"S. Domyo, U. Hisashi, H. Tsuchiya, K. Toru, T. Tanida, N. Torii, M. Mambo, E. Okamoto, \u201cDevelopment of a Key Recovery System Suitable for the Commercial Use\u201d, The 56th National Convention of the Information Processing Society of Japan, 6F-05, 1998."},{"key":"18_CR19","unstructured":"The FBI, \u201cLaw enforcement REQUIREMENTS for the surveillance of electronic communications\u201d, June 1994. (Prepared by the Federal Bureau of Investigations (FBI) in cooperation with federal, state, and local law enforcement members of the National Technical Investigation Association)."},{"key":"18_CR20","unstructured":"P.-A. Fouque, G. Poupard and J. Stern, \u201cRecovering keys in open networks\u201d, 1999 IEEE-ITW (Information Theory Workshop), IEEE, June 1999."},{"key":"18_CR21","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"222","DOI":"10.1007\/3-540-44750-4_18","volume-title":"Advanced in Cryptology-Crypto\u201995","author":"Y. Frankel","year":"1995","unstructured":"Y. Frankel and M. Yung, \u201cEscrow encryption systems visited: Attacks, analysis and designs\u201d, Advanced in Cryptology-Crypto\u201995, Springer-Verlag, Lecture Notes in Computer Science, LNCS 963, 1995, pp.222\u2013235."},{"key":"18_CR22","unstructured":"P. Horster, M. Michels and H. Petersen, \u201cA new key escrow system with active investigator\u201d, Proc. Securicom, Paris, La Defense, 8.-9. June, 1995, S.15-28.; also see Theoretical Computer Science and Information Security Technical Report TR-95-4-f, Department of Computerscience, University of Technology Chemnitz-Zwickau."},{"key":"18_CR23","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"98","DOI":"10.1007\/BFb0032349","volume-title":"Cryptography: Policy and Algorithms","author":"N. Jefferies","year":"1996","unstructured":"N. Jefferies, C. Mitchell and M. Walker, \u201cA proposed architecture for trusted third party services\u201d, in E. Dawson and J. Golic, (eds.), Cryptography: Policy and Algorithms-Proceedings: International Conference, Brisbane, Australia, July 1995, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1029, Berlin, 1996, pp.98\u2013104."},{"key":"18_CR24","doi-asserted-by":"crossref","unstructured":"M. Joye and J.-J. Quisquater, \u201cOn the importance of securing your bins: The garbage-man-in-the-middle attack\u201d, 4th ACM Conference on Computer and Communications Security, ACM Press, 1997, pp.135\u2013141.","DOI":"10.1145\/266420.266449"},{"key":"18_CR25","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"208","DOI":"10.1007\/3-540-44750-4_17","volume-title":"Advanced in Cryptology-Crypto\u201995","author":"J. Kilian","year":"1995","unstructured":"J. Kilian and T. Leighton, \u201cFair cryptosystems, revisited: A rigorous approach to key-escrow\u201d, Advanced in Cryptology-Crypto\u201995, Springer-Verlag, Lecture Notes in Computer Science, LNCS 963, 1995, pp.208\u2013221."},{"key":"18_CR26","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"223","DOI":"10.1007\/BFb0028478","volume-title":"Proc. of ICICS\u201997, International Conference on Information and Communications Security","author":"S.J. Kim","year":"1997","unstructured":"S.J. Kim, S.J. Park, and D.H. Won, \u201cProxy signatures, revisited\u201d, Proc. of ICICS\u201997, International Conference on Information and Communications Security, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1334, 1997, pp.223\u2013232."},{"key":"18_CR27","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"237","DOI":"10.1007\/3-540-68339-9_21","volume-title":"Advanced in Cryptology-Eurocrypt\u201996","author":"L.R. Knudsen","year":"1996","unstructured":"L.R. Knudsen and T.P. Pedersen, \u201cOn the difficulty of software key escrow\u201d, Advanced in Cryptology-Eurocrypt\u201996, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1070, 1996, pp.237\u2013244."},{"key":"18_CR28","unstructured":"Y.-C. Lee and C.-S. Laih, \u201cOn the key recovery of the key escrow system\u201d, Thirteenth Annual Computer Security Applications Conference\u201d, IEEE Computer Society, December 8-12, 1997. pp.216\u2013220."},{"key":"18_CR29","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"197","DOI":"10.1007\/3-540-44750-4_16","volume-title":"Advanced in Cryptology-Crypto\u201995","author":"A.K. Lenstra","year":"1995","unstructured":"A.K. Lenstra, P. Winkler and Y. Yacobi, \u201cA key escrow system with warrant bounds\u201d, Advanced in Cryptology-Crypto\u201995, Springer-Verlag, Lecture Notes in Computer Science, LNCS 963, 1995, pp.197\u2013207."},{"key":"18_CR30","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"322","DOI":"10.1007\/BFb0034858","volume-title":"Advanced in Cryptology-Asiacrypt\u201996","author":"M. Mambo","year":"1996","unstructured":"M. Mambo, K. Sakurain and E. Okamoto, \u201cHow to utilize the transformability of digital signatures for solving the oracle problem\u201d, Advanced in Cryptology-Asiacrypt\u201996, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1163, 1996, pp.322\u2013333."},{"issue":"9","key":"18_CR31","first-page":"1338","volume":"E79-A\/","author":"M. Mambo","year":"1996","unstructured":"M. Mambo, K. Usuda, and E. Okamoto, \u201cProxy signatures: Delegation of the power to sign messages\u201d, IEICE Trans. Fundamentals, Vol.E79-A\/No.9, 1996, pp.1338\u20131354.","journal-title":"IEICE Trans. Fundamentals"},{"key":"18_CR32","doi-asserted-by":"crossref","unstructured":"M. Mambo, K. Usuda, and E. Okamoto, \u201cProxy signatures for delegating signing operation\u201d, Proc. Third ACM Conf. on Computer and Communications Security, 1996, pp.48\u201357.","DOI":"10.1145\/238168.238185"},{"key":"18_CR33","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"240","DOI":"10.1007\/BFb0027931","volume-title":"Second Australasian Conference in Information Security and Privacy","author":"W. Mao","year":"1997","unstructured":"W. Mao, \u201cVerifiable escrowed signature\u201d, Second Australasian Conference in Information Security and Privacy, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1270, Sydney, July 1997., pp.240\u2013248."},{"key":"18_CR34","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"113","DOI":"10.1007\/3-540-48071-4_9","volume-title":"Advanced in Cryptology-Crypto\u201992","author":"S. Micali","year":"1992","unstructured":"S. Micali, \u201cFair public-key cryptosystems\u201d, Advanced in Cryptology-Crypto\u201992, Springer-Verlag, Lecture Notes in Computer Science, LNCS 740, 1992, pp.113\u2013138."},{"key":"18_CR35","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"185","DOI":"10.1007\/3-540-44750-4_15","volume-title":"Advanced in Cryptology-Crypto\u201995","author":"S. Micali","year":"1995","unstructured":"S. Micali and R. Sidney \u201cA simple method for generating and sharing pseudo-random functions, with Applications to Clipper-like Key Escrow Systems\u201d, Advanced in Cryptology-Crypto\u201995, Springer-Verlag, Lecture Notes in Computer Science, LNCS 963, 1995, pp.185\u2013196."},{"key":"18_CR36","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"171","DOI":"10.1007\/3-540-49162-7_13","volume-title":"Second International Workshop on Practice and Theory in Public Key Cryptography, PKC\u201999","author":"S. Miyazaki","year":"1999","unstructured":"S. Miyazaki, I. Kuroda and K. Sakurai, \u201cToward fair international key escrow-An attempt by distributed trusted third agencies with threshold cryptography\u201d, Second International Workshop on Practice and Theory in Public Key Cryptography, PKC\u201999, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1560, Kamakura, Japan, March 1-3, 1999, pp.171\u2013187."},{"key":"18_CR37","unstructured":"NIST, \u201cEscrow Encryption Standard (EES)\u201d, Federal Information Processing Standards Publication (FIPS PUB) 185\u201d, 1994."},{"key":"18_CR38","series-title":"Lect Notes Comput Sci","first-page":"273","volume-title":"Proc. of ISW\u201997, Information Security Workshop","author":"K. Ohta","year":"1997","unstructured":"K. Ohta, \u201cRemarks on Blind Decryption\u201d, Okamoto, Davida, Mambo (Eds.): Proc. of ISW\u201997, Information Security Workshop, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1396, Tatsunokuchi, Ishikawa Japan, September 17-19 1997, pp.273\u2013281."},{"key":"18_CR39","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"134","DOI":"10.1007\/3-540-46885-4_16","volume-title":"Advanced in Cryptology-Eurocrypt\u201989","author":"E. Okamoto","year":"1990","unstructured":"E. Okamoto and K. Ohta, \u201cDivertible zero knowledge interactive proofs and commutative random self-reducibility\u201d, Advanced in Cryptology-Eurocrypt\u201989, Springer-Verlag, Lecture Notes in Computer Science, LNCS, 1990, pp.134\u2013149."},{"issue":"1","key":"18_CR40","first-page":"48","volume":"E82-A\/","author":"T. Okamoto","year":"1999","unstructured":"T. Okamoto, \u201cThreshold key-recovery systems for RSA\u201d IEICE Trans. Fundamentals, Vol.E82-A\/No.1, January 1999, pp.48\u201354.","journal-title":"IEICE Trans. Fundamentals"},{"issue":"4","key":"18_CR41","first-page":"127","volume":"8","author":"S.J. Park","year":"1998","unstructured":"S.J. Park, S.M. Park, D.H. Won, and D.H. Kim, \u201cAn efficient verifiable escrowed signature and its applications\u201d, Journal of the Korean Institute of Information Security and Cryptology, 8(4), 1998.12., pp.127\u2013138.","journal-title":"Journal of the Korean Institute of Information Security and Cryptology"},{"issue":"1","key":"18_CR42","doi-asserted-by":"publisher","first-page":"23","DOI":"10.1145\/280559.280563","volume":"32","author":"B. Pfitzmann","year":"1998","unstructured":"B. Pfitzmann and M. Waidner, \u201cHow to break fraud-detectable key recovery\u201d, ACM Operating Systems Review 32(1), pp.23\u201328, January 1998.","journal-title":"ACM Operating Systems Review"},{"key":"18_CR43","unstructured":"R.L. Rivest, \u201cChaffing and winnowing: Confidentiality without encryption\u201d, \nhttp:\/\/theory.lcs.mit.edu\/\u223crivest\/chaffing.txt\n\n\n, March 18, 1998 (rev. July 1, 1998)."},{"key":"18_CR44","unstructured":"R.L. Rivest, A. Shamir and D.A. Wagner, \u201cTime-lock puzzles and timed-release Crypto\u201d, March 10, 1996."},{"key":"18_CR45","series-title":"Lect Notes Comput Sci","isbn-type":"print","doi-asserted-by":"publisher","first-page":"257","DOI":"10.1007\/3-540-61996-8_45","volume-title":"Information hiding: first international workshop","author":"K. Sakurai","year":"1996","unstructured":"K. Sakurai, Y. Yamane, \u201cBlind decoding, blind undeniable signatures, and their applications to privacy protection\u201d, Information hiding: first international workshop, R.J. Anderson, Ed., vol. 1174 of Lecture Notes in Computer Science, Isaac Newton Institute, Cambridge, England, May 1996, Springer-Verlag, Berlin, Germany. ISBN 3-540-61996-8., pp.257\u2013264.","ISBN":"https:\/\/id.crossref.org\/isbn\/3540619968"},{"key":"18_CR46","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"147","DOI":"10.1007\/BFb0030417","volume-title":"Proc. of ISW\u201997, Information Security Workshop","author":"K. Sakurai","year":"1997","unstructured":"K. Sakurai, Y. Yamane, S. Miyazaki and T. Inoue, \u201cA key escrow system with protecting user\u2019s privacy by blind decoding\u201d, Proc. of ISW\u201997, Information Security Workshop, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1396, 1997, pp.147\u2013157."},{"key":"18_CR47","doi-asserted-by":"crossref","unstructured":"A. De Santis, Y. Desmedt, Y. Frankel and M. Yung, \u201cHow to share a function securely\u201d, Proceedings of the 26th Annual Symposium on Theory of Computing, ACM, 1994, pp.522\u2013533.","DOI":"10.1145\/195058.195405"},{"key":"18_CR48","unstructured":"A. Shamir, \u201cPartial key escrow: A new approach to software key escrow\u201d, Presented at Key escrow conference, Washington, D.C., September 15, 1995."},{"key":"18_CR49","series-title":"Lect Notes Comput Sci","first-page":"T65","volume-title":"Advanced in Cryptology-Eurocrypt\u201993","author":"G.J. Simmons","year":"1993","unstructured":"G.J. Simmons, \u201cSubliminal communication is easy using the DSA\u201d, Advanced in Cryptology-Eurocrypt\u201993, Springer-Verlag, Lecture Notes in Computer Science, LNCS 765, 1993, pp.T65\u2013T81."},{"key":"18_CR50","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"190","DOI":"10.1007\/3-540-68339-9_17","volume-title":"Advanced in Cryptology-Eurocrypt\u201996","author":"M. Stadler","year":"1996","unstructured":"M. Stadler, \u201cPublicly verifiable secret sharing\u201d, Advanced in Cryptology-Eurocrypt\u201996, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1070, 1996, pp.190\u2013199."},{"key":"18_CR51","unstructured":"T. Tanida, H. Tsuchiya, S. Domyo, N. Torii, M. Mambo and E. Okamoto, \u201cDesign and Implementation of a Key Recovery System\u201d, The 55th National Convention of the Information Processing Society of Japan, 2T-01, 1997."},{"issue":"8","key":"18_CR52","doi-asserted-by":"publisher","first-page":"753","DOI":"10.1049\/el:19980496","volume":"34","author":"Y. Wang","year":"1998","unstructured":"Y. Wang, \u201cAbuses of probabilistic encryption schemes\u201d, ELECTRONICS LETTERS, 16th April 1998, 34(8), pp.753\u2013754.","journal-title":"ELECTRONICS LETTERS"},{"key":"18_CR53","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"89","DOI":"10.1007\/3-540-68697-5_8","volume-title":"Advanced in Cryptology-Crypto\u201996","author":"A. Young","year":"1996","unstructured":"A. Young and M. Yung, \u201cThe dark side of black-box cryptography-or-Should we trust capstone ?\u201d, Advanced in Cryptology-Crypto\u201996, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1109, 1996, pp.89\u2013103."},{"key":"18_CR54","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"62","DOI":"10.1007\/3-540-69053-0_6","volume-title":"Advanced in Cryptology-Eurocrypt\u201997","author":"A. Young","year":"1997","unstructured":"A. Young and M. Yung, \u201cKleptography: Using cryptography against cryptography\u201d, Advanced in Cryptology-Eurocrypt\u201997, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1233, 1997, pp.62\u201374."},{"key":"18_CR55","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"264","DOI":"10.1007\/BFb0052241","volume-title":"Advanced in Cryptology-Crypto\u201997","author":"A. Young","year":"1997","unstructured":"A. Young and M. Yung, \u201cThe prevalence of kleptographic attacks on discrete-log based cryptosystems\u201d, Advanced in Cryptology-Crypto\u201997, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1294, 1997, pp.264\u2013276."},{"key":"18_CR56","series-title":"Lect Notes Comput Sci","doi-asserted-by":"publisher","first-page":"17","DOI":"10.1007\/BFb0054114","volume-title":"Advanced in Cryptology-Eurocrypt\u201998","author":"A. Young","year":"1998","unstructured":"A. Young and M. Yung, \u201cAuto-recoverable auto-certifiable cryptosystems\u201d, Advanced in Cryptology-Eurocrypt\u201998, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1403, 1998, pp.17\u201331."},{"key":"18_CR57","series-title":"Lect Notes Comput Sci","doi-asserted-by":"crossref","first-page":"306","DOI":"10.1007\/3-540-49162-7_24","volume-title":"Second International Workshop on Practice and Theory in Public Key Cryptography, PKC\u201999","author":"A. Young","year":"1999","unstructured":"A. Young and M. Yung, \u201cAuto-recoverable cryptosystems with faster initialization and the escrow hierarchy\u201d, Second International Workshop on Practice and Theory in Public Key Cryptography, PKC\u201999, Springer-Verlag, Lecture Notes in Computer Science, LNCS 1560, Kamakura, Japan, March 1-3, 1999, pp.306\u2013314."},{"key":"18_CR58","unstructured":"\u201cThreat and vulnerability model for key recovery (KR)\u201d, \nhttp:\/\/www.fcw.com\/pubs\/fcw\/1998\/0413\/web-nsareport-4-14-1998.html\n\n\n, 2\/18\/98 NSA, X3."}],"container-title":["Lecture Notes in Computer Science","Information Security"],"original-title":[],"language":"en","link":[{"URL":"http:\/\/link.springer.com\/content\/pdf\/10.1007\/3-540-47790-X_18","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2020,4,3]],"date-time":"2020-04-03T17:12:43Z","timestamp":1585933963000},"score":1,"resource":{"primary":{"URL":"http:\/\/link.springer.com\/10.1007\/3-540-47790-X_18"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[1999]]},"ISBN":["9783540666950","9783540477907"],"references-count":58,"URL":"https:\/\/doi.org\/10.1007\/3-540-47790-x_18","relation":{},"ISSN":["0302-9743","1611-3349"],"issn-type":[{"type":"print","value":"0302-9743"},{"type":"electronic","value":"1611-3349"}],"subject":[],"published":{"date-parts":[[1999]]},"assertion":[{"value":"22 October 1999","order":1,"name":"first_online","label":"First Online","group":{"name":"ChapterHistory","label":"Chapter History"}}]}}