{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,1,28]],"date-time":"2026-01-28T09:30:28Z","timestamp":1769592628561,"version":"3.49.0"},"publisher-location":"New York, NY, USA","reference-count":34,"publisher":"ACM","license":[{"start":{"date-parts":[[2022,11,7]],"date-time":"2022-11-07T00:00:00Z","timestamp":1667779200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":["dl.acm.org"],"crossmark-restriction":true},"short-container-title":[],"published-print":{"date-parts":[[2022,11,7]]},"DOI":"10.1145\/3548606.3560674","type":"proceedings-article","created":{"date-parts":[[2022,11,7]],"date-time":"2022-11-07T11:41:28Z","timestamp":1667821288000},"page":"2323-2336","update-policy":"https:\/\/doi.org\/10.1145\/crossmark-policy","source":"Crossref","is-referenced-by-count":7,"title":["The Multi-User Security of Triple Encryption, Revisited"],"prefix":"10.1145","author":[{"given":"Yusuke","family":"Naito","sequence":"first","affiliation":[{"name":"Mitsubishi Electric Corporation, Kamakura, Kanagawa, Japan"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Yu","family":"Sasaki","sequence":"additional","affiliation":[{"name":"NTT Social Informatics Laboratories, Musashino, Tokyo, Japan"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Takeshi","family":"Sugawara","sequence":"additional","affiliation":[{"name":"The University of Electro-Communications, Chofu, Tokyo, Japan"}],"role":[{"role":"author","vocabulary":"crossref"}]},{"given":"Kan","family":"Yasuda","sequence":"additional","affiliation":[{"name":"NTT Social Informatics Laboratories, Musashino, Tokyo, Japan"}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"320","published-online":{"date-parts":[[2022,11,7]]},"reference":[{"key":"e_1_3_2_1_1_1","volume-title":"The Preimage Security of Double-Block-Length Compression Functions. In ASIACRYPT 2011 (LNCS","volume":"251","author":"Armknecht Frederik","unstructured":"Frederik Armknecht , Ewan Fleischmann , Matthias Krause , Jooyoung Lee , Martijn Stam , and John P. Steinberger . 2011 . The Preimage Security of Double-Block-Length Compression Functions. In ASIACRYPT 2011 (LNCS , Vol. 7073). Springer, 233-- 251 . Frederik Armknecht, Ewan Fleischmann, Matthias Krause, Jooyoung Lee, Martijn Stam, and John P. Steinberger. 2011. The Preimage Security of Double-Block-Length Compression Functions. In ASIACRYPT 2011 (LNCS, Vol. 7073). Springer, 233--251."},{"key":"e_1_3_2_1_2_1","unstructured":"Elaine Barker and Nicky Mouha. 2017. NIST Special Publication 800--67 Rev. 2: Recommendation for the Triple Data Encryption Algorithm (TDEA) Block Cipher. https:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800--67r2.pdf. Accessed: 2022-05-02.  Elaine Barker and Nicky Mouha. 2017. NIST Special Publication 800--67 Rev. 2: Recommendation for the Triple Data Encryption Algorithm (TDEA) Block Cipher. https:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800--67r2.pdf. Accessed: 2022-05-02."},{"key":"e_1_3_2_1_3_1","unstructured":"Elaine Barker and Allen Roginsky. 2011. NIST Special Publication 800--131A: Transitioning the Use of Cryptographic Algorithms and Key Lengths. https:\/\/nvlpubs.nist.gov\/nistpubs\/Legacy\/SP\/nistspecialpublication800--131a.pdf.  Elaine Barker and Allen Roginsky. 2011. NIST Special Publication 800--131A: Transitioning the Use of Cryptographic Algorithms and Key Lengths. https:\/\/nvlpubs.nist.gov\/nistpubs\/Legacy\/SP\/nistspecialpublication800--131a.pdf."},{"key":"e_1_3_2_1_4_1","unstructured":"Elaine Barker and Allen Roginsky. 2019. NIST Special Publication 800--131A Revision 2: Transitioning the Use of Cryptographic Algorithms and Key Lengths. https:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800--131Ar2.pdf.  Elaine Barker and Allen Roginsky. 2019. NIST Special Publication 800--131A Revision 2: Transitioning the Use of Cryptographic Algorithms and Key Lengths. https:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800--131Ar2.pdf."},{"key":"e_1_3_2_1_5_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-53018-4_10"},{"key":"e_1_3_2_1_6_1","doi-asserted-by":"crossref","unstructured":"Karthikeyan Bhargavan and Ga\u00eb tan Leurent. 2016. On the Practical (In-)Security of 64-bit Block Ciphers: Collision Attacks on HTTP over TLS and OpenVPN. IACR Cryptol. ePrint Arch. (2016) 798. http:\/\/eprint.iacr.org\/2016\/798  Karthikeyan Bhargavan and Ga\u00eb tan Leurent. 2016. On the Practical (In-)Security of 64-bit Block Ciphers: Collision Attacks on HTTP over TLS and OpenVPN. IACR Cryptol. ePrint Arch. (2016) 798. http:\/\/eprint.iacr.org\/2016\/798","DOI":"10.1145\/2976749.2978423"},{"key":"e_1_3_2_1_7_1","doi-asserted-by":"publisher","DOI":"10.1016\/S0020-0190(02)00269-7"},{"key":"e_1_3_2_1_8_1","volume-title":"Fine-Tuning the ISO\/IEC Standard LightMAC. In ASIACRYPT 2021 (LNCS","volume":"519","author":"Chattopadhyay Soumya","year":"2021","unstructured":"Soumya Chattopadhyay , Ashwin Jha , and Mridul Nandi . 2021 . Fine-Tuning the ISO\/IEC Standard LightMAC. In ASIACRYPT 2021 (LNCS , Vol. 13092). Springer, 490-- 519 . Soumya Chattopadhyay, Ashwin Jha, and Mridul Nandi. 2021. Fine-Tuning the ISO\/IEC Standard LightMAC. In ASIACRYPT 2021 (LNCS, Vol. 13092). Springer, 490--519."},{"key":"e_1_3_2_1_9_1","volume-title":"Steinberger","author":"Dai Yuanxi","year":"2014","unstructured":"Yuanxi Dai , Jooyoung Lee , Bart Mennink , and John P . Steinberger . 2014 . The Security of Multiple Encryption in the Ideal Cipher Model. In CRYPTO 2014, Vol. 8616 . Springer , 20--38. Yuanxi Dai, Jooyoung Lee, Bart Mennink, and John P. Steinberger. 2014. The Security of Multiple Encryption in the Ideal Cipher Model. In CRYPTO 2014, Vol. 8616. Springer, 20--38."},{"key":"e_1_3_2_1_10_1","volume-title":"CCS 2021 (Virtual Event, Republic of Korea). ACM","author":"Degabriele Jean Paul","unstructured":"Jean Paul Degabriele , J\u00e9r\u00f4me Govinden , Felix G\u00fcnther , and Kenneth G. Paterson . 2021. The Security of ChaCha20-Poly1305 in the Multi-User Setting . In CCS 2021 (Virtual Event, Republic of Korea). ACM , 1981--2003. Jean Paul Degabriele, J\u00e9r\u00f4me Govinden, Felix G\u00fcnther, and Kenneth G. Paterson. 2021. The Security of ChaCha20-Poly1305 in the Multi-User Setting. In CCS 2021 (Virtual Event, Republic of Korea). ACM, 1981--2003."},{"key":"e_1_3_2_1_11_1","unstructured":"Morris Dworkin. 2016. NIST Special Publication 800--38 Recommendation for Block Cipher Modes of Operation: The CMAC Mode for Authentication. https:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800--38B.pdf. Accessed: 2022-05-02.  Morris Dworkin. 2016. NIST Special Publication 800--38 Recommendation for Block Cipher Modes of Operation: The CMAC Mode for Authentication. https:\/\/nvlpubs.nist.gov\/nistpubs\/SpecialPublications\/NIST.SP.800--38B.pdf. Accessed: 2022-05-02."},{"key":"e_1_3_2_1_12_1","unstructured":"The Electronic Frontier Foundation (John Gilmore Eds.). 1998. Cracking DES: Secrets of Encryption Research Wiretap Politics & Chip Design. O'Reilly and Associates (1998).  The Electronic Frontier Foundation (John Gilmore Eds.). 1998. Cracking DES: Secrets of Encryption Research Wiretap Politics & Chip Design. O'Reilly and Associates (1998)."},{"key":"e_1_3_2_1_13_1","unstructured":"EMVCo. 2011. EMV Integrated Circuit Card Specifications for Payment Systems Book2 Security and Key Management Version 4.3.  EMVCo. 2011. EMV Integrated Circuit Card Specifications for Payment Systems Book2 Security and Key Management Version 4.3."},{"key":"e_1_3_2_1_14_1","unstructured":"Google. 2021. Titan H1D3 Secure Microcontroller with Crypto Library v0.1.4 Security Target Lite Version: 2.4. https:\/\/www.commoncriteriaportal.org\/files\/epfiles\/[STL][2.4]%20Titan%20H1D3%20Security%20Target%20Lite%20v2.4.pdf. Accessed: 2022-05-02.  Google. 2021. Titan H1D3 Secure Microcontroller with Crypto Library v0.1.4 Security Target Lite Version: 2.4. https:\/\/www.commoncriteriaportal.org\/files\/epfiles\/[STL][2.4]%20Titan%20H1D3%20Security%20Target%20Lite%20v2.4.pdf. Accessed: 2022-05-02."},{"key":"e_1_3_2_1_15_1","doi-asserted-by":"publisher","DOI":"10.1109\/TC.2008.80"},{"key":"e_1_3_2_1_16_1","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-662-53018-4_1"},{"key":"e_1_3_2_1_17_1","volume-title":"The Multi-user Security of Double Encryption. In EUROCRYPT","volume":"10211","author":"Hoang Viet Tung","year":"2017","unstructured":"Viet Tung Hoang and Stefano Tessaro . 2017 . The Multi-user Security of Double Encryption. In EUROCRYPT 2017, Vol. 10211 . 381--411. Viet Tung Hoang and Stefano Tessaro. 2017. The Multi-user Security of Double Encryption. In EUROCRYPT 2017, Vol. 10211. 381--411."},{"key":"e_1_3_2_1_18_1","volume-title":"The Multi-user Security of GCM","author":"Hoang Viet Tung","year":"2019","unstructured":"Viet Tung Hoang , Stefano Tessaro , and Aishwarya Thiruvengadam . 2018. The Multi-user Security of GCM , Revisited : Tight Bounds for Nonce Randomization. In CCS 2019 . ACM , 1429--1440. Viet Tung Hoang, Stefano Tessaro, and Aishwarya Thiruvengadam. 2018. The Multi-user Security of GCM, Revisited: Tight Bounds for Nonce Randomization. In CCS 2019. ACM, 1429--1440."},{"key":"e_1_3_2_1_19_1","unstructured":"Infeneon. 2021. Public Security Target IFX_CCI_000011h IFX_CCI_00001Bh IFX_CCI_00001Eh IFX_CCI_000025h G12 Rev. 1.5. https:\/\/www.commoncriteriaportal.org\/files\/epfiles\/1025V4b_pdf.pdf. Accessed: 2022-05-02.  Infeneon. 2021. Public Security Target IFX_CCI_000011h IFX_CCI_00001Bh IFX_CCI_00001Eh IFX_CCI_000025h G12 Rev. 1.5. https:\/\/www.commoncriteriaportal.org\/files\/epfiles\/1025V4b_pdf.pdf. Accessed: 2022-05-02."},{"key":"e_1_3_2_1_20_1","unstructured":"ISO. 2005. ISO\/TR 19038:2005 Banking and related financial services - Triple DEA - Modes of operation - Implementation guidelines. (2005).  ISO. 2005. ISO\/TR 19038:2005 Banking and related financial services - Triple DEA - Modes of operation - Implementation guidelines. (2005)."},{"key":"e_1_3_2_1_21_1","unstructured":"ISO. 2010a. ISO\/IEC 18033--3:2010 Information Technology - Security Techniques - Encryption Algorithms - Part 3: Block Ciphers. (2010).  ISO. 2010a. ISO\/IEC 18033--3:2010 Information Technology - Security Techniques - Encryption Algorithms - Part 3: Block Ciphers. (2010)."},{"key":"e_1_3_2_1_22_1","unstructured":"ISO. 2010b. ISO\/TR 14742:2010 Financial services - Recommendations on Cryptographic Algorithms and Their Use. (2010).  ISO. 2010b. ISO\/TR 14742:2010 Financial services - Recommendations on Cryptographic Algorithms and Their Use. (2010)."},{"key":"e_1_3_2_1_23_1","doi-asserted-by":"publisher","DOI":"10.1007\/s001450010015"},{"key":"e_1_3_2_1_24_1","volume-title":"Paterson","author":"Luykx Atul","year":"2017","unstructured":"Atul Luykx , Bart Mennink , and Kenneth G . Paterson . 2017 . Analyzing Multi-key Security Degradation. In ASIACRYPT 2017, Vol. 10625 . Springer , 575--605. Atul Luykx, Bart Mennink, and Kenneth G. Paterson. 2017. Analyzing Multi-key Security Degradation. In ASIACRYPT 2017, Vol. 10625. Springer, 575--605."},{"key":"e_1_3_2_1_25_1","volume-title":"Multi-key Security: The Even-Mansour Construction Revisited. In CRYPTO","author":"Mouha Nicky","year":"2015","unstructured":"Nicky Mouha and Atul Luykx . 2015 . Multi-key Security: The Even-Mansour Construction Revisited. In CRYPTO 2015, Vol. 9215 . Springer , 209--223. Nicky Mouha and Atul Luykx. 2015. Multi-key Security: The Even-Mansour Construction Revisited. In CRYPTO 2015, Vol. 9215. Springer, 209--223."},{"key":"e_1_3_2_1_26_1","volume-title":"The Multi-User Security of Triple Encryption","author":"Naito Yusuke","unstructured":"Yusuke Naito , Yu Sasaki , Takeshi Sugawara , and Kan Yasuda . 2022. The Multi-User Security of Triple Encryption , Revisited : Exact Security, Strengthening, and Application to TDES (Full Version) . Yusuke Naito, Yu Sasaki, Takeshi Sugawara, and Kan Yasuda. 2022. The Multi-User Security of Triple Encryption, Revisited: Exact Security, Strengthening, and Application to TDES (Full Version)."},{"key":"e_1_3_2_1_27_1","unstructured":"NIST. 1999. FIPS Pub. 46--3: Data encryption standard. https:\/\/csrc.nist.gov\/csrc\/media\/publications\/fips\/46\/3\/archive\/1999--10--25\/documents\/fips46--3.pdf. Accessed: 2022-05-02.  NIST. 1999. FIPS Pub. 46--3: Data encryption standard. https:\/\/csrc.nist.gov\/csrc\/media\/publications\/fips\/46\/3\/archive\/1999--10--25\/documents\/fips46--3.pdf. Accessed: 2022-05-02."},{"key":"e_1_3_2_1_28_1","volume-title":"SAC","volume":"5381","author":"Patarin Jacques","year":"2008","unstructured":"Jacques Patarin . 2008 . The \"Coefficients H\" Technique . In SAC 2008, Vol. 5381 . Springer, 328--345. Jacques Patarin. 2008. The \"Coefficients H\" Technique. In SAC 2008, Vol. 5381. Springer, 328--345."},{"key":"#cr-split#-e_1_3_2_1_29_1.1","doi-asserted-by":"crossref","unstructured":"Eric Rescorla. 2018. RFC 8446: The Transport Layer Security (TLS) Protocol Version 1.3. https:\/\/doi.org\/10.17487\/RFC8446. 10.17487\/RFC8446","DOI":"10.17487\/RFC8446"},{"key":"#cr-split#-e_1_3_2_1_29_1.2","doi-asserted-by":"crossref","unstructured":"Eric Rescorla. 2018. RFC 8446: The Transport Layer Security (TLS) Protocol Version 1.3. https:\/\/doi.org\/10.17487\/RFC8446.","DOI":"10.17487\/RFC8446"},{"key":"e_1_3_2_1_30_1","doi-asserted-by":"crossref","unstructured":"Eric Rescorla Hannes Tschofenig and Nagendra Modadugu. 2021. The Datagram Transport Layer Security (DTLS) Protocol Version 1.3 -- draft-ietf-tls-dtls13--43. https:\/\/tools.ietf.org\/html\/draft-ietf-tls-dtls13--43.  Eric Rescorla Hannes Tschofenig and Nagendra Modadugu. 2021. The Datagram Transport Layer Security (DTLS) Protocol Version 1.3 -- draft-ietf-tls-dtls13--43. https:\/\/tools.ietf.org\/html\/draft-ietf-tls-dtls13--43.","DOI":"10.17487\/RFC9147"},{"key":"e_1_3_2_1_31_1","unstructured":"Rich Salz. 2016. The SWEET32 Issue CVE-2016--2183. https:\/\/www.openssl.org\/blog\/blog\/2016\/08\/24\/sweet32\/.  Rich Salz. 2016. The SWEET32 Issue CVE-2016--2183. https:\/\/www.openssl.org\/blog\/blog\/2016\/08\/24\/sweet32\/."},{"key":"e_1_3_2_1_32_1","first-page":"1","article-title":"Using TLS to Secure QUIC","volume":"9001","author":"Thomson Martin","year":"2021","unstructured":"Martin Thomson and Sean Turner . 2021 . Using TLS to Secure QUIC . RFC , Vol. 9001 (2021), 1 -- 52 . https:\/\/doi.org\/10.17487\/RFC9001 10.17487\/RFC9001 Martin Thomson and Sean Turner. 2021. Using TLS to Secure QUIC. RFC , Vol. 9001 (2021), 1--52. https:\/\/doi.org\/10.17487\/RFC9001","journal-title":"RFC"},{"key":"e_1_3_2_1_33_1","unstructured":"Michael Ward. 2021. How EMVCo is Supporting Card Data Encryption Advancements for Card Personalisation. https:\/\/www.emvco.com\/emv_insights_post\/how-emvco-is-supporting-card-data-encryption-advancements-for-card-personalisation. Accessed: 2022-05-02. io  Michael Ward. 2021. How EMVCo is Supporting Card Data Encryption Advancements for Card Personalisation. https:\/\/www.emvco.com\/emv_insights_post\/how-emvco-is-supporting-card-data-encryption-advancements-for-card-personalisation. Accessed: 2022-05-02. io"}],"event":{"name":"CCS '22: 2022 ACM SIGSAC Conference on Computer and Communications Security","location":"Los Angeles CA USA","acronym":"CCS '22","sponsor":["SIGSAC ACM Special Interest Group on Security, Audit, and Control"]},"container-title":["Proceedings of the 2022 ACM SIGSAC Conference on Computer and Communications Security"],"original-title":[],"link":[{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3548606.3560674","content-type":"unspecified","content-version":"vor","intended-application":"text-mining"},{"URL":"https:\/\/dl.acm.org\/doi\/pdf\/10.1145\/3548606.3560674","content-type":"unspecified","content-version":"vor","intended-application":"similarity-checking"}],"deposited":{"date-parts":[[2025,6,17]],"date-time":"2025-06-17T17:48:59Z","timestamp":1750182539000},"score":1,"resource":{"primary":{"URL":"https:\/\/dl.acm.org\/doi\/10.1145\/3548606.3560674"}},"subtitle":["Exact Security, Strengthening, and Application to TDES"],"short-title":[],"issued":{"date-parts":[[2022,11,7]]},"references-count":34,"alternative-id":["10.1145\/3548606.3560674","10.1145\/3548606"],"URL":"https:\/\/doi.org\/10.1145\/3548606.3560674","relation":{},"subject":[],"published":{"date-parts":[[2022,11,7]]},"assertion":[{"value":"2022-11-07","order":2,"name":"published","label":"Published","group":{"name":"publication_history","label":"Publication History"}}]}}