{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,4,9]],"date-time":"2026-04-09T22:34:20Z","timestamp":1775774060783,"version":"3.50.1"},"reference-count":44,"publisher":"International Association for Cryptologic Research","license":[{"start":{"date-parts":[[2024,1,8]],"date-time":"2024-01-08T00:00:00Z","timestamp":1704672000000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IACR CiC"],"accepted":{"date-parts":[[2024,3,5]]},"abstract":"<jats:p>        Fully Homomorphic Encryption (FHE) is a powerful tool to achieve non-interactive privacy preserving protocols with optimal computation\/communication complexity.         However, the main disadvantage is that the actual communication cost (bandwidth) is high due to the large size of FHE ciphertexts.         As a solution,         a technique called transciphering (also known as Hybrid Homomorphic Encryption) was introduced to achieve almost optimal bandwidth for such protocols.          However, all existing works require clients to fix a  precision for the messages or a mathematical structure for the message space beforehand. It results in unwanted constraints          on the plaintext size or underlying structure of FHE based applications.<\/jats:p>\n          <jats:p> In this article, we introduce a new approach for transciphering which does not require fixed message precision decided by the client, for the first time. In more detail, a client uses any kind of FHE-friendly symmetric cipher for <mml:math xmlns:mml=\"http:\/\/www.w3.org\/1998\/Math\/MathML\">\n              <mml:mrow>\n                <mml:mo stretchy=\"false\">{<\/mml:mo>\n                <mml:mn>0<\/mml:mn>\n                <mml:mo>,<\/mml:mo>\n                <mml:mn>1<\/mml:mn>\n                <mml:mo stretchy=\"false\">}<\/mml:mo>\n              <\/mml:mrow>\n            <\/mml:math> to send its input data encrypted bit-by-bit, then the server can choose a precision <mml:math xmlns:mml=\"http:\/\/www.w3.org\/1998\/Math\/MathML\">\n              <mml:mrow>\n                <mml:mi>p<\/mml:mi>\n              <\/mml:mrow>\n            <\/mml:math> depending on the application and homomorphically transforms the encrypted bits into FHE ciphertexts encrypting integers in <mml:math xmlns:mml=\"http:\/\/www.w3.org\/1998\/Math\/MathML\">\n              <mml:mrow>\n                <mml:msub>\n                  <mml:mi>\u2124<\/mml:mi>\n                  <mml:mi>p<\/mml:mi>\n                <\/mml:msub>\n              <\/mml:mrow>\n            <\/mml:math>. To illustrate our new technique, we evaluate a transciphering using FiLIP cipher and adapt the most practical homomorphic evaluation technique [CCS'22] to keep the practical latency. As a result, our proof-of-concept implementation for <mml:math xmlns:mml=\"http:\/\/www.w3.org\/1998\/Math\/MathML\">\n              <mml:mrow>\n                <mml:mi>p<\/mml:mi>\n              <\/mml:mrow>\n            <\/mml:math> from <mml:math xmlns:mml=\"http:\/\/www.w3.org\/1998\/Math\/MathML\">\n              <mml:mrow>\n                <mml:msup>\n                  <mml:mn>2<\/mml:mn>\n                  <mml:mn>2<\/mml:mn>\n                <\/mml:msup>\n              <\/mml:mrow>\n            <\/mml:math> to <mml:math xmlns:mml=\"http:\/\/www.w3.org\/1998\/Math\/MathML\">\n              <mml:mrow>\n                <mml:msup>\n                  <mml:mn>2<\/mml:mn>\n                  <mml:mn>8<\/mml:mn>\n                <\/mml:msup>\n              <\/mml:mrow>\n            <\/mml:math> takes only from <mml:math xmlns:mml=\"http:\/\/www.w3.org\/1998\/Math\/MathML\">\n              <mml:mrow>\n                <mml:mn>13<\/mml:mn>\n              <\/mml:mrow>\n            <\/mml:math> ms to <mml:math xmlns:mml=\"http:\/\/www.w3.org\/1998\/Math\/MathML\">\n              <mml:mrow>\n                <mml:mn>137<\/mml:mn>\n              <\/mml:mrow>\n            <\/mml:math> ms. <\/jats:p>","DOI":"10.62056\/anxrxrxqi","type":"journal-article","created":{"date-parts":[[2024,4,9]],"date-time":"2024-04-09T19:27:10Z","timestamp":1712690830000},"update-policy":"https:\/\/doi.org\/10.62056\/adfjwm02dj","source":"Crossref","is-referenced-by-count":9,"title":["Towards Practical Transciphering for FHE with Setup Independent of the Plaintext Space"],"prefix":"10.62056","author":[{"ORCID":"https:\/\/orcid.org\/0000-0001-5733-4341","authenticated-orcid":false,"given":"Pierrick","family":"M\u00e9aux","sequence":"first","affiliation":[{"name":"University of Luxembourg","place":["Esch sur Alzette, Luxembourg"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-0557-3540","authenticated-orcid":false,"given":"Jeongeun","family":"Park","sequence":"additional","affiliation":[{"name":"Norwegian University of Science and Technology (NTNU)","place":["Trondheim, Norway"]}],"role":[{"role":"author","vocabulary":"crossref"}]},{"ORCID":"https:\/\/orcid.org\/0000-0003-1303-3760","authenticated-orcid":false,"given":"Hilder","family":"Pereira","sequence":"additional","affiliation":[{"name":"University of Campinas (UNICAMP)","place":["Campinas, Brazil"]}],"role":[{"role":"author","vocabulary":"crossref"}]}],"member":"48349","published-online":{"date-parts":[[2024,4,9]]},"reference":[{"key":"ref1:tueno2020non","doi-asserted-by":"publisher","first-page":"174","DOI":"10.1007\/978-3-030-49669-2_10","article-title":"Non-interactive private decision tree evaluation","volume-title":"IFIP Annual Conference on Data and Applications Security and\n  Privacy","author":"Anselme Tueno","year":"2020"},{"key":"ref2:PoPets:JubSir21","doi-asserted-by":"publisher","first-page":"111","DOI":"10.2478\/popets-2021-0020","article-title":"Efficient homomorphic evaluation of k-NN classifiers","volume":"2021","author":"Martin Zuber","year":"2021","journal-title":"Proceedings on Privacy Enhancing Technologies"},{"key":"ref3:SortingHat","series-title":"CCS '22","isbn-type":"print","doi-asserted-by":"publisher","first-page":"563","DOI":"10.1145\/3548606.3560702","article-title":"SortingHat: Efficient Private Decision Tree Evaluation via\n  Homomorphic Encryption and Transciphering","volume-title":"Proceedings of the 2022 ACM SIGSAC Conference on Computer\n  and Communications Security","author":"Kelong Cong","year":"2022","ISBN":"https:\/\/id.crossref.org\/isbn\/9781450394505"},{"key":"ref4:MELECON:BraPeiMea22","doi-asserted-by":"publisher","first-page":"18","DOI":"10.1109\/MELECON53508.2022.9843009","article-title":"Homomorphic Encryption for Privacy-Friendly Augmented\n  Democracy","volume-title":"2022 IEEE 21st Mediterranean Electrotechnical Conference\n  (MELECON)","author":"Matthieu Brabant","year":"2022"},{"key":"ref5:Nature:KJLIS22","doi-asserted-by":"publisher","DOI":"10.1038\/s41467-022-32168-5","article-title":"Secure human action recognition by encrypted neural network\n  inference","volume":"13","author":"Miran Kim","year":"2022","journal-title":"Nature Communications"},{"key":"ref6:ZAMANN","article-title":"Deep Neural Networks for Encrypted Inference with TFHE","author":"Andrei Stoian","year":"2023"},{"key":"ref7:CCS:CheChiRen19","doi-asserted-by":"publisher","first-page":"345","DOI":"10.1145\/3319535.3354226","article-title":"Onion Ring ORAM: Efficient Constant Bandwidth Oblivious\n  RAM from (Leveled) TFHE","volume-title":"ACM CCS 2019: 26th Conference on Computer and Communications\n  Security","author":"Hao Chen","year":"2019"},{"key":"ref8:Panacea","article-title":"Panacea: Non-interactive and Stateless Oblivious RAM","author":"Kelong Cong","year":"2023"},{"key":"ref9:JC:CGGI20","doi-asserted-by":"publisher","first-page":"34","DOI":"10.1007\/s00145-019-09319-x","article-title":"TFHE: Fast Fully Homomorphic Encryption Over the Torus","volume":"33","author":"Ilaria Chillotti","year":"2020","journal-title":"Journal of Cryptology"},{"key":"ref10:CCSW:NaeLauVai11","doi-asserted-by":"publisher","first-page":"113","DOI":"10.1145\/2046660.2046682","article-title":"Can homomorphic encryption be practical?","volume-title":"Proceedings of the 3rd ACM Cloud Computing Security\n  Workshop, CCSW 2011, Chicago, IL, USA, October 21, 2011","author":"Michael Naehrig","year":"2011"},{"key":"ref11:EC:ARSTZ15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"430","DOI":"10.1007\/978-3-662-46800-5_17","article-title":"Ciphers for MPC and FHE","volume-title":"Advances in Cryptology \u2013 EUROCRYPT\u00a02015, Part\u00a0I","volume":"9056","author":"Martin R. Albrecht","year":"2015"},{"key":"ref12:FSE:CCFLNP16","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"313","DOI":"10.1007\/978-3-662-52993-5_16","article-title":"Stream Ciphers: A Practical Solution for Efficient\n  Homomorphic-Ciphertext Compression","volume-title":"Fast Software Encryption \u2013 FSE\u00a02016","volume":"9783","author":"Anne Canteaut","year":"2016"},{"key":"ref13:EC:MJSC16","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"311","DOI":"10.1007\/978-3-662-49890-3_13","article-title":"Towards Stream Ciphers for Efficient FHE with Low-Noise\n  Ciphertexts","volume-title":"Advances in Cryptology \u2013 EUROCRYPT\u00a02016, Part\u00a0I","volume":"9665","author":"Pierrick M\u00e9aux","year":"2016"},{"key":"ref14:C:DEGLLL18","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"662","DOI":"10.1007\/978-3-319-96884-1_22","article-title":"Rasta: A Cipher with Low ANDdepth and Few ANDs per\n  Bit","volume-title":"Advances in Cryptology \u2013 CRYPTO\u00a02018, Part\u00a0I","volume":"10991","author":"Christoph Dobraunig","year":"2018"},{"key":"ref15:Dasta","doi-asserted-by":"publisher","first-page":"46","DOI":"10.13154\/tosc.v2020.i3.46-86","article-title":"Dasta \u2013 Alternative Linear Layer for Rasta","volume":"2020","author":"Phil Hebborn","year":"2020","journal-title":"IACR Transactions on Symmetric Cryptology"},{"key":"ref16:DGHRSW23Pasta","doi-asserted-by":"publisher","first-page":"30","DOI":"10.46586\/tches.v2023.i3.30-73","article-title":"Pasta: A Case for Hybrid Homomorphic Encryption","volume":"2023","author":"Christoph Dobraunig","year":"2023","journal-title":"IACR Transactions on Cryptographic Hardware and Embedded\n  Systems"},{"key":"ref17:INDOCRYPT:MCJS19","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"68","DOI":"10.1007\/978-3-030-35423-7_4","article-title":"Improved Filter Permutators for Efficient FHE: Better\n  Instances and Implementations","volume-title":"Progress in Cryptology - INDOCRYPT\u00a02019: 20th International\n  Conference in Cryptology in India","volume":"11898","author":"Pierrick M\u00e9aux","year":"2019"},{"key":"ref18:Masta","doi-asserted-by":"publisher","first-page":"194741","DOI":"10.1109\/ACCESS.2020.3033564","article-title":"Masta: An HE-Friendly Cipher Using Modular Arithmetic","volume":"8","author":"Jincheol Ha","year":"2020","journal-title":"IEEE Access"},{"key":"ref19:AC:CHKLLLMY21","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"640","DOI":"10.1007\/978-3-030-92078-4_22","article-title":"Transciphering Framework for Approximate Homomorphic\n  Encryption","volume-title":"Advances in Cryptology \u2013 ASIACRYPT\u00a02021, Part\u00a0III","volume":"13092","author":"Jihoon Cho","year":"2021"},{"key":"ref20:EC:HKLLS22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"581","DOI":"10.1007\/978-3-031-06944-4_20","article-title":"Rubato: Noisy Ciphers for Approximate Homomorphic\n  Encryption","volume-title":"Advances in Cryptology \u2013 EUROCRYPT\u00a02022, Part\u00a0I","volume":"13275","author":"Jincheol Ha","year":"2022"},{"key":"ref21:chagri","series-title":"CCS '22","isbn-type":"print","doi-asserted-by":"publisher","first-page":"139","DOI":"10.1145\/3548606.3559364","article-title":"Chaghri - A FHE-Friendly Block Cipher","volume-title":"Proceedings of the 2022 ACM SIGSAC Conference on Computer\n  and Communications Security","author":"Tomer Ashur","year":"2022","ISBN":"https:\/\/id.crossref.org\/isbn\/9781450394505"},{"key":"ref22:AC:CHMS22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"32","DOI":"10.1007\/978-3-031-22969-5_2","article-title":"Towards Case-Optimized Hybrid Homomorphic Encryption -\n  Featuring the Elisabeth Stream Cipher","volume-title":"Advances in Cryptology \u2013 ASIACRYPT\u00a02022, Part\u00a0III","volume":"13793","author":"Orel Cosseron","year":"2022"},{"key":"ref23:AC:BIPPS22","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"188","DOI":"10.1007\/978-3-031-22966-4_7","article-title":"FINAL: Faster FHE Instantiated with NTRU and LWE","volume-title":"Advances in Cryptology \u2013 ASIACRYPT\u00a02022, Part\u00a0II","volume":"13792","author":"Charlotte Bonte","year":"2022"},{"key":"ref24:TCC:GenHal19","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"438","DOI":"10.1007\/978-3-030-36033-7_17","article-title":"Compressible FHE with Applications to PIR","volume-title":"TCC\u00a02019: 17th Theory of Cryptography Conference, Part\u00a0II","volume":"11892","author":"Craig Gentry","year":"2019"},{"key":"ref25:TCC:BDGM19","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"407","DOI":"10.1007\/978-3-030-36033-7_16","article-title":"Leveraging Linear Decryption: Rate-1 Fully-Homomorphic\n  Encryption and Time-Lock Puzzles","volume-title":"TCC\u00a02019: 17th Theory of Cryptography Conference, Part\u00a0II","volume":"11892","author":"Zvika Brakerski","year":"2019"},{"key":"ref26:SP:MenWu22","doi-asserted-by":"publisher","first-page":"930","DOI":"10.1109\/SP46214.2022.9833700","article-title":"SPIRAL: Fast, High-Rate Single-Server PIR via FHE\n  Composition","volume-title":"2022 IEEE Symposium on Security and Privacy","author":"Samir Jordan Menon","year":"2022"},{"key":"ref27:Usenix:AOSV23","isbn-type":"print","doi-asserted-by":"publisher","first-page":"4751","DOI":"10.5555\/3620237.3620503","article-title":"CSHER: A System for Compact Storage with HE-Retrieval","volume-title":"32nd USENIX Security Symposium (USENIX Security 23)","author":"Adi Akavia","year":"2023","ISBN":"https:\/\/id.crossref.org\/isbn\/9781939133373"},{"key":"ref28:JLP23","article-title":"Practical Randomized Lattice Gadget Decomposition With\n  Application to FHE","author":"Sohyun Jeon","year":"2023"},{"key":"ref29:ITCS:BraGenVai12","doi-asserted-by":"publisher","first-page":"309","DOI":"10.1145\/2090236.2090262","article-title":"(Leveled) fully homomorphic encryption without\n  bootstrapping","volume-title":"ITCS 2012: 3rd Innovations in Theoretical Computer Science","author":"Zvika Brakerski","year":"2012"},{"key":"ref30:EPRINT:FanVer12","article-title":"Somewhat Practical Fully Homomorphic Encryption","author":"Junfeng Fan","year":"2012"},{"key":"ref31:AC:CKKS17","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"409","DOI":"10.1007\/978-3-319-70694-8_15","article-title":"Homomorphic Encryption for Arithmetic of Approximate\n  Numbers","volume-title":"Advances in Cryptology \u2013 ASIACRYPT\u00a02017, Part\u00a0I","volume":"10624","author":"Jung Hee Cheon","year":"2017"},{"key":"ref32:EC:DucMic15","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"617","DOI":"10.1007\/978-3-662-46800-5_24","article-title":"FHEW: Bootstrapping Homomorphic Encryption in Less Than a\n  Second","volume-title":"Advances in Cryptology \u2013 EUROCRYPT\u00a02015, Part\u00a0I","volume":"9056","author":"L\u00e9o Ducas","year":"2015"},{"key":"ref33:AC:CGGI16","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"3","DOI":"10.1007\/978-3-662-53887-6_1","article-title":"Faster Fully Homomorphic Encryption: Bootstrapping in Less\n  Than 0.1 Seconds","volume-title":"Advances in Cryptology \u2013 ASIACRYPT\u00a02016, Part\u00a0I","volume":"10031","author":"Ilaria Chillotti","year":"2016"},{"key":"ref34:PKC:Pereira21","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"331","DOI":"10.1007\/978-3-030-75245-3_13","article-title":"Bootstrapping Fully Homomorphic Encryption over the Integers\n  in Less than One Second","volume-title":"PKC\u00a02021: 24th International Conference on Theory and\n  Practice of Public Key Cryptography, Part\u00a0I","volume":"12710","author":"Hilder Vitor Lima Pereira","year":"2021"},{"key":"ref35:INDOCRYPT:HofMeaRic20","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"39","DOI":"10.1007\/978-3-030-65277-7_3","article-title":"Transciphering, Using FiLIP and TFHE for an Efficient\n  Delegation of Computation","volume-title":"Progress in Cryptology - INDOCRYPT\u00a02020: 21st International\n  Conference in Cryptology in India","volume":"12578","author":"Cl\u00e9ment Hoffmann","year":"2020"},{"key":"ref36:IEEE:CarMea22","doi-asserted-by":"publisher","first-page":"3404","DOI":"10.1109\/TIT.2021.3139804","article-title":"A Complete Study of Two Classes of Boolean Functions: Direct\n  Sums of Monomials and Threshold Functions","volume":"68","author":"Claude Carlet","year":"2022","journal-title":"IEEE Trans. Inf. Theory"},{"key":"ref37:APS15","doi-asserted-by":"crossref","first-page":"169","DOI":"10.1515\/jmc-2015-0016","article-title":"On the concrete hardness of Learning with Errors","volume":"9","author":"Martin R. Albrecht","year":"2015","journal-title":"Journal of Mathematical Cryptology"},{"key":"ref38:AC:DucWoe21","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"3","DOI":"10.1007\/978-3-030-92068-5_1","article-title":"NTRU Fatigue: How Stretched is Overstretched?","volume-title":"Advances in Cryptology \u2013 ASIACRYPT\u00a02021, Part\u00a0IV","volume":"13093","author":"L\u00e9o Ducas","year":"2021"},{"key":"ref39:GHJR23CryptAnalysisElis","isbn-type":"print","doi-asserted-by":"publisher","first-page":"256","DOI":"10.1007\/978-981-99-8727-6_9","article-title":"Cryptanalysis of\u00a0Elisabeth-4","volume-title":"Advances in Cryptology \u2013 ASIACRYPT 2023","author":"Henri Gilbert","year":"2023","ISBN":"https:\/\/id.crossref.org\/isbn\/9789819987276"},{"key":"ref40:eprint:HofMeaSta23","isbn-type":"print","doi-asserted-by":"publisher","first-page":"134","DOI":"10.1007\/978-3-031-56232-7_7","article-title":"The Patching Landscape of\u00a0Elisabeth-4 and\u00a0the\u00a0Mixed\n  Filter Permutator Paradigm","volume-title":"Progress in Cryptology \u2013 INDOCRYPT 2023","author":"Cl\u00e9ment Hoffmann","year":"2024","ISBN":"https:\/\/id.crossref.org\/isbn\/9783031562327"},{"key":"ref41:WAHC:BalOrfSma23","doi-asserted-by":"publisher","first-page":"69","DOI":"10.1145\/3605759.3625255","article-title":"Trivial Transciphering With Trivium and TFHE","volume-title":"Proceedings of the 11th Workshop on Encrypted Computing &\n  Applied Homomorphic Cryptography, Copenhagen, Denmark, 26 November 2023","author":"Thibault Balenbois","year":"2023"},{"key":"ref42:WAHC:TCBS23","doi-asserted-by":"publisher","first-page":"79","DOI":"10.1145\/3605759.3625260","article-title":"A Homomorphic AES Evaluation in Less than 30 Seconds by\n  Means of TFHE","volume-title":"Proceedings of the 11th Workshop on Encrypted Computing &\n  Applied Homomorphic Cryptography, Copenhagen, Denmark, 26 November 2023","author":"Daphn\u00e9 Trama","year":"2023"},{"key":"ref43:JC:HalSho21","doi-asserted-by":"publisher","first-page":"7","DOI":"10.1007\/s00145-020-09368-7","article-title":"Bootstrapping for HElib","volume":"34","author":"Shai Halevi","year":"2021","journal-title":"Journal of Cryptology"},{"key":"ref44:CJL21","isbn-type":"print","doi-asserted-by":"publisher","first-page":"1","DOI":"10.1007\/978-3-030-78086-9_1","article-title":"Programmable Bootstrapping Enables Efficient Homomorphic\n  Inference of Deep Neural Networks","volume-title":"Cyber Security Cryptography and Machine Learning","author":"Ilaria Chillotti","year":"2021","ISBN":"https:\/\/id.crossref.org\/isbn\/9783030780869"}],"container-title":["IACR Communications in Cryptology"],"original-title":[],"language":"en","deposited":{"date-parts":[[2024,12,10]],"date-time":"2024-12-10T21:25:21Z","timestamp":1733865921000},"score":1,"resource":{"primary":{"URL":"https:\/\/cic.iacr.org\/p\/1\/1\/20"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2024,4,9]]},"references-count":44,"URL":"https:\/\/doi.org\/10.62056\/anxrxrxqi","archive":["Internet Archive","Internet Archive"],"relation":{},"ISSN":["3006-5496"],"issn-type":[{"value":"3006-5496","type":"electronic"}],"subject":[],"published":{"date-parts":[[2024,4,9]]},"assertion":[{"value":"2024-01-08","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2024-03-05","order":1,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}}],"article-number":"cc1-1-51"}}