Chosen-Ciphertext Secure Threshold Identity-Based Key Encapsulation Without Random Oracles

Security and Cryptography for Networks (SCN 2006)

We describe the first identity-based key encapsulation mechanism with threshold key delegation and decapsulation that is secure in the standard model against chosen-ciphertext (CCA2) attacks. Our scheme is unconditionally consistent and proved secure under the Bilinear Decisional Diffie-Hellman assumption.

