KIT | KIT-Bibliothek | Impressum | Datenschutz

Attack Once, Compromise All? On the Scalability of Attacks

Hetzel, Eva ORCID iD icon 1; Nemes, Marc 2; Müller-Quade, Jörn 1
1 Institut für Informationssicherheit und Verlässlichkeit (KASTEL), Karlsruher Institut für Technologie (KIT)
2 FZI Forschungszentrum Informatik (FZI)

Abstract:

Electronic voting schemes are often criticized for being insecure, on the grounds that a successful attack would allow an adversary to manipulate all votes at once. It is argued that attacks therefore have a higher impact at lower adversary costs compared to paper-based schemes, where attacks are cumbersome. In this paper, we propose a framework to quantify how prone different protocols are to attacks that scale well. For this purpose, we introduce the notion of scalability of attacks. We give the adversary access to an oracle which can break common cryptographic building blocks and assumptions and analyze how many inputs of a (multiparty computation) protocol they can learn or manipulate for each oracle access. The more inputs are affected, the more susceptible the protocol is to attacks that scale well. We compare several pairs of protocols solving the same problem in different ways in three examples and analyze the scalability of attacks on each protocol. We find that some protocols have a fatal breakdown, i.e. all inputs are affected with only one access to the oracle, while other protocols scale linearly or have a threshold, where the number of affected inputs increases drastically from one access to the other. ... mehr


Verlagsausgabe §
DOI: 10.5445/IR/1000185464/pub
Veröffentlicht am 08.10.2025
Postprint §
DOI: 10.5445/IR/1000185464
Frei zugänglich ab 12.09.2026
Cover der Publikation
Zugehörige Institution(en) am KIT Institut für Informationssicherheit und Verlässlichkeit (KASTEL)
Publikationstyp Proceedingsbeitrag
Publikationsjahr 2025
Sprache Englisch
Identifikator ISBN: 978-3-032-05036-6
ISSN: 0302-9743
KITopen-ID: 1000185464
HGF-Programm 46.23.01 (POF IV, LK 01) Methods for Engineering Secure Systems
Erschienen in Electronic Voting – 10th International Joint Conference, E-Vote-ID 2025, Nancy, France, October 1–3, 2025, Proceedings. Ed.: D. Duenas-Cid
Veranstaltung 10th International Joint Conference on Electronic Voting (E-Vote-ID 2025), Nancy, 01.10.2025 – 03.10.2025
Verlag Springer Nature Switzerland
Seiten 90–106
Serie Lecture Notes in Computer Science (LNCS) ; 16028
Vorab online veröffentlicht am 11.09.2025
Nachgewiesen in Dimensions
OpenAlex
Scopus
KIT – Die Universität in der Helmholtz-Gemeinschaft
KITopen Landing Page