This booklet constitutes the refereed court cases of the eighth overseas convention at the thought and alertness of Cryptology and data defense, ASIACRYPT 2002, held in Singapore, in December 2002.
The 34 revised complete papers offered including invited contributions have been conscientiously reviewed and chosen from 173 submissions at the foundation of 875 assessment experiences. The papers are geared up in topical sections on public key cryptography, authentication, idea, block ciphers, disbursed cryptography, cryptanalysis, public key cryptanalysis, mystery sharing, electronic signatures, purposes, Boolean capabilities, key administration, and ID-based cryptography.

DRAM cells are much smaller than edge-triggered flip-flops, since they require only one transistor and one capacitor per bit. Moreover, the regular structure of DRAM banks allows for very dense packing. 7µm2 . 4 as much as a logic transistor, or about 1/27 as much as a flip-flop. For simplicity, we ignore the circuitry needed to retrieve the values from DRAM — this can be done cheaply by temporarily wiring chains of adjacent R[·] into shift registers. In terms of circuit size, we effectively eliminate two of the three large registers per node, and some associated logic, so the routing-based mesh is about 3 times cheaper to manufacture.

3. The adversary makes some queries C1 , . . , Cq to a key decapsulation oracle, with Ci = C. For each query Ci , the oracle responds the value KD(SK,Ci ), which may be either a bit string, or a special code to indicate rejection. For i ∈ {1, . . , q − 1}, the adversary learns the response KD(SK,Ci ) before she has to choose the next query Ci+1 . 4. The adversary outputs a value σ ∈ {0, 1}. The adversary’s advantage in guessing σ is the difference pr[σ = 1|σ = 1] − pr[σ = 1|σ = 0] 30 Stefan Lucks of conditional probabilities.

Lenstra, Unbelievable security; matching AES security using public key systems, Proceedings Asiacrypt 2001, LNCS 2248, Springer-Verlag 2001, 67–86 10. K. W. , Algorithms in number theory, chapter 12 in Handbook of theoretical computer science, Volume A, algorithms and complexity (J. ), Elsevier, Amsterdam (1990) 11. K. W. ), The development of the number field sieve, Lecture Notes in Math. 1554, Springer-Verlag 1993 12. K. R. Verheul, Selecting cryptographic key sizes, J. com 13. L. Montgomery, A block Lanczos algorithm for finding dependencies over GF(2), Proceedings Eurocrypt’95, LNCS 925, Springer-Verlag 1995, 106–120 14.

