Masashi Mitomo5
and Kaoru Kurosawa5 
| (5) |
Tokyo Institute of Technology, 2-12-1 O-okayama, Meguro-ku, 152-8552 Tokyo, Japan |
Abstract
AMIX net takes a list of ciphertexts (c
1,... , c
N) and outputs a permuted list of the plaintexts (m
1,... ,m
N) without revealing the relationship between (c
1,... , c
N) and (m
1,... ,m
N). This paper shows that the Jakobsson’s flash MIX of PODC’99, which was believed to be the most efficient robust MIX net,
is broken. The first MIX server can prevent computing the correct output with probability 1 in our attack. We also present
a countermeasure for our attack.
He is currently working for Fujitsu Laboratories Ltd.
References secured to subscribers.