Skip to content
Preprint

Pivot: Proactive and Verifiable Threshold Oblivious Pseudorandom Functions From Isogeny Group Actions

Aug 2026 · 0 citations · 15 references
Computer Science

TL;DR

PIVOT (Proactive Isogeny-based Verifiable Oblivious Threshold PRF), a dealerless threshold VOPRF framework based on effective isogeny group actions, is introduced, which formalizes the functionality of a long-lived proactive threshold VOPRF, proves the correctness of distributed key generation, threshold evaluation, proactive refresh, and committee resharing, and provides a simulation-based security analysis under the vectorization and one-more hidden-group- action assumptions.

Abstract

Oblivious pseudorandom functions (OPRFs) allow a client to evaluate a keyed pseudorandom function on a private input without revealing that input to the server. In a threshold OPRF, the secret key is distributed among (n) servers so that any qualified set of at least (t) servers can complete an evaluation, while fewer than (t) shares reveal no information about the key. Existing isogeny-based threshold OPRFs, however, are primarily designed for static corruption models. If the same shares remain valid throughout the lifetime of the service, a mobile adversary can compromise different servers over time, accumulate (t) shares from the same sharing state, and eventually recover the master key. We introduce PIVOT (Proactive Isogeny-based Verifiable Oblivious Threshold PRF), a dealerless threshold VOPRF framework based on effective isogeny group actions. PIVOT periodically refreshes the server shares without changing the master key, public key, or previously generated OPRF outputs. The construction combines Shamir secret sharing, additively homomorphic coefficient commitments, sequential Lagrange-weighted group actions, and joint zero-knowledge relations that link certified shares to their corresponding isogeny actions. It also supports coordinated epoch transitions, publicly verifiable blame, secure erasure, and committee resharing under a possibly different threshold. We formalize the functionality of a long-lived proactive threshold VOPRF, prove the correctness of distributed key generation, threshold evaluation, proactive refresh, and committee resharing, and provide a simulation-based security analysis under the vectorization and one-more hidden-group- action assumptions. As an application, we describe a distributed private lookup service whose encrypted database remains valid across repeated share renewals and committee migrations.

View source

Similar papers

Open access Aug 2026

Threshold Encrypted Search System from Function Secret Sharing

Leveraging TFSS, ThORY achieves leakage-free keyword search and document identifier retrieval under a (t,p)-threshold model, hiding access, search, and volume patterns against any adversary corrupting fewer than t servers.

C. Kumar, Sikhar Patranabis, Debdeep Mukhopadhyay · 0 citations
Preprint Aug 2026

MCSI: A Masked Commutative Supersingular Isogeny Key Exchange with Blinded Ephemeral Keys

We introduce MCSI, a two message key exchange we design over the CSIDH class group action, in which each party sends its ephemeral public element under an authenticated encryption keyed by the value the two static keys determine. The design gives implicit mutual authentication, hides the ephemeral element from an eaves...

Furkan Cifci, Osman Emre Donder, Reyyan Cifci M.Emin Sarac High School et al. · 0 citations
Jul 2026

Verifiable Random Sampling

This work proposes a concrete VRS construction based on random quantum circuit sampling (RCS) executable on today's quantum computing devices and model the construction and prove its security within the constructive cryptography (CC) framework, thereby ensuring composability with other cryptographic protocols.

Ye Zhu, Soorya Rethinasamy, Anthony Alexiades Armenakas et al. · 0 citations

We use cookies to run the site and, with your consent, for analytics and to show ads. See our Cookie Policy.