• On Optimal Tightness for Key Exchange with Full Forward Secrecy via Key Confirmation 

      Gellert, Kai; Gjøsteen, Kristian; Jacobsen, Håkon; Jager, Tibor (Journal article; Peer reviewed, 2023)
      A standard paradigm for building key exchange protocols with full forward secrecy (and explicit authentication) is to add key confirmation messages to an underlying protocol having only weak forward secrecy (and implicit ...