Universal composability (UC)

 

tl;dr: I wish there was better stuff around than UC for modelling security of cryptosystems.

$ $

Papers

  • first UC paper1
  • “simpler” UC for MPC2
  • “simpler” iUC paper3: still not very simplified, IMO.
  • A very formally worked-out example of a UC proof for PAKE4
  • EasyUC paper5: UC proofs in EasyCrypt

References

For cited works, see below 👇👇

  1. Universally Composable Security: A New Paradigm for Cryptographic Protocols, by Ran Canetti, in Cryptology ePrint Archive, Report 2000/067, 2000, [URL] 

  2. A Simpler Variant of Universally Composable Security for Standard Multiparty Computation, by Ran Canetti and Asaf Cohen and Yehuda Lindell, in Cryptology {ePrint} Archive, Paper 2014/553, 2014, [URL] 

  3. iUC}: Flexible Universal Composability Made Simple, by Jan Camenisch and Stephan Krenn and Ralf Kuesters and Daniel Rausch, in Cryptology {ePrint} Archive, Paper 2019/1073, 2019, [URL] 

  4. UC}-Security of Encrypted Key Exchange: A Tutorial, by Jiayu Xu, in Cryptology {ePrint} Archive, Paper 2025/237, 2025, [URL] 

  5. EasyUC}: Using {EasyCrypt} to Mechanize Proofs of Universally Composable Security, by Ran Canetti and Alley Stoughton and Mayank Varia, in Cryptology {ePrint} Archive, Paper 2019/582, 2019, [URL]