Modular design of secure group messaging protocols and the security of MLS

J Alwen, S Coretti, Y Dodis, Y Tselekounis - Proceedings of the 2021 …, 2021 - dl.acm.org
The Messaging Layer Security (MLS) project is an IETF effort aiming to establish an industry-
wide standard for secure group messaging (SGM). Its development is supported by several …

Security analysis and improvements for the IETF MLS standard for group messaging

J Alwen, S Coretti, Y Dodis, Y Tselekounis - Annual International …, 2020 - Springer
Secure messaging (SM) protocols allow users to communicate securely over untrusted
infrastructure. In contrast to most other secure communication protocols (such as TLS, SSH …

On the insider security of MLS

J Alwen, D Jost, M Mularczyk - Annual International Cryptology …, 2022 - Springer
Abstract The Messaging Layer Security (MLS) protocol is an open standard for end-to-end
(E2E) secure group messaging being developed by the IETF, poised for deployment to …

{TreeSync}: authenticated group management for messaging layer security

T Wallez, J Protzenko, B Beurdouche… - 32nd USENIX Security …, 2023 - usenix.org
Messaging Layer Security (MLS), currently undergoing standardization at the IETF, is an
asynchronous group messaging protocol that aims to be efficient for large dynamic groups …

Key agreement for decentralized secure group messaging with strong security guarantees

M Weidner, M Kleppmann, D Hugenroth… - Proceedings of the …, 2021 - dl.acm.org
Secure group messaging protocols, providing end-to-end encryption for group
communication, need to handle mobile devices frequently being offline, group members …

Continuous group key agreement with active security

J Alwen, S Coretti, D Jost, M Mularczyk - … NC, USA, November 16–19, 2020 …, 2020 - Springer
A continuous group key agreement (CGKA) protocol allows a long-lived group of parties to
agree on a continuous stream of fresh secret key material. CGKA protocols allow parties to …

On ends-to-ends encryption: Asynchronous group messaging with strong security guarantees

K Cohn-Gordon, C Cremers, L Garratt… - Proceedings of the …, 2018 - dl.acm.org
In the past few years secure messaging has become mainstream, with over a billion active
users of end-to-end encryption protocols such as Signal. The Signal Protocol provides a …

Cryptographic administration for secure group messaging

D Balbás, D Collins, S Vaudenay - 32nd USENIX Security Symposium …, 2023 - usenix.org
Many real-world group messaging systems delegate group administration to the application
level, failing to provide formal guarantees related to group membership. Taking a …

A concrete treatment of efficient continuous group key agreement via multi-recipient PKEs

K Hashimoto, S Katsumata, E Postlethwaite… - Proceedings of the …, 2021 - dl.acm.org
Continuous group key agreements (CGKAs) are a class of protocols that can provide strong
security guarantees to secure group messaging protocols such as Signal and MLS …

Keep the dirt: tainted treekem, adaptively and actively secure continuous group key agreement

K Klein, G Pascual-Perez, M Walter… - … IEEE Symposium on …, 2021 - ieeexplore.ieee.org
While messaging systems with strong security guarantees are widely used in practice,
designing a protocol that scales efficiently to large groups and enjoys similar security …