Integration of ECDHE Curve25519, RSASSA-PSS, and AES-256 for Enhanced PrivateDH Key Exchange Protocol in End-to-End Communication
DOI:
https://doi.org/10.56741/jnest.v4i03.1275Keywords:
Secure Communication, End-to-End Encryption, ECDHE Curve25519, RSASSA-PSS, AES-256Abstract
The growing demand for secure digital communication calls for cryptographic protocols that are not only efficient but also capable of ensuring message confidentiality, integrity, and authenticity. PrivateDH is one such protocol that combines Diffie-Hellman, RSA, and AES; however, it still exhibits key weaknesses, including the absence of user authentication and reliance on classical Diffie-Hellman algorithms, which are computationally intensive and do not support forward secrecy. This study proposes an enhanced version of the PrivateDH protocol by integrating ECDHE Curve25519 as a replacement for classic DH, and RSASSA-PSS as a robust digital signature mechanism for user authentication. The methodology involves implementing and testing the proposed protocol within a peer-to-peer communication scenario, with performance evaluations based on handshake duration, CPU and memory usage, as well as security assessments including digital signature validation and forward secrecy. The results demonstrate that the enhanced protocol effectively accelerates key exchange, maintains resource efficiency, and provides reliable user authentication. In conclusion, this protocol contributes meaningfully to the advancement of more secure and efficient end-to-end communication systems, aligning with the demands of modern digital environments.
Downloads
References
A. Premana, G. Fitralisma, A. Yulianto, M. B. Zaman, and M. A. Wiryo, “Pemanfaatan teknologi informasi pada pertumbuhan ekonomi dalam era disrupsi 4.0,” J. Econ. Manag. (JECMA), vol. 2, no. 2, pp. 1–6, 2020. DOI: https://doi.org/10.46772/jecma.v1i01.219
D. Wiryany, S. Natasha, and R. Kurniawan, “Perkembangan teknologi informasi dan komunikasi terhadap perubahan sistem komunikasi Indonesia,” J. Nomosleca, vol. 8, no. 2, pp. 242–252, 2022. DOI: https://doi.org/10.26905/nomosleca.v8i2.8821
V. Sharma, A. Chauhan, H. Saxena, S. Mishra, and S. Bansal, “Secure file storage on cloud using hybrid cryptography,” in Proc. 5th Int. Conf. Inf. Syst. Comput. Netw. (ISCON), Oct. 2021, pp. 1–6. DOI: https://doi.org/10.1109/ISCON52037.2021.9702323
Ö. Aslan, S. S. Aktuğ, M. Ozkan-Okay, A. A. Yilmaz, and E. Akin, “A comprehensive review of cyber security vulnerabilities, threats, attacks, and solutions,” Electronics, vol. 12, no. 6, p. 1333, 2023. DOI: https://doi.org/10.3390/electronics12061333
F. R. S. Taka, “Secure communication by combined Diffe-Hellman key exchange based AES encryption and Arabic text steganography,” J. Inf. Hiding Multim. Signal Process., vol. 12, no. 4, pp. 186–198, 2021.
S. Dusane, M. Iliyaz, and A. Suresh, “Implementation of E2EE using Python,” in Proc. Int. Conf. Emerg. Technol. Data Mining Inf. Secur. (IEMIS), Kolkata, India, 2022, pp. 635–642. DOI: https://doi.org/10.1007/978-981-19-4676-9_55
K. K. Nalla, “Securing chat applications: Strategies for end-to-end encryption and cloud data protection,” World Journal of Advanced Engineering Technology and Sciences, vol. 13, no. 2, pp. 528–540, 2024. DOI: https://doi.org/10.30574/wjaets.2024.13.2.0634
T. Isobe and R. Ito, “Security analysis of end-to-end encryption for Zoom meetings,” IEEE Access, vol. 9, pp. 90677–90689, 2021. DOI: https://doi.org/10.1109/ACCESS.2021.3091722
A. Adithya, K. Kulkarni, and S. Saha, “Applications of RSA and AES256 in end-to-end encryption using Diffie-Hellman key exchange,” International Research Journal of Engineering and Technology (IRJET), vol. 9, no. 9, Sep. 2022.
C. Gupta and N. S. Reddy, “Enhancement of security of Diffie-Hellman key exchange protocol using RSA cryptography,” in J. Phys.: Conf. Ser., vol. 2161, no. 1, p. 012014, 2022. DOI: https://doi.org/10.1088/1742-6596/2161/1/012014
A. Ghani, S. U. Jan, S. A. Chaudhry, R. Ahmad, and D. H. Kim, “MCDH-SLKAP: Modified computational Diffie-Hellman based secure and lightweight key agreement protocol for decentralized edge computing networks,” IEEE Access, vol. 12, pp. 133923–133936, 2024. DOI: https://doi.org/10.1109/ACCESS.2024.3459925
R. Patgiri, "privateDH: An Enhanced Diffie-Hellman Key-Exchange Protocol using RSA and AES Algorithm," Cryptology ePrint Archive, Paper 2021/647, 2021. [Online]. Available: https://eprint.iacr.org/2021/647
E. Dritsas, M. Trigka, and P. Mylonas, “Performance and security analysis of the Diffie-Hellman key exchange protocol,” in Proc. 19th Int. Workshop Semantic Soc. Media Adapt. Pers. (SMAP), Nov. 2024, pp. 166–171. DOI: https://doi.org/10.1109/SMAP63474.2024.00039
A. A. Ahmed and O. M. Barukab, “Unforgeable digital signature integrated into lightweight encryption based on effective ECDH for cybersecurity mechanism in Internet of Things,” Processes, vol. 10, no. 12, p. 2631, 2022. DOI: https://doi.org/10.3390/pr10122631
O. İşler, "Implementation and Performance Evaluation of Elliptic Curve Cryptography over SECP256R1 on STM32 Microprocessor," Cryptology ePrint Archive, Paper 2024/1121, 2024. [Online]. Available: https://eprint.iacr.org/2024/1121
Y. Yan, “The overview of elliptic curve cryptography (ECC),” in J. Phys.: Conf. Ser., vol. 2386, no. 1, p. 012019, 2022. DOI: https://doi.org/10.1088/1742-6596/2386/1/012019
B. Arunkumar and G. Kousalya, “Secure and lightweight elliptic curve cipher suites in SSL/TLS,” Comput. Syst. Sci. Eng., vol. 40, no. 1, 2022. DOI: https://doi.org/10.32604/csse.2022.018166
S. Amanlou, M. K. Hasan, and K. A. A. Bakar, “Lightweight and secure authentication scheme for IoT network based on publish–subscribe fog computing model,” Comput. Netw., vol. 199, p. 108465, 2021. DOI: https://doi.org/10.1016/j.comnet.2021.108465
S. Cohney, A. Kwong, S. Paz, D. Genkin, N. Heninger, E. Ronen, and Y. Yarom, “Pseudorandom black swans: Cache attacks on CTR_DRBG,” in Proc. IEEE Symp. Security Privacy (SP), May 2020, pp. 1241–1258. DOI: https://doi.org/10.1109/SP40000.2020.00046
M. Rodríguez, J. Lázaro, U. Bidarte, J. Jiménez, and A. Astarloa, “A fixed-latency architecture to secure GOOSE and sampled value messages in substation systems,” IEEE Access, vol. 9, pp. 51646–51658, 2021. DOI: https://doi.org/10.1109/ACCESS.2021.3069088
S. H. Murad and K. H. Rahouma, “Implementation and performance analysis of hybrid cryptographic schemes applied in cloud computing environment,” Procedia Comput. Sci., vol. 194, pp. 165–172, 2021. DOI: https://doi.org/10.1016/j.procs.2021.10.070
C. Paar and J. Pelzl, Understanding Cryptography. Berlin, Germany: Springer-Verlag, 2010. DOI: https://doi.org/10.1007/978-3-642-04101-3
E. Rescorla, “The Transport Layer Security (TLS) Protocol Version 1.3,” Internet Engineering Task Force (IETF), RFC 8446, Aug. 2018. DOI: https://doi.org/10.17487/RFC8446
T. Perrin, "The Noise Protocol Framework," Noise Specification, Revision 34, Jul. 2018. [Online]. Available: https://noiseprotocol.org
J. Alwen, S. Coretti, and Y. Dodis, "The double ratchet: Security notions, proofs, and modularization for the Signal protocol," in Proc. Int. Conf. Theory Appl. Cryptographic Techniques (EUROCRYPT), Cham: Springer, Apr. 2019, pp. 129–158. DOI: https://doi.org/10.1007/978-3-030-17653-2_5
D. J. Bernstein, “Curve25519: New Diffie-Hellman speed records,” in Lect. Notes Comput. Sci., vol. 3958, pp. 207–228, Springer, 2006. DOI: https://doi.org/10.1007/11745853_14
A. Langley, M. Hamburg, and S. Turner, “RFC 7748: Elliptic Curves for Security,” IETF, Jan. 2016. DOI: https://doi.org/10.17487/RFC7748
J. Jonsson and B. Kaliski, “Public-Key Cryptography Standards (PKCS) #1: RSA Cryptography Specifications Version 2.2,” RFC 8017, Nov. 2016.
National Institute of Standards and Technology (NIST), “FIPS PUB 197: Advanced Encryption Standard (AES),” Gaithersburg, MD, USA, 2001.
National Institute of Standards and Technology (NIST), "Recommendation for Random Number Generation Using Deterministic Random Bit Generators," NIST Special Publication 800-90A, Gaithersburg, MD, USA, 2015.
Y. Yarom, D. Genkin, and N. Heninger, "CacheBleed: a timing attack on OpenSSL constant-time RSA," J. Cryptogr. Eng., vol. 7, no. 2, pp. 99–112, 2017. DOI: https://doi.org/10.1007/s13389-017-0152-y
S. Serengil and A. Ozpinar, "LightDSA: A Python-Based Hybrid Digital Signature Library and Performance Analysis of RSA, DSA, ECDSA and EdDSA in Variable Configurations, Elliptic Curve Forms and Curves," arXiv preprint arXiv:2505.23773, 2025.
H. Krawczyk, “SIGMA: The ‘SIGn-and-MAc’ approach to authenticated Diffie-Hellman and its use in the IKE protocols,” in Proc. Annual Int. Cryptology Conf. (CRYPTO), Berlin, Germany: Springer, 2003, pp. 400–425. DOI: https://doi.org/10.1007/978-3-540-45146-4_24
Downloads
Published
How to Cite
Issue
Section
Categories
License
Copyright (c) 2025 Journal of Novel Engineering Science and Technology

This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.






















