An Eecient Existentially Unforgeable Signature Scheme and Its Applications

نویسندگان

  • Cynthia Dwork
  • Moni Naor
چکیده

A signature scheme is existentially unforgeable if, given any polynomial (in the security parameter) number of pairs where S(m) denotes the signature on the message m, it is computationally infeasible to generate a pair (m k+1 ; S(m k+1)) for any message m k+1 = 2 fm 1 ; : : :m k g. We present an existentially unforgeable signature scheme that requires at most 6 times the amount of time needed to generate a signature using RSA (which is not existentially unforgeable), and point out applications where its use is desirable.

برای دانلود رایگان متن کامل این مقاله و بیش از 32 میلیون مقاله دیگر ابتدا ثبت نام کنید

ثبت نام

اگر عضو سایت هستید لطفا وارد حساب کاربری خود شوید

منابع مشابه

A New Signature Scheme without Random Oracles and Its Applications

In this paper, we propose a new signature scheme that is existentially unforgeable under a chosen message attack without random oracle. The security of our scheme depends on a new complexity assumption called the k+1 square roots assumption. We also discuss the relationship between the k+1 square roots assumption and some related problems and provide some conjectures. Moreover, the k+1 square r...

متن کامل

Short Undeniable Signatures Without Random Oracles: The Missing Link

We introduce a new undeniable signature scheme which is existentially unforgeable and anonymous under chosen message attacks in the standard model. The scheme is an embedding of Boneh and Boyen’s recent short signature scheme in a group where the decisional DiffieHellman problem is assumed to be difficult. The anonymity of our scheme relies on a decisional variant of the strong Diffie-Hellman a...

متن کامل

Security Proof of the Original SOK-IBS Scheme

The identity-based signature (IBS) scheme proposed by Sakai, Ohgishi and Kasahara in 2000, which we refer to as the SOK-IBS scheme, is the first pairing-based IBS scheme. Though most other existing IBS schemes, especially two modified SOK-IBS schemes, have already been proved secure recently, the security of the original SOKIBS scheme is still unclear. In this paper, we prove that the original ...

متن کامل

Certi cateless Aggregate Short Signature Scheme

An aggregate signature scheme is the aggregation of multiple signatures into a single compact signature of short string that can convince to any arbitrary verifier participating in the scheme. The aggregate signature scheme is very useful for real-world cryptographic applications such as secure routing, database outsourcing etc where the signatures on several distinct messages generated by many...

متن کامل

Cryptanalysis and Fixed of Short Signature Scheme without Random Oracle from Bilinear Parings

We first analyze the security of a short signature scheme without random oracles called ZCSM scheme and point out that it cannot support unforgeable under the chosen message and public key attacks. We also propose a new signature scheme without random oracle using bilinear pairing that is existentially unforgeable under a chosen message attack. The security of the proposed scheme depends on a c...

متن کامل

ذخیره در منابع من


  با ذخیره ی این منبع در منابع من، دسترسی به آن را برای استفاده های بعدی آسان تر کنید

عنوان ژورنال:

دوره   شماره 

صفحات  -

تاریخ انتشار 1994