Results 11 -
13 of
13
A Pairing-based Blind Signature Scheme with Message Recovery
"... Abstract — Blind signatures enable users to obtain valid signatures for a message without revealing its content to the signer. This paper presents a new blind signature scheme, i.e. identity-based blind signature scheme with message recovery. Due to the message recovery property, the new scheme requ ..."
Abstract
- Add to MetaCart
Abstract — Blind signatures enable users to obtain valid signatures for a message without revealing its content to the signer. This paper presents a new blind signature scheme, i.e. identity-based blind signature scheme with message recovery. Due to the message recovery property, the new scheme requires less bandwidth than the identitybased blind signatures with similar constructions. The scheme is based on modified Weil/Tate pairings over elliptic curves, and thus requires smaller key sizes for the same level of security compared to previous approaches not utilizing bilinear pairings. Security and efficiency analysis for the scheme is provided in this paper.
On-line Non-transferable Signatures Revisited
"... Abstract. We propose a new general approach to the construction of on-line non-transferable signatures introduced by Liskov and Micali. Our approach is based on an extension of designated verifier proofs which provides interaction simulatability as opposed to transcript simulatability. We then propo ..."
Abstract
- Add to MetaCart
Abstract. We propose a new general approach to the construction of on-line non-transferable signatures introduced by Liskov and Micali. Our approach is based on an extension of designated verifier proofs which provides interaction simulatability as opposed to transcript simulatability. We then propose a concrete on-line non-transferable scheme which is proved secure in the standard model. Our scheme allows a less restrictive and more practical operation, is more efficient, and meets a stronger notion of security than the previous approach by Liskov and Micali.
New Constructions of Convertible Undeniable Signature Schemes without Random Oracles
"... In Undeniable Signature, a signature’s validity can only be confirmed or disavowed with the help of an alleged signer via a confirmation or disavowal protocol. A Convertible undeniable signature further allows the signer to release some additional information which can make an undeniable signature b ..."
Abstract
- Add to MetaCart
In Undeniable Signature, a signature’s validity can only be confirmed or disavowed with the help of an alleged signer via a confirmation or disavowal protocol. A Convertible undeniable signature further allows the signer to release some additional information which can make an undeniable signature become publicly verifiable. In this work we introduce a new kind of attacks, called claimability attacks, in which a dishonest/malicious signer both disavows a signature via the disavowal protocol and confirms it via selective conversion. Conventional security requirement does not capture the claimability attacks. We show that some convertible undeniable signature schemes are vulnerable to this kind of attacks. We then propose a new efficient construction of fully functional convertible undeniable signature, which supports both selective conversion and universal conversion, and is immune to the claimability attacks. To the best of our knowledge, it is the most efficient convertible undeniable signature scheme with provable security in the standard model. A signature is comprised of three elements of a bilinear group. Both the selective converter of a signature and the universal converter consist of one group element only. Besides, the confirmation and disavowal protocols are also very simple and

