Cryptanalysis of a certificateless aggregate signature scheme

Cryptanalysis of a certificateless aggregate signature scheme
复制标题

DOI:
10.1002/sec.1421
复制
发表时间:
2016-07
期刊:
Secur. Commun. Networks
影响因子:
--
通讯作者:
Liangliang Wang;Kefei Chen;Yu Long;Huige Wang
Liangliang Wang;Kefei Chen;Yu Long;Huige Wang
中科院分区:
其他
文献类型:
--
作者:
Liangliang Wang;Kefei Chen;Yu Long;Huige Wang

文献摘要

被引文献

相似文献

聚合签名是指将签名σ1,...,σn对应的音调消息m1,...,mnandnusersu1,...,un.转换成单个短签名的签名。此外,任何人都可以通过单一的短签名来确信,这些消息m1、…、mn肯定是由用户1、…、…不对应地签署的。提出了无证书密码学的概念,解决了基于身份的密码学中的密钥托管问题,消除了有证书密码学对证书的需求。Chenet等人于2014年提出了一种无证书签名方案,并将其扩展为一种无证书聚合签名方案。本文首先给出了两个攻击,以表明无证书签名方案对类型I和类型II的攻击是不安全的。并证明了由于无证书签名方案的弱点,无证书聚合签名方案不能达到他们所声称的安全级别。版权所有©2016 John Wiley&Sons,Ltd.
An aggregate signature refers to a signature, by whichnsignaturesσ1,...,σncorresponding tonmessagesm1,...,mnandnusersu1,...,uncan be transformed into a single short signature . Besides, anyone can be convinced by the single short signature that thenmessagesm1,...,mnwere definitely signed by thenusersu1,...,uncorrespondingly. The concept of certificateless cryptography is proposed, so as to settle the key escrow problem in ID‐based cryptography and eliminate the demand for certificates in certified cryptography. A certificateless signature scheme was proposed by Chenet al.in 2014, which was extended into a certificateless aggregate signature scheme. In this paper, two attacks are firstly provided, so as to indicate that the certificateless signature scheme is insecure against a Type I adversary and a Type II adversary. And then, it is demonstrated that the certificateless aggregate signature scheme is not able to achieve the security levels they claimed due to the weaknesses of the certificateless signature scheme. Copyright © 2016 John Wiley & Sons, Ltd.