Tweakable Sleeve: A Novel Sleeve Construction Based on Tweakable Hash Functions

Tweakable Sleeve: A Novel Sleeve Construction Based on Tweakable Hash Functions
复制标题

Tweakable Sleeve:一种基于可调整哈希函数的新型套筒结构

DOI:
10.1007/978-3-031-18679-0_10
复制
发表时间:
2023
期刊:
Mathematical Research for Blockchain Economy
影响因子:
--
通讯作者:
Mario Yaksetig
Mario Yaksetig
中科院分区:
--
文献类型:
--
作者:
David Chaum;Mario Larangeira;Mario Yaksetig

文献摘要

相似文献

最近,Chaum et al. (ACNS ' 21)介绍了签名方案的额外安全层,即。, ECDSA。这个独特的特性是一种新的密钥生成机制,允许用户生成一个“备份密钥”,安全地嵌套在签名方案的秘密密钥中。使用这种新颖的结构,秘密的“备份密钥”可以用来生成“所有权证明”,即:,只有该密钥的合法所有者才能生成这样的证明。该设计提供了量子安全回退,即,一个全新的量子抵抗签名,可以随时使用,嵌套在ECDSA密钥中。在这项工作中,我们依靠原始定义将构造推广到基于onweakable哈希函数的模块化设计,从而产生更清晰的原语设计。此外,考虑到ECDSA签名方案的安全性,我们提供了一个全面的安全分析,这是原始工作中所缺乏的。最后,我们使用verifpala提供了基于形式化方法的分析,以确保我们的结构提供的安全保证。
Recently, Chaum et al. (ACNS’21) introduced, which describes an extra security layer for signature schemes,i.e., ECDSA. This distinctive feature is a new key generation mechanism, allowing users to generate a “back up key” securely nested inside the secret key of a signature scheme. Using this novel construction, the “back up key”, which is secret, can be used to generate a “proof of ownership”,i.e., only the rightful owner of this secret key can generate such a proof. This design offers a quantum securefallback,i.e., a brand new quantum resistant signature, ready to be used, nested in the ECDSA secret key. In this work, we rely on the originaldefinition to generalize the construction to a modular design based onTweakable Hash Functions, thus yielding a cleaner design of the primitive. Furthermore, we provide a thorough security analysis taking into account the security of the ECDSA signature scheme, which is lacking in the original work. Finally, we provide an analysis based on formal methods usingVerifpalassuring the security guarantees our construction provides.