Lattice-Based Signatures with Tight Adaptive Corruptions and More
  syRljlCB1Ygs 2023年11月02日 46 0

Abstract. We construct the first tightly secure signature schemes in the

multi-user setting with adaptive corruptions from lattices. In stark contrast to the previous tight constructions whose security is solely based on

number-theoretic assumptions, our schemes are based on the Learning

with Errors (LWE) assumption which is supposed to be post-quantum

secure. The security of our scheme is independent of the numbers of users

and signing queries, and it is in the non-programmable random oracle

model. Our LWE-based scheme is compact, namely, its signatures contain only a constant number of lattice vectors.

At the core of our construction are a new abstraction of the existing

lossy identification (ID) schemes using dual-mode commitment schemes

and a refinement of the framework by Diemert et al. (PKC 2021) which

transforms a lossy ID scheme to a signature using sequential OR proofs.

In combination, we obtain a tight generic construction of signatures from

dual-mode commitments in the multi-user setting. Improving the work

of Diemert et al., our new approach can be instantiated using not only

the LWE assumption, but also an isogeny-based assumption. We stress

that our LWE-based lossy ID scheme in the intermediate step uses a

conceptually different idea than the previous lattice-based ones.

Of independent interest, we formally rule out the possibility that the

aforementioned “ID-to-Signature” methodology can work tightly using

parallel OR proofs. In addition to the results of Fischlin et al. (EUROCRYPT 2020), our impossibility result shows a qualitative difference

between both forms of OR proofs in terms of tightness.

【版权声明】本文内容来自摩杜云社区用户原创、第三方投稿、转载,内容版权归原作者所有。本网站的目的在于传递更多信息,不拥有版权,亦不承担相应法律责任。如果您发现本社区中有涉嫌抄袭的内容,欢迎发送邮件进行举报,并提供相关证据,一经查实,本社区将立刻删除涉嫌侵权内容,举报邮箱: cloudbbs@moduyun.com

  1. 分享:
最后一次编辑于 2023年11月08日 0

暂无评论

推荐阅读
  syRljlCB1Ygs   2023年11月19日   23   0   0 oraclesedPan
  4i8hCvzXKbg6   2023年11月24日   45   0   0 IPideTCP
  4i8hCvzXKbg6   2023年11月22日   32   0   0 ide
  4i8hCvzXKbg6   2023年11月19日   27   0   0 Standardciide
  syRljlCB1Ygs   2023年11月26日   44   0   0 sedciide
  4i8hCvzXKbg6   2023年11月19日   27   0   0 ide
syRljlCB1Ygs