Schnorr签名
计算机科学
Merkle签名方案
ElGamal签名方案
数字签名
替代(逻辑)
散列函数
公钥密码术
钥匙(锁)
盲签名
椭圆曲线数字签名算法
戒指签名
理论计算机科学
签名(拓扑)
随机预言
计算机安全
数学
椭圆曲线密码
加密
程序设计语言
几何学
作者
Zhenfeng Zhang,Kang Yang,Jiang Zhang,Cheng Chen
标识
DOI:10.1007/978-3-319-27152-1_7
摘要
Though existential unforgeability under adaptively chosen-message attacks is well-accepted for the security of digital signature schemes, the security against key substitution attacks is also of interest, and has been considered for several practical digital signature schemes such as DSA and ECDSA. In this paper, we consider generalized key substitution attacks where the base element is considered as a part of the public key and can be substituted. We first show that the general framework of certificate-based signature schemes defined in ISO/IEC 14888-3 is vulnerable to a generalized key substitution attack. We then prove that the Chinese standard SM2 signature scheme is existentially unforgeable against adaptively chosen-message attacks in the generic group model if the underlying hash function h is uniform and collision-resistant and the underlying conversion function f is almost-invertible, and the SM2 digital signature scheme is secure against the generalized key substitution attacks if the underlying hash functions H and h are modeled as non-programmable random oracles (NPROs).
科研通智能强力驱动
Strongly Powered by AbleSci AI