A Provably-Unforgeable Threshold EdDSA with an Offline Recovery Party

09/02/2020
by   Michele Battagliola, et al.
0

A (t,n)-threshold signature scheme enables distributed signing among n players such that any subset of size at least t can sign, whereas any subset with fewer players cannot. The goal is to produce threshold digital signatures that are compatible with an existing centralized signature scheme. Starting from the threshold scheme for the ECDSA signature due to Battagliola et al., we present the first protocol that supports EdDSA multi-party signatures with an offline participant during the key-generation phase, without relying on a trusted third party. Under standard assumptions we prove our scheme secure against adaptive malicious adversaries. Furthermore we show how our security notion can be strengthen when considering a rushing adversary. We discuss the resiliency of the recovery in the presence of a malicious party. Using a classical game-based argument, we prove that if there is an adversary capable of forging the scheme with non-negligible probability, then we can build a forger for the centralized EdDSA scheme with non-negligible probability.

READ FULL TEXT

page 1

page 2

page 3

page 4

research
07/08/2020

Threshold ECDSA with an Offline Recovery Party

A (t,n)- threshold signature scheme enables distributed signing among n ...
research
01/22/2023

VeraSel: Verifiable Random Selection for Mixnets Construction

The security and performance of Mixnets depends on the trustworthiness o...
research
01/20/2023

Key-and-Signature Compact Multi-Signatures for Blockchain: A Compiler with Realizations

Multi-signature is a protocol where a set of signatures jointly sign a m...
research
07/17/2023

MIRA: a Digital Signature Scheme based on the MinRank problem and the MPC-in-the-Head paradigm

We exploit the idea of [Fen22] which proposes to build an efficient sign...
research
12/24/2019

On the Decentralized Generation of theRSA Moduli in Multi-Party Settings

RSA cryptography is still widely used. Some of its applications (e.g., d...
research
01/26/2018

Lattice-Based Group Signatures: Achieving Full Dynamicity (and Deniability) with Ease

In this work, we provide the first lattice-based group signature that of...
research
08/29/2023

Double Public Key Signing Function Oracle Attack on EdDSA Software Implementations

EdDSA is a standardised elliptic curve digital signature scheme introduc...

Please sign up or login with your details

Forgot password? Click here to reset