Cryptanalysis and improvement of a certificateless aggregate signature scheme

Aggregate signature can combine n signatures on n messages from n users into a single short signature, and the resulting signature can convince the verifier that the n users indeed signed the n corresponding messages. This feature makes aggregate signature very useful especially in environments with...

Ausführliche Beschreibung

Gespeichert in:
Bibliographische Detailangaben
Veröffentlicht in:Information sciences 2015-02, Vol.295, p.337-346
Hauptverfasser: Cheng, Lin, Wen, Qiaoyan, Jin, Zhengping, Zhang, Hua, Zhou, Liming
Format: Artikel
Sprache:eng
Schlagworte:
Online-Zugang:Volltext
Tags: Tag hinzufügen
Keine Tags, Fügen Sie den ersten Tag hinzu!
Beschreibung
Zusammenfassung:Aggregate signature can combine n signatures on n messages from n users into a single short signature, and the resulting signature can convince the verifier that the n users indeed signed the n corresponding messages. This feature makes aggregate signature very useful especially in environments with low band width communication, low storage and low computability since it greatly reduces the total signature length and verification cost. Recently, Xiong et al. presented an efficient certificateless aggregate signature scheme. They claimed that their scheme was provably secure in a strengthened security model, where the “malicious-but-passive” KGC attack was considered. In this paper, we show that Xiong et al.’s certificateless aggregate signature scheme is insecure even against “honest-but-curious” KGC attack, an improved scheme which is really secure against “malicious-but-passive” KGC attack in the random oracle model. Performance analysis shows that our new scheme is more efficient than the other secure certificateless aggregate signature schemes.
ISSN:0020-0255
1872-6291
DOI:10.1016/j.ins.2014.09.065