0단 자동
AI가 규칙대로 쓰고 그대로 게시했습니다. 사람이 따로 보지 않았습니다.
- 규칙 판
- 규칙 판 도입 이전 기사입니다.
- 남기는 것
- 규칙 판 · 모델 · 시각
- 판 기록
- 아직 없습니다.
On the Preprocessing Security of Nonzero Schnorr Signatures with Adaptive Corruptions
- 1.ISO/IEC 14888-3 표준의 'nonzero Schnorr' 서명에 대한 프리프로세싱 공격 안전성을 ROM+GGM에서 최초로 증명
- 2.적응적 부패(corruption) 질의까지 허용하는 더 강한 모델에서 안전성 상한 제시
- 3.타겟 전환(target-switching) 공격으로 N명 사용자 중 1명에 대한 손실 인자 N이 구조적으로 불가피함을 입증
- 4.동일 보안강도에서 키프리픽싱 방식이 nonzero Schnorr보다 약 log N 비트 더 짧은 서명 가능함을 규명
왜 중요한가?
ISO 표준에 실제 채택된 Schnorr 변형의 프리프로세싱 공격 내성이 처음으로 공식 증명되어, 표준 서명 체계를 채택한 시스템의 장기 보안성 평가와 키·서명 길이 설계 트레이드오프에 구체적 근거를 제공한다.
본문 미리보기
Modern cryptographic protocols rely on a relatively small collection of standardized hash functions and groups, raising the possibility of preprocessing attacks in which a computationally unbounded offline attacker generates a bounded-size hint that accelerates a later online attack. Blocki and Lee (EUROCRYPT~2022) analyzed the preprocessing security of key-prefixed short Schnorr signatures, where the public key is included in the random-oracle input. Their analysis imposed an a priori restricti
전체 내용이 궁금하다면?
원문을 직접 읽어보세요
이 글이 만들어진 과정
- 11:24AI 초안



