TY - GEN
T1 - Security weaknesses in two proxy signature schemes
AU - Lu, Jiqiang
PY - 2006
Y1 - 2006
N2 - Allowing a proxy signer to generate a signature on behalf of an original signer, a proxy signature should satisfy the property of strong unforgeability: anyone except the designated proxy signer cannot create a valid proxy signature on behalf of the original signer. Since proxy signatures, as well as their derivatives, can be used in many applications in reality, such as secure mobile agent, e-commerce systems and etc., they have been receiving extensive research recently. In this paper, we show that the proxy signature scheme [14] from ISPA'04 will suffer from the original signer's forgery attack if the original signer once gets a valid proxy signature on a message, and a similar attack arises in the proxy signature scheme [1] from AWCC'04 if the verifier does not check the originality of the proxy signer's proxy public key before verifying a proxy signature. Therefore, in some degree, neither of these two schemes meets the property of strong unforgeability.
AB - Allowing a proxy signer to generate a signature on behalf of an original signer, a proxy signature should satisfy the property of strong unforgeability: anyone except the designated proxy signer cannot create a valid proxy signature on behalf of the original signer. Since proxy signatures, as well as their derivatives, can be used in many applications in reality, such as secure mobile agent, e-commerce systems and etc., they have been receiving extensive research recently. In this paper, we show that the proxy signature scheme [14] from ISPA'04 will suffer from the original signer's forgery attack if the original signer once gets a valid proxy signature on a message, and a similar attack arises in the proxy signature scheme [1] from AWCC'04 if the verifier does not check the originality of the proxy signer's proxy public key before verifying a proxy signature. Therefore, in some degree, neither of these two schemes meets the property of strong unforgeability.
KW - Forgery attack
KW - Proxy signature
KW - Public key cryptology
UR - https://www.scopus.com/pages/publications/33745883259
U2 - 10.1007/11751595_50
DO - 10.1007/11751595_50
M3 - 会议稿件
AN - SCOPUS:33745883259
SN - 3540340750
SN - 9783540340751
T3 - Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
SP - 466
EP - 475
BT - Computational Science and Its Applications - ICCSA 2006
PB - Springer Verlag
T2 - ICCSA 2006: International Conference on Computational Science and Its Applications
Y2 - 8 May 2006 through 11 May 2006
ER -