Lune

CRYPTO2024Top-tier venue

That's Not My Signature! Fail-Stop Signatures for a Post-quantum World

Cecilia Boschini, Hila Dahari, Moni Naor, Eyal Ronen

2024Year
2Citations

Abstract

In this work we present Fail-Stop Signatures (FSS), which are digital signatures enhanced with a forgery detection mechanism. Such mechanism allows to extract from a forgery a proof that the hardness assumption underlying the signature scheme has been broken, without the need for extensive cryptanalysis. This capability allows for the rapid deprecation of insecure signature schemes and their consequent replacement with more secure alternatives. We argue that a standardization process should prefer signatures that allow for a fail-stop mechanism whenever reasonable, as FSS make large, undiscriminating exploits of an undisclosed vulnerability a high stakes game for an agency. To prove that fail-stop mechanisms are practical we present FSS.SPHINCS, that is, SPHINCS + (now standardized as SLH-DSA) augmented with a fail-stop mechanism. We show that the fail-stop mechanism does not have a big impact on the efficiency of SPHINCS + . Using Lamport's signature as running example, we illustrate how to go from SPHINCS + to FSS.SPHINCS and give an intuition behind our proposed security model.

Ask about this paper

Your agent reads all of it.

Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.

Questions to start from

Your agent calls

Luneget_paper_fulltext

Ask in Lune

Free to start. No credit card required.

Builds on2

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines