The Measure-and-Reprogram Technique 2.0: Multi-round Fiat-Shamir and More
Jelle Don, Serge Fehr, Christian Majenz
Abstract
We revisit recent works by Don, Fehr, Majenz and Schaffner and by Liu and Zhandry on the security of the Fiat-Shamir transformation of -protocols in the quantum random oracle model (QROM). Two natural questions that arise in this context are: (1) whether the results extend to the Fiat-Shamir transformation of multi-round interactive proofs, and (2) whether Don et al.'s loss in security is optimal. Firstly, we answer question (1) in the affirmative. As a byproduct of solving a technical difficulty in proving this result, we slightly improve the result of Don et al., equipping it with a cleaner bound and an even simpler proof. We apply our result to digital signature schemes showing that it can be used to prove strong security for schemes like MQDSS in the QROM. As another application we prove QROM-security of a non-interactive OR proof by Liu, Wei and Wong. As for question (2), we show via a Grover-search based attack that Don et al.'s quadratic security loss for the Fiat-Shamir transformation of -protocols is optimal up to a small constant factor. This extends to our new multi-round result, proving it tight up to a factor that depends on the number of rounds only, i.e. is constant for any constant-round interactive proof.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 69920231-80e3-4872-a3a2-257b84858d17Cited by top-tier papers17
- A Compressed -Protocol Theory for LatticesThomas Attema, Ronald Cramer, Lisa KohlCRYPTO 2021 · 74 citations
- Online-Extractability in the Quantum Random-Oracle ModelJelle Don, Serge Fehr, Christian Majenz, Christian SchaffnerEUROCRYPT 2022 · 57 citations
- Classical vs Quantum Random OraclesTakashi Yamakawa, Mark ZhandryEUROCRYPT 2021 · 43 citations
- Shorter Signatures Based on Tailor-Made Minimalist Symmetric-Key CryptoChristoph Dobraunig, Daniel Kales, Christian Rechberger, Markus Schofnegger et al.CCS 2022 · 36 citations
- Obfuscation of Pseudo-Deterministic Quantum CircuitsJames Bartusek, Fuyuki Kitagawa, Ryo Nishimaki, Takashi YamakawaSTOC 2023 · 23 citations
Builds on2
Related papers
- Straight-Line Knowledge Extraction for Multi-Round ProtocolsLior Rotem, Stefano TessaroCRYPTO 2025 · 2 citations
- Efficient NIZKs and Signatures from Commit-and-Open Protocols in the QROMJelle Don, Serge Fehr, Christian Majenz, Christian SchaffnerCRYPTO 2022 · 15 citations
- A New Simple Technique to Bootstrap Various Lattice Zero-Knowledge Proofs to QROM Secure NIZKsShuichi KatsumataCRYPTO 2021 · 29 citations
- A Detailed Analysis of Fiat-Shamir with AbortsJulien Devevey, Pouria Fallahpour, Alain Passelègue, Damien StehléCRYPTO 2023 · 33 citations
- Tighter Quantum Security for Fiat-Shamir-with-Aborts and Hash-and-Sign-with-Retry SignaturesPouria Fallahpour, Serge Fehr, Yu-Hsuan HuangCRYPTO 2026 · 3 citations
