Optimal Tightness for Chain-Based Unique Signatures
Fuchun Guo, Willy Susilo
Abstract
Unique signatures are digital signatures with exactly one unique and valid signature for each message. The security reduction for most unique signatures has a natural reduction loss (in the existentially unforgeable against chosen-message attacks, namely EUF-CMA, security model under a non-interactive hardness assumption). In Crypto 2017, Guo et al. proposed a particular chain-based unique signature scheme where each unique signature is composed of BLS signatures computed sequentially like a blockchain. Under the computational Diffie-Hellman assumption, their reduction loss is for hash queries and it is logarithmically tight when . However, it is currently unknown whether a better reduction than logarithmical tightness for the chain-based unique signatures exists.
We show that the proposed chain-based unique signature scheme by Guo et al. must have the reduction loss for signature queries when each unique signature consists of BLS signatures. We use a meta reduction to prove this lower bound in the EUF-CMA security model under any non-interactive hardness assumption, and the meta-reduction is also applicable in the random oracle model. We also give a security reduction with reduction loss for the chain-based unique signature scheme (in the EUF-CMA security model under the CDH assumption). This improves significantly on previous reduction loss that is logarithmically tight at most. The core of our reduction idea is a non-uniform simulation that is specially invented for the chain-based unique signature construction.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get af277cec-8ea6-49e1-a466-50c2abcad183Related papers
- Schnorr Signatures are Tightly Secure in the ROM Under a Non-interactive AssumptionGavin Cho, Georg Fuchsbauer, Adam O'Neill, Marek SefranekCRYPTO 2025 · 4 citations
- On the Adaptive Security of the Threshold BLS Signature SchemeRenas Bacho, Julian LossCCS 2022 · 75 citations
- On the Adaptive Security of Key-Unique Threshold SignaturesMichele Ciampi, Elizabeth C. Crites, Chelsea Komlo, Mary MallerCRYPTO 2026
- Round-Optimal GUC-Secure Blind Signatures From Minimal Computational and Setup Assumptions - From Minimal Computational and Setup AssumptionsMichele Ciampi, Pierpaolo Della Monica, Ivan ViscontiCRYPTO 2026 · 1 citation
- Signatures with Memory-Tight Security in the Quantum Random Oracle ModelKeita XagawaEUROCRYPT 2024 · 3 citations
