SPRINT: High-Throughput Robust Distributed Schnorr Signatures
Fabrice Benhamouda, Shai Halevi, Hugo Krawczyk, Yiping Ma, Tal Rabin
Abstract
We describe high-throughput threshold protocols with guaranteed output delivery for generating Schnorr-type signatures. The protocols run a single message-independent interactive ephemeral randomness generation procedure (e.g., DKG) followed by a non-interactive multi-message signature generation procedure. The protocols offer significant increase in throughput already for as few as ten parties while remaining highly-efficient for many hundreds of parties with thousands of signatures generated per minute (and over 10,000 in normal optimistic case).
These protocols extend seamlessly to the dynamic/proactive setting, where each run of the protocol uses a new committee, and they support sub-sampling the committees from among an effectively unbounded number of nodes. The protocols work over a broadcast channel in both synchronous and asynchronous networks.
The combination of these features makes our protocols a good match for implementing a signature service over an (asynchronous) public blockchain with many validators, where guaranteed output delivery is an absolute must. In that setting, there is a system-wide public key, where the corresponding secret signature key is distributed among the validators. Clients can submit messages (under suitable controls, e.g. smart contracts), and authorized messages are signed relative to the global public key.
Asymptotically, when running with committees of parties, our protocols can generate signatures per run, while providing resilience against corrupted nodes, and using broadcast bandwidth of only group elements and scalars. For example, we can sign about messages using just under total bandwidth while supporting resilience against corrupted parties, or sign messages using just over total bandwidth with resilience against corrupted parties.
We prove security of our protocols by reduction to the hardness of the discrete logarithm problem in the random-oracle model.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get b59bae33-e34f-4e5f-b298-5584dfdd705aCited by top-tier papers5
- GoSSamer: Lightweight and Linear-Communication Asynchronous (Dynamic Proactive) Secret Sharing and the ApplicationsXinxin Xing, Yizhong Liu, Boyang Liao, Jianwei Liu et al.S&P 2026 · 2 citations
- Armadillo: Robust Single-Server Secure Aggregation for Federated Learning with Input ValidationYiping Ma, Yue Guo, Harish Karthikeyan, Antigoni PolychroniadouCCS 2025
- Dumbo-MPC: Efficient Fully Asynchronous MPC with Optimal ResilienceYuan Su, Yuan Lu, Jiliang Li, Yuyi Wang et al.USENIX Security 2025
- SoK: Dlog-Based Distributed Key GenerationRenas Bacho, Alireza KavousiS&P 2025
- A Full Threshold NIST PQC-Compliant Framework for Distributed Trust in Federal Public Key InfrastructureKiarash Sedghighadikolaei, Changqi Sun, Thang Hoang, Bechir Hamdaoui et al.S&P 2026
Related papers
- Fast Batched Asynchronous Distributed Key GenerationJens Groth, Victor ShoupEUROCRYPT 2024 · 19 citations
- Two-Round Stateless Deterministic Two-Party Schnorr Signatures from Pseudorandom Correlation FunctionsYashvanth Kondi, Claudio Orlandi, Lawrence RoyCRYPTO 2023 · 19 citations
- Threshold Schnorr with Stateless Deterministic Signing from Standard AssumptionsFrançois Garillot, Yashvanth Kondi, Payman Mohassel, Valeria NikolaenkoCRYPTO 2021 · 39 citations
- Fully-Adaptive Two-Round Threshold Schnorr Signatures from DDHPaul Gerhart, Davide Li Calsi, Luigi Russo, Dominique SchröderEUROCRYPT 2026 · 1 citation
- Adaptively Secure Three-Round Threshold Schnorr Signatures from DDHRenas Bacho, Sourav Das, Julian Loss, Ling RenCRYPTO 2025 · 12 citations
