DahLIAS: Discrete Logarithm-Based Interactive Aggregate Signatures
Jonas Nick, Tim Ruffing, Yannick Seurin
Abstract
An interactive aggregate signature scheme enables signers, each with their own secret/public key pair and message , to collaboratively produce a single compact signature that attests that each message has been signed under the corresponding public key . Despite their potential for significant space and verification time savings when compared to the processing of many individual signatures, aggregate signatures have received considerably less attention than other multi-party signatures such as multi-signatures and threshold signatures.
In this paper, we propose , the first aggregate signature scheme with constant-size signatures based directly on discrete logarithms in pairing-free groups. Its signing protocol consists of two rounds, the first of which can be preprocessed without knowledge of the messages to be signed. An aggregate signature has the same shape as standard Schnorr signatures, and its verification time is dominated by a multi-exponentiation of size , which achieves a asymptotic speedup over batch verification of individual Schnorr signatures. With its explicit support for key tweaking, a technique commonly used for advanced key derivation in cryptocurrencies, is designed to be secure in real-world applications. We prove secure in the concurrent setting with key tweaking under the algebraic one-more discrete logarithm assumption in the random oracle model.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get bae1a04d-dfe7-4ac6-a074-34f91eee8dabRelated papers
- T-Spoon: Tightly Secure Two-Round Multi-signatures with Key AggregationRenas Bacho, Benedikt WagnerCRYPTO 2025 · 6 citations
- MuSig2: Simple Two-Round Schnorr Multi-signaturesJonas Nick, Tim Ruffing, Yannick SeurinCRYPTO 2021 · 147 citations
- Earpicks: Tightly Secure Two-Round Multi and Threshold SignaturesRenas Bacho, Yanbo ChenEUROCRYPT 2026 · 1 citation
- Chopsticks: Fork-Free Two-Round Multi-signatures from Non-interactive AssumptionsJiaxin Pan, Benedikt WagnerEUROCRYPT 2023 · 24 citations
- Putting Multi Into Multi-signatures: Tight Security for Multiple SignersAnja Lehmann, Cavit ÖzbayEUROCRYPT 2026
