UC4Free! Existing Threshold Signatures are UC Secure
Jan Bobolz, Elizabeth C. Crites, Markulf Kohlweiss, Akira Takahashi
摘要
Threshold signatures have received considerable attention in recent years due to ongoing standardization efforts and deployment in real-world systems. In this work, we prove the universal composability of a wide range of threshold signature schemes, including state-of-the-art protocols compatible with standard signatures used in practice, such as BLS and Schnorr signatures, as well as emerging post-quantum solutions. Importantly, we show UC security without any modifications to the existing protocols.
To this end, we design natural game-based definitions to capture different combinations of main threshold signature scheme properties, such as different levels of unforgeability, adaptive corruption, robustness, and different degrees of preprocessing. These definitions generalize prior definitional work, such as Bellare et al. (CRYPTO'22), and cover a wide range of existing schemes. Moreover, we identify and resolve gaps in prior work. We then express these properties in terms of a UC ideal functionality . We prove that a threshold signature scheme UC-realizes if and only if it satisfies our game-based definitions.
This opens up the usage of (existing) threshold signature schemes in a UC setting, enabling scheme designers to formulate their protocols relative to an ideal threshold signature functionality and use the UC composition theorem to argue security given any concrete instantiation. To further support UC scheme designers and to give further guidance on UC modeling for threshold signatures, we provide additional ideal threshold signature functionalities , , , and , which capture fewer properties than but are more convenient to use. , , , can also be UC-realized by schemes proven secure according to our game-based definitions.
Through this work, we show that composable security does not require sacrificing performance, but it does require rigor when setting up game-based definitions and ideal functionalities.
问问这篇 Paper
问问你的智能体。
Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。
引用它的顶会 Paper1
问问它们各自怎么用它相关 Paper
- Universally Composable Adaptor SignaturesPaul Gerhart, Daniel Rausch, Dominique SchroederCCS 2026
- On the Adaptive Security of Key-Unique Threshold SignaturesMichele Ciampi, Elizabeth C. Crites, Chelsea Komlo, Mary MallerCRYPTO 2026
- A Plausible Attack on the Adaptive Security of Threshold Schnorr SignaturesElizabeth C. Crites, Alistair StewartCRYPTO 2025 · 被引用 11 次
- Better than Advertised Security for Non-interactive Threshold SignaturesMihir Bellare, Elizabeth C. Crites, Chelsea Komlo, Mary Maller 等CRYPTO 2022 · 被引用 71 次
- Glacius: Threshold Schnorr Signatures from DDH with Full Adaptive SecurityRenas Bacho, Sourav Das, Julian Loss, Ling RenEUROCRYPT 2025 · 被引用 21 次
