DahLIAS: Discrete Logarithm-Based Interactive Aggregate Signatures
Jonas Nick, Tim Ruffing, Yannick Seurin
摘要
An interactive aggregate signature scheme enables signers, each with their own secret/public key pair and message , to collaboratively produce a single compact signature that attests that each message has been signed under the corresponding public key . Despite their potential for significant space and verification time savings when compared to the processing of many individual signatures, aggregate signatures have received considerably less attention than other multi-party signatures such as multi-signatures and threshold signatures.
In this paper, we propose , the first aggregate signature scheme with constant-size signatures based directly on discrete logarithms in pairing-free groups. Its signing protocol consists of two rounds, the first of which can be preprocessed without knowledge of the messages to be signed. An aggregate signature has the same shape as standard Schnorr signatures, and its verification time is dominated by a multi-exponentiation of size , which achieves a asymptotic speedup over batch verification of individual Schnorr signatures. With its explicit support for key tweaking, a technique commonly used for advanced key derivation in cryptocurrencies, is designed to be secure in real-world applications. We prove secure in the concurrent setting with key tweaking under the algebraic one-more discrete logarithm assumption in the random oracle model.
问问这篇 Paper
问问你的智能体。
Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。
相关 Paper
- T-Spoon: Tightly Secure Two-Round Multi-signatures with Key AggregationRenas Bacho, Benedikt WagnerCRYPTO 2025 · 被引用 6 次
- MuSig2: Simple Two-Round Schnorr Multi-signaturesJonas Nick, Tim Ruffing, Yannick SeurinCRYPTO 2021 · 被引用 147 次
- Earpicks: Tightly Secure Two-Round Multi and Threshold SignaturesRenas Bacho, Yanbo ChenEUROCRYPT 2026 · 被引用 1 次
- Chopsticks: Fork-Free Two-Round Multi-signatures from Non-interactive AssumptionsJiaxin Pan, Benedikt WagnerEUROCRYPT 2023 · 被引用 24 次
- Putting Multi Into Multi-signatures: Tight Security for Multiple SignersAnja Lehmann, Cavit ÖzbayEUROCRYPT 2026
