计算机应用 ›› 2010, Vol. 30 ›› Issue (9): 2389-2392.

• 信息安全 • 上一篇    下一篇

对一种多重数字签名方案的攻击和改进

李颖1,周大水2   

  1. 1. 山东大学网络信息安全研究所
    2.
  • 收稿日期:2010-03-11 修回日期:2010-05-14 发布日期:2010-09-03 出版日期:2010-09-01
  • 通讯作者: 李颖
  • 基金资助:
    国家自然科学基金

Attack and improvement of Zhang's multi-signature scheme

  • Received:2010-03-11 Revised:2010-05-14 Online:2010-09-03 Published:2010-09-01

摘要: 对Zhang等人提出的基于身份的RSA多重数字签名方案进行安全分析,提出了一个完全攻击算法。首先介绍了Zhang签名方案以及攻击算法,然后针对此签名算法的安全缺陷,提出了两个改进方案。改进方案均修改了每个签名者的随机化处理过程,并转移了部分计算操作。结果表明,改进后的方案既能保证安全性又不会降低签名和验证性能。因此,改进方案更具有实际应用价值。

关键词: 多重数字签名, 伪造攻击, 密码分析, RSA密码体制

Abstract: After analyzing the ID-based digital multi-signature scheme based on RSA (Rivest-Shamir-Adleman) proposed by Zhang et al. in 2008, a complete attack algorithm was proposed. Firstly, Zhang et al.'s scheme and the attack algorithm were introduced, and then two improved schemes against to the security problem of Zhang's scheme were proposed. The random operation of each signer was changed, and part of computation operation was transferred in both of the improved schemes. The results show that the improved schemes are secure without decreasing the efficiency of signing and verifying. Therefore, the improved schemes are more valuable in practical application.

Key words: multi-signature, forgery attack, cryptanalysis, RSA (Rivest-Shamir-Adleman) cryptography

中图分类号: