摘要
密钥泄漏严重威胁着数字签名的安全性,入侵弹性签名是一种有效的解决方法。对李洪为等提出的一个入侵弹性签名方案进行了安全性分析,给出了两个攻击算法,第一个攻击算法,敌手可以通过一个有效签名,伪造对于任意消息在同一时间段的有效签名,第二个攻击算法,敌手则可以伪造任何时间段的任何签名。因此,李洪为等的签名方案是完全不安全的。
Key exposure seriously threatens the security of digital signatures. Intrusion-resilient signature is one kind of effective method of dealing with this problem. The security of an intrusion-resilient signature scheme proposed by Li Hongwei et al. is analyzed in this paper. Two attack algorithms are given. In the first attack algorithm, an adversary can forge the signature of any message in the same time period from another valid signature. In the second attack algorithm, an adversary can forge the signature of any message in any time period. Thus the scheme proposed by Li Hongwei is fully insecure.
出处
《贵州师范大学学报(自然科学版)》
CAS
2011年第3期63-65,共3页
Journal of Guizhou Normal University:Natural Sciences
基金
山东省自然科学基金资助项目(ZR2009GQ008
ZR2009FQ019)
关键词
入侵弹性签名
双线性映射
可证安全性
intrusion-resilient signature
bilinear maps
provable security