Universal designated verifier signcryption
NSS'12 Proceedings of the 6th international conference on Network and System Security
Hi-index | 0.00 |
In literature [3], two new universal designated verifier signature proof schemes (UDVSP) based on hardness assumption of the discrete-logarithm problem were proposed at Asiacrypt '05. The UDVSP scheme were proven secure against impersonation attacks in random oracle under Type-1 attack and Type-2 attack. Unfortunately, these schemes are totally breakable by any attacker if the attacker is allowed to interact concurrently with many different prover “instances” as well as with the verifier (concurrent reset attacks for short). In this paper, the UDVSP schemes are shown insecure against impersonation under Type-1 attack and are also proven transferable, which contradicts the design goal of universal designated verifier signature scheme.