On the security of a convertible group signature scheme
Information Processing Letters
ASIACRYPT '96 Proceedings of the International Conference on the Theory and Applications of Cryptology and Information Security: Advances in Cryptology
EUROCRYPT'91 Proceedings of the 10th annual international conference on Theory and application of cryptographic techniques
Hi-index | 0.00 |
A group signature scheme allows the group member to sign messages on behalf of a group. In 1996, Kim et al. proposed a new type of group signature, called "convertible group signature". Recently, Saeednia pointed out that there are weaknesses in a convertible group signature scheme proposed by Kim et al. Furthermore, Saeednia proposed a modified scheme to eliminate these weaknesses. In this paper, we show that there is a way to forge a group signature even if adopting Saeednia's modified scheme.