Linkability of some blind signature schemes
WISTP'07 Proceedings of the 1st IFIP TC6 /WG8.8 /WG11.2 international conference on Information security theory and practices: smart cards, mobile and ubiquitous computing systems
Hi-index | 0.00 |
Blind signature allows a user to obtain signatures from an authority on any document, in such a way that the authority learns nothing about the message that is being signed. The blindness is an important property in blind signature scheme. In this work, we analyze security of two ID-based blind signature schemes [3][8], and show that the two schemes don't satisfy blindness, in other words, the signer is able to link a valid message-signature pair obtained by some user. It means that the two blind signature schemes are insecure.