Welcome!
To use the personalized features of this site, please log in or register.
If you have forgotten your username or password, we can help.
|
 |
On Rabin-Type Signatures
| |
|
Marc Joye5 and Jean-Jacques Quisquater6 
| (5) |
Card Security Group, Gemplus Card International, Parc d’Activités de Gémenos, B.P. 100, 13881 Gémenos Cedex, France |
| (6) |
UCL Crypto Group, Universié catholique de Louvain, Place du Levant 3, 1348 Louvain-la-Neuve, Belgium |
Abstract
This paper specializes the signature forgery by Coron, Naccache and Stern (1999) to Rabin-type systems. We present a variation
in which the adversary may derive the private keys and thereby forge the signature on any chosen message. Further, we demonstrate that, contrary to the RSA, the use of larger (even) public exponents does not reduce
the complexity of the forgery. Finally, we show that our technique is very general and applies to any Rabin-type system designed
in a unique factorization domain, including the Williams’ M
3 scheme (1986), the cubic schemes of Loxton et al. (1992) and of Scheidler (1998), and the cyclotomic schemes (1995).
Keywords Rabin-type systems - digital signatures - signature forgeries - factorization
A working draft of this work was presented at the ISO/IEC JTC1/SC27/WG2 meeting in August 1999.
Fulltext Preview (Small, Large)
 References secured to subscribers.
|
|
|
|
|
|