计算机工程 ›› 2012, Vol. 38 ›› Issue (22): 95-98.doi: 10.3969/j.issn.1000-3428.2012.22.023

• 安全技术 • 上一篇    下一篇

一种改进的多变量数字签名方案安全性分析

鲁晓彬,李发达,田 礼,鲍皖苏   

  1. (解放军信息工程大学电子技术学院,郑州 450004)
  • 收稿日期:2012-02-24 修回日期:2012-03-29 出版日期:2012-11-20 发布日期:2012-11-17
  • 作者简介:鲁晓彬(1982-),男,硕士研究生,主研方向:密码学;李发达、田 礼,硕士研究生;鲍皖苏,教授、博士生导师

Cryptanalysis of an Improved Multivariate Digital Signature Scheme

LU Xiao-bin, LI Fa-da, TIAN Li, BAO Wan-su   

  1. (Institute of Electronic Technology, PLA Information Engineering University, Zhengzhou 450004, China)
  • Received:2012-02-24 Revised:2012-03-29 Online:2012-11-20 Published:2012-11-17

摘要: 在改进的多变量数字签名方案W-方案中,增加了一个仿射变换N替换仿射变换T,并使用公钥 参与签名验证,但由于N可以与T合成新的仿射变换,因此不能有效隐藏签名结构 。针对该方案存在的安全漏洞,通过刻画验证公钥 与 之间的关系,利用 确定 的结构,由此实现攻击,从中可知,增加仿射变换不能提高多变量数字签名方案的安全性。

关键词: 多变量公钥密码体制, hash函数, 数字签名, W-方案, 量子计算机, 秘密仿射变换

Abstract: In an improved multivariate signature scheme named W-scheme, affine transformation N is used to replaed affine transformation T, and the public key to participate in verifying via replacing T with an affine transformation, but N can be turned to a new affine transformation with T, so the scheme can not hide the signature structure . Aiming at the security loop, by depicting the relationship of the public key and , the structure of can be determined by , so that attack is realized, which proves that adding the secret affine transformation can not lift the level of security of multivariate public key scheme.

Key words: Multivariable Public Key Cryptography(MPKC), hash function, digital signature, W-scheme, quantum computer, secret affine transformation

中图分类号: