Post-quantum Security of Fiat-Shamir

被引:39
|
作者
Unruh, Dominique [1 ]
机构
[1] Univ Tartu, Tartu, Estonia
关键词
Post-quantum security; Fiat-Shamir; Non-interactive proof systems; Signatures; SIGNATURES; PROOFS;
D O I
10.1007/978-3-319-70694-8_3
中图分类号
TP301 [理论、方法];
学科分类号
081202 ;
摘要
The Fiat-Shamir construction (Crypto 1986) is an efficient transformation in the random oracle model for creating non-interactive proof systems and signatures from sigma-protocols. In classical cryptography, Fiat-Shamir is a zero-knowledge proof of knowledge assuming that the underlying sigma-protocol has the zero-knowledge and special soundness properties. Unfortunately, Ambainis, Rosmanis, and Unruh (FOCS 2014) ruled out non-relativizing proofs under those conditions in the quantum setting. In this paper, we show under which strengthened conditions the Fiat-Shamir proof system is still post-quantum secure. Namely, we show that if we require the sigma-protocol to have computational zero-knowledge and statistical soundness, then Fiat-Shamir is a zero-knowledge simulation-sound proof system (but not a proof of knowledge!). Furthermore, we show that Fiat-Shamir leads to a post-quantum secure unforgeable signature scheme when additionally assuming a "dual-mode hard instance generator" for generating key pairs.
引用
收藏
页码:65 / 95
页数:31
相关论文
共 50 条
  • [11] A MODIFICATION OF THE FIAT-SHAMIR SCHEME
    OHTA, K
    OKAMOTO, T
    LECTURE NOTES IN COMPUTER SCIENCE, 1990, 403 : 232 - 243
  • [12] The security of the Fiat-Shamir scheme in the presence of transient hardware faults
    Voyiatzis, Artemios G.
    Serpanos, Dimitrios N.
    ACM TRANSACTIONS ON EMBEDDED COMPUTING SYSTEMS, 2008, 7 (03)
  • [13] Security of Hedged Fiat-Shamir Signatures Under Fault Attacks
    Aranha, Diego F.
    Orlandi, Claudio
    Takahashi, Akira
    Zaverucha, Greg
    ADVANCES IN CRYPTOLOGY - EUROCRYPT 2020, PT I, 2020, 12105 : 644 - 674
  • [14] The Fiat-Shamir Zoo: Relating the Security of Different Signature Variants
    Backendal, Matilda
    Bellare, Mihir
    Sorrell, Jessica
    Sun, Jiahao
    SECURE IT SYSTEMS, 2018, 11252 : 154 - 170
  • [15] Fixing and Mechanizing the Security Proof of Fiat-Shamir with Aborts and Dilithium
    Barbosa, Manuel
    Barthe, Gilles
    Doczkal, Christian
    Don, Jelle
    Fehr, Serge
    Gregoire, Benjamin
    Huang, Yu-Hsuan
    Hulsing, Andreas
    Lee, Yi
    Wu, Xiaodi
    ADVANCES IN CRYPTOLOGY - CRYPTO 2023, PT V, 2023, 14085 : 358 - 389
  • [16] PRACTICAL EXTENSION OF FIAT-SHAMIR SCHEME
    OHTA, K
    OKAMOTO, T
    ELECTRONICS LETTERS, 1988, 24 (15) : 955 - 956
  • [17] A Detailed Analysis of Fiat-Shamir with Aborts
    Devevey, Julien
    Fallahpour, Pouria
    Passelegue, Alain
    Stehle, Damien
    ADVANCES IN CRYPTOLOGY - CRYPTO 2023, PT V, 2023, 14085 : 327 - 357
  • [18] Fiat-Shamir: From Practice to Theory
    Canetti, Ran
    Chen, Yilei
    Holmgren, Justin
    Lombardi, Alex
    Rothblum, Guy N.
    Rothblum, Ron D.
    Wichs, Daniel
    PROCEEDINGS OF THE 51ST ANNUAL ACM SIGACT SYMPOSIUM ON THEORY OF COMPUTING (STOC '19), 2019, : 1082 - 1090
  • [19] Revisiting the Security of Fiat-Shamir Signature Schemes Under Superposition Attacks
    Yuan, Quan
    Sun, Chao
    Takagi, Tsuyoshi
    INFORMATION SECURITY AND PRIVACY, PT II, ACISP 2024, 2024, 14896 : 164 - 184
  • [20] Polytopes in the Fiat-Shamir with Aborts Paradigm
    Bambury, Henry
    Beguinet, Hugo
    Ricosset, Thomas
    Sageloli, Eric
    ADVANCES IN CRYPTOLOGY - CRYPTO 2024, PT I, 2024, 14920 : 339 - 372