Author:
Hao Jialu,Wu Wei,Wang Shuo,Zhong Xiaoge,Chu Guang,Shao Feng
Abstract
Attribute-based signature (ABS) assures the verifier that the message is endorsed by a signer whose attributes satisfy the claimed attribute policy (predicate); thus, it can provide identity authentication with privacy preservation in scenarios like anonymous communication and access control. However, we have found that the inherent delegatibility of attribute-based cryptography, which enables the utilization of relationship between policies, could make most of the existing ABS constructions not satisfy the unforgeability requirement under the common security model. In this paper, we dig into the delegatibility property of ABS for the first time and propose the potential delegation attack to break the unforgeability of the existing ABS constructions under the common security model. We also give two attack instances on a typical ABS construction to demonstrate the feasibility of the proposed delegation attack. Finally, we present two solutions to improve the above issue and give a further discussion about the delegatibility property of ABS.
Funder
National Natural Science Foundation of China
Henan Key Laboratory of Network Cryptography Technology
Subject
General Mathematics,Engineering (miscellaneous),Computer Science (miscellaneous)
Reference50 articles.
1. Shamir, A. (1984, January 19–22). Identity-based cryptosystems and signature schemes. Proceedings of the Workshop on the Theory and Application of Cryptographic Techniques, Santa Barbara, CA, USA.
2. Gu, Y., Shen, L., Zhang, F., and Xiong, J. (2022). Provably Secure Linearly Homomorphic Aggregate Signature Scheme for Electronic Healthcare System. Mathematics, 10.
3. Choon, J.C., and Hee Cheon, J. (2003, January 6–8). An identity-based signature from gap Diffie-Hellman groups. Proceedings of the International Workshop on Public Key Cryptography, Miami, FL, USA.
4. Galindo, D., and Garcia, F.D. (2009, January 21–25). A Schnorr-like lightweight identity-based signature scheme. Proceedings of the International Conference on Cryptology in Africa, Gammarth, Tunisia.
5. Kóczy, L.T., Susniene, D., Purvinis, O., and Konczosné Szombathelyi, M. (2022). A New Similarity Measure of Fuzzy Signatures with a Case Study Based on the Statistical Evaluation of Questionnaires Comparing the Influential Factors of Hungarian and Lithuanian Employee Engagement. Mathematics, 10.