摘要
王晓明等在2003年提出了一个盲代理签名方案,使原始签名人不能直接根据代理签名辨认出代理签名人的身份,但在需要时,可以通过代理签名管理中心来辨认出代理签名人的身份.本文通过描述一个有效的攻击来指出他们方案中的一些安全漏洞.该攻击能够伪造出有效的代理签名,使签名验证人可以接受该代理签名,但管理中心并不能通过此签名来辨认出代理签名人的身份.
Wang et al proposed a digital blind proxy signature scheme in 2003. The properties of the scheme are that the original signer can not identify the proxy signer through a proxy signature and the proxy signer can blindly sign a message, but when it's necessary, the anonymity can be revoked by a proxy signature management center. In this paper we will point out some of the security flaws of their scheme by presenting an effective attack. One can forge an effective proxy signature that will be accepted by the signature verifier and that will not identify the true signer to management.
出处
《中国科学院研究生院学报》
CAS
CSCD
2006年第6期833-836,共4页
Journal of the Graduate School of the Chinese Academy of Sciences
关键词
盲代理签名
可撤销匿名性
密码分析
blind proxy signature, anonymity-revoking, cryptanalysis