摘要
吴克力等人提出一种动态群签名方案[1],并宣称证明了该方案满足群签名应具有的安全特性,但是经过认真分析发现该方案存在安全缺陷。任何非群成员都可以为自己生成签名私钥和成员证书,并且利用它可以伪造能够通过验证的群签名,即可以伪造不可追踪的群签名。其次,给出了对该群签名的一种陷害性攻击。分析结果表明,该群签名方案是不安全的。
Wu Ke-li proposed a dynamic group signature scheme , and claimed that its security property meeting what the group signature required was proved. In this paper it carefully analyzed the scheme and found the security flaws in it. Anyone out of group can generate his/her own private key of signature and group member' s certificate, and can use it to forge a valid group signature, i.e. to forge an untraceable group signature. Moreover, an entrapment attack to the group signature scheme was designed as well. The analysis on the security of that scheme shows that it is insecure.
出处
《计算机应用与软件》
CSCD
2009年第7期281-282,285,共3页
Computer Applications and Software
关键词
动态群签名
双线性对
安全性分析
不可伪造性
防陷害性
Dynamic group signature
Bilinear pairing
Security analysis
Non-forgeable
Anti-circumvention