Key Replacement Attack on Two Certificateless Signature Schemes without Random Oracles

被引:24
|
作者
Xia, Qi [1 ]
Xu, Chunxiang [1 ]
Yu, Yong [1 ]
机构
[1] Univ Elect Sci & Technol China, Sch Comp Sci & Engn, Chengdu 610054, Peoples R China
来源
关键词
Cryptography; Certificateless signature; Key replacement attack; GENERIC CONSTRUCTION; SECURITY;
D O I
10.4028/www.scientific.net/KEM.439-440.1606
中图分类号
TM [电工技术]; TN [电子技术、通信技术];
学科分类号
0808 ; 0809 ;
摘要
Liu et al. proposed the first certificateless signature scheme without random oracles in 2007. However, Xiong et al. showed that Liu et al.'s scheme is insecure against a malicious-but-passive KGC attack and proposed an improved scheme. In ISA 2009, Yuan et al. also proposed a new certificateless signature scheme without random oracles. Although they claimed that the two schemes are secure in the standard model, this paper shows that both Xiong et al.'s improved scheme and Yuan et al.'s new scheme are vulnerable to key replacement attack, where an adversary, obtaining a signature on a message and replacing the public key of a signer, can forge valid signatures on the same message under the replaced public key. We also give the corresponding modifications of the two schemes to resist key replacement attack.
引用
收藏
页码:1606 / 1611
页数:6
相关论文
共 50 条
  • [1] Public key replacement attack on two certificateless blind signature schemes
    Wu, C. (ptuwch@163.com), 1600, Binary Information Press, Flat F 8th Floor, Block 3, Tanner Garden, 18 Tanner Road, Hong Kong (10):
  • [2] Certificateless key-insulated signature without random oracles
    Zhong-mei Wan
    Xue-jia Lai
    Jian Weng
    Sheng-li Liu
    Yu Long
    Xuan Hong
    Journal of Zhejiang University-SCIENCE A, 2009, 10 : 1790 - 1800
  • [3] Certificateless key-insulated signature without random oracles
    Wan, Zhong-mei
    Lai, Xue-jia
    Weng, Jian
    Liu, Sheng-li
    Long, Yu
    Hong, Xuan
    JOURNAL OF ZHEJIANG UNIVERSITY-SCIENCE A, 2009, 10 (12): : 1790 - 1800
  • [4] Certificateless Strong Key-Insulated Signature Without Random Oracles
    万中美
    孟祥芹
    洪璇
    Journal of Shanghai Jiaotong University(Science), 2011, 16 (05) : 571 - 576
  • [5] Certificateless strong key-insulated signature without random oracles
    Wan Z.-M.
    Meng X.-Q.
    Hong X.
    Journal of Shanghai Jiaotong University (Science), 2011, 16 (5) : 571 - 576
  • [6] Mediated certificateless signature without random oracles
    Zheng M.
    Zhang J.
    Zhang Z.
    Journal of Networks, 2011, 6 (08) : 1222 - 1229
  • [7] Certificateless Signature Scheme without Random Oracles
    Yuan, Yumin
    Li, Da
    Tian, Liwen
    Zhu, Haishan
    ADVANCES IN INFORMATION SECURITY AND ASSURANCE, 2009, 5576 : 31 - 40
  • [8] Certificateless signature scheme without random oracles
    Li, Yan-Qiong
    Li, Ji-Guo
    Zhang, Yi-Chen
    Tongxin Xuebao/Journal on Communications, 2015, 36 (04):
  • [9] Certificateless key-insulated signature without random oracles附视频
    Zhongmei WAN Xuejia LAI Jian WENG Shengli LIU Yu LONG Xuan HONG Department of Computer Science and Engineering Shanghai Jiao Tong University Shanghai China College of Science Hohai University Nanjing China Department of Computer Science Jinan University Guangzhou China School of Information Systems Singapore Management University Singapore Singapore
    Journal of Zhejiang University Science A(An International Applied Physics & Engineering Journal), 2009, (12) : 1790 - 1800
  • [10] Fully distributed certificateless threshold signature without random oracles
    Wenjie YANG
    Weiqi LUO
    Xizhao LUO
    Jian WENG
    Anjia YANG
    Science China(Information Sciences), 2018, 61 (09) : 259 - 269