We revisit the definition of unforgeability of blind signatures as proposed by Pointcheval and Stern (Journal of Cryptology 2000). Surprisingly, we show that this established definition falls short in two ways of what one would intuitively expect from a secure blind signature scheme: It is not excluded that an adversary submits the same message m twice for signing, and then produces a signature for m0 6= m. The reason is that the forger only succeeds if all messages are distinct. Moreover, it is not excluded that an adversary performs k signing queries and produces signatures on k + 1 messages as long as each of these signatures does not pass verification with probability 1. Finally, we proposed a new definition,
Link:SỞ GIÁO DỤC VÀ ĐÀO TẠO THÁI BÌNH
NHÀ XUẤT BẢN ĐẠI HỌC QUỐC GIA
Trường THPT chuyên Vĩnh Phúc
5 bài toán vận dụng cao từ đề thi thử lần 14
Toán lần 3 năm 2019-2020
Tiếng Anh năm 2019-2020
Vật lý năm học 2020
Trường THPT Bến Tre (Mã đề 132)
THPT lần 2 môn Ngữ văn năm 2020
THPT lần 2 môn Toán năm 2020
Tiếng Anh năm 2020
Bộ giáo dục và đào tạo
Đề thi quốc gia năm 2019