2021
DOI: 10.1007/978-3-030-84242-0_7
|View full text |Cite
|
Sign up to set email alerts
|

Two-Round Trip Schnorr Multi-signatures via Delinearized Witnesses

Help me understand this report

Search citation statements

Order By: Relevance

Paper Sections

Select...
2
2
1

Citation Types

0
0
0

Year Published

2021
2021
2023
2023

Publication Types

Select...
5
2
1

Relationship

0
8

Authors

Journals

citations
Cited by 25 publications
(5 citation statements)
references
References 23 publications
0
0
0
Order By: Relevance
“…Then a new blind signature based on the one-more DL assumption was proposed in AGM [26]. Most recently, [27,29,5,22] discussed the security of cryptographic protocols related to Sch in AGM.…”
Section: Related Workmentioning
confidence: 99%
“…Then a new blind signature based on the one-more DL assumption was proposed in AGM [26]. Most recently, [27,29,5,22] discussed the security of cryptographic protocols related to Sch in AGM.…”
Section: Related Workmentioning
confidence: 99%
“…Maxwell et al [3] presented the MuSig scheme in which the signers' public keys are aggregated into one short public key in the three-round MS scheme and showed that this MS scheme can be used for Bitcoin. Recently, a number of secure two-round MS schemes, MuSig-DN, MuSig2, DWMS, and HBMS, have been proposed [14][15][16][17]. Another way to design an MS scheme is to convert an aggregate signature scheme into a non-interactive MS scheme by setting a message to be the same for all signers.…”
Section: Related Workmentioning
confidence: 99%
“…However, Drijvers et al [13] showed that all of these two-round MS schemes can be attacked by using a parallel signing session attack with the Wagner algorithm, and it is difficult to prove the security of these MS schemes by using the meta-reduction technique. To solve this problem, a number of new two-round MS schemes based on Schnorr signatures or trapdoor commitment schemes have been proposed recently [13][14][15][16][17].…”
Section: Introductionmentioning
confidence: 99%
See 1 more Smart Citation
“…The FROST scheme [KG21] is full threshold, meaning it can be instantiated with any secretsharing recovery threshold t (out of n). MuSig2 [NRS21] and the delinearized witness multi-signatures (DWMS) [AB21] are multisignature schemes that operate in the plain public key model. SpeedyMuSig is similar to MuSig2 but operates in the KOSK model, which enables faster key aggregation [CKM21].…”
Section: Nonce Commitmentioning
confidence: 99%