2006 | OriginalPaper | Chapter
Toward the Fair Anonymous Signatures: Deniable Ring Signatures
Authors : Yuichi Komano, Kazuo Ohta, Atsushi Shimbo, Shinichi Kawamura
Published in: Topics in Cryptology – CT-RSA 2006
Publisher: Springer Berlin Heidelberg
Activate our intelligent search to find suitable subject content or patents.
Select sections of text to find matching patents with Artificial Intelligence. powered by
Select sections of text to find additional relevant content using AI-assisted search. powered by
Ring signature scheme, proposed by Rivest et al., allows a signer to sign a message anonymously. In the ring signature scheme, the signer who wants to sign a document anonymously first chooses some public keys of entities (signers) and then generates a signature which ensures that one of the signer or entities signs the document. In some situations, however, this scheme allows the signer to shift the blame to victims because of the anonymity. The group signature scheme may be a solution for the problem; however, it needs a group manager (electronic big brother) who can violate the signer anonymity without notification, and a complicated key setting.
This paper introduces a new concept of a signature scheme with signer anonymity,
a deniable ring signature scheme
(
$\mathcal{DRS}$
), in which no group manager exists, and the signer should be involved in opening the signer anonymity. We also propose a concrete scheme proven to be secure under the assumption of the DDH (decision Diffie Hellman) problem in the random oracle model.