English

Threshold ECDSA with an Offline Recovery Party

Cryptography and Security 2026-01-22 v2

Abstract

A (t,n)(t,n)- threshold signature scheme enables distributed signing among nn players such that any subgroup of size tt can sign, whereas any group with fewer players cannot. Our goal is to produce signatures that are compatible with an existing centralized signature scheme: the key generation and signature algorithm are replaced by a communication protocol between the parties, but the verification algorithm remains identical to that of a signature issued using the centralized algorithm. Starting from the threshold schemes for the ECDSA signature due to R. Gennaro and S. Goldfeder, we present the first protocol that supports multiparty signatures with an offline participant during the Key Generation Phase, without relying on a trusted third party. Following well-established approaches, we prove our scheme secure against adaptive malicious adversaries.

Keywords

Cite

@article{arxiv.2007.04036,
  title  = {Threshold ECDSA with an Offline Recovery Party},
  author = {Michele Battagliola and Riccardo Longo and Alessio Meneghetti and Massimiliano Sala},
  journal= {arXiv preprint arXiv:2007.04036},
  year   = {2026}
}

Comments

31 pages

R2 v1 2026-06-23T16:56:50.820Z