English
Related papers

Related papers: The Fiat-Shamir Transformation in a Quantum World

200 papers

The famous Fiat-Shamir transformation turns any public-coin three-round interactive proof, i.e., any so-called sigma-protocol, into a non-interactive proof in the random-oracle model. We study this transformation in the setting of a quantum…

Cryptography and Security · Computer Science 2020-07-28 Jelle Don , Serge Fehr , Christian Majenz , Christian Schaffner

Applying the Fiat-Shamir transform on identification schemes is one of the main ways of constructing signature schemes. While the classical security of this transformation is well understood, it is only very recently that generic results…

Quantum Physics · Physics 2021-03-17 André Chailloux

The random oracle model (ROM) enjoys widespread popularity, mostly because it tends to allow for tight and conceptually simple proofs where provable security in the standard model is elusive or costly. While being the adequate replacement…

Quantum Physics · Physics 2022-01-28 Alex B. Grilo , Kathrin Hövelmanns , Andreas Hülsing , Christian Majenz

We revisit recent works by Don, Fehr, Majenz and Schaffner and by Liu and Zhandry on the security of the Fiat-Shamir transformation of $\Sigma$-protocols in the quantum random oracle model (QROM). Two natural questions that arise in this…

Cryptography and Security · Computer Science 2022-03-08 Jelle Don , Serge Fehr , Christian Majenz

Strongly unforgeable signature schemes provide a more stringent security guarantee than the standard existential unforgeability. It requires that not only forging a signature on a new message is hard, it is infeasible as well to produce a…

Quantum Physics · Physics 2015-09-11 Edward Eaton , Fang Song

Commit-and-open Sigma-protocols are a popular class of protocols for constructing non-interactive zero-knowledge arguments and digital-signature schemes via the Fiat-Shamir transformation. Instantiated with hash-based commitments, the…

Cryptography and Security · Computer Science 2022-03-02 Jelle Don , Serge Fehr , Christian Majenz , Christian Schaffner

The Fischlin transform yields non-interactive zero-knowledge proofs with straight-line extractability in the classical random oracle model. This is done by forcing a prover to generate multiple accepting transcripts through a proof-of-work…

Cryptography and Security · Computer Science 2026-02-20 Christian Majenz , Jaya Sharma

Quantum zero-knowledge proofs and quantum proofs of knowledge are inherently difficult to analyze because their security analysis uses rewinding. Certain cases of quantum rewinding are handled by the results by Watrous (SIAM J Comput, 2009)…

Quantum Physics · Physics 2018-02-13 Andris Ambainis , Ansis Rosmanis , Dominique Unruh

Quantum secure signature schemes have a lot of attention recently, in particular because of the NIST call to standardize quantum safe cryptography. However, only few signature schemes can have concrete quantum security because of technical…

Quantum Physics · Physics 2017-09-21 André Chailloux , Thomas Debris-Alazard

Ring signatures are a powerful primitive that allows a member to sign on behalf of a group, without revealing their identity. Recently, ring signatures have received additional attention as an ingredient for post-quantum deniable…

Cryptography and Security · Computer Science 2026-02-19 Marvin Beckmann , Christian Majenz

This work revisits the security of classical signatures and ring signatures in a quantum world. For (ordinary) signatures, we focus on the arguably preferable security notion of blind-unforgeability recently proposed by Alagic et al.…

Quantum Physics · Physics 2021-12-14 Rohit Chatterjee , Kai-Min Chung , Xiao Liang , Giulio Malavolta

We explore the cryptographic power of arbitrary shared physical resources. The most general such resource is access to a fresh entangled quantum state at the outset of each protocol execution. We call this the Common Reference Quantum State…

Quantum Physics · Physics 2024-12-18 Frédéric Dupuis , Philippe Lamontagne , Louis Salvail

We prove that it is impossible to construct perfect-complete quantum public-key encryption (QPKE) with classical keys from quantumly secure one-way functions (OWFs) in a black-box manner, resolving a long-standing open question in quantum…

Quantum Physics · Physics 2025-04-09 Longcheng Li , Qian Li , Xingjian Li , Qipeng Liu

Quantum-access security, where an attacker is granted superposition access to secret-keyed functionalities, is a fundamental security model and its study has inspired results in post-quantum security. We revisit, and fill a gap in, the…

Quantum Physics · Physics 2021-08-06 Christian Majenz , Chanelle Matadah Manfouo , Maris Ozols

Forty years ago, Wiesner pointed out that quantum mechanics raises the striking possibility of money that cannot be counterfeited according to the laws of physics. We propose the first quantum money scheme that is (1) public-key, meaning…

Quantum Physics · Physics 2012-09-18 Scott Aaronson , Paul Christiano

It has been recently shown by Mayers that no bit commitment scheme is secure if the participants have unlimited computational power and technology. However it was noticed that a secure protocol could be obtained by forcing the cheater to…

Quantum Physics · Physics 2007-05-23 Gilles Brassard , Claude Crépeau , Dominic Mayers , Louis Salvail

The interest in post-quantum cryptography - classical systems that remain secure in the presence of a quantum adversary - has generated elegant proposals for new cryptosystems. Some of these systems are set in the random oracle model and…

Quantum Physics · Physics 2022-07-05 Dan Boneh , Özgür Dagdelen , Marc Fischlin , Anja Lehmann , Christian Schaffner , Mark Zhandry

Recently, there are more and more organizations offering quantum-cloud services, where any client can access a quantum computer remotely through the internet. In the near future, these cloud servers may claim to offer quantum computing…

Quantum Physics · Physics 2021-05-20 Xi Chen , Bin Cheng , Zhaokai Li , Xinfang Nie , Nengkun Yu , Man-Hong Yung , Xinhua Peng

It is notably challenging to design an efficient and secure signature scheme based on error-correcting codes. An approach to build such signature schemes is to derive it from an identification protocol through the Fiat-Shamir transform. All…

Information Theory · Computer Science 2019-04-22 Emanuele Bellini , Florian Caullery , Philippe Gaborit , Marc Manzano , Victor Mateu

Identification schemes are interactive protocols typically involving two parties, a prover, who wants to provide evidence of his or her identity and a verifier, who checks the provided evidence and decide whether it comes or not from the…

‹ Prev 1 2 3 10 Next ›