Fully Leakage-Resilient Signatures with Graceful Degradation

September 6, 2016

Antonio Faonio


Fully Leakage-Resilient Signatures with Graceful Degradation

Time:   11:00am
Location:   Meeting room 302 (Mountain View), level 3

We construct new leakage-resilient signature schemes. Our schemes remain unforgeable against an adversary leaking arbitrary (yet bounded) information on the entire state of the signer (sometimes known as fully leakage resilience).

The main feature of our constructions, is that they offer a graceful degradation of security in situations where standard existential unforgeability is impossible. This property was recently put forward by Nielsen et al. (PKC 2014) to deal with settings in which the secret key is much larger than the size of a signature.