paper

Security analysis of the W-OTS signature scheme: Updating security bounds

arXiv:2002.07419 · doi:10.4213/mvk362

Abstract

In this work, we discuss in detail a flaw in the original security proof of the W-OTS variant of the Winternitz one-time signature scheme, which is an important component for various stateless and stateful many-time hash-based digital signature schemes. We update the security proof for the W-OTS scheme and derive the corresponding security level. Our result is of importance for the security analysis of hash-based digital signature schemes.

16 pages, 1 figure, 1 table

Cited by in corpus (1)