Title :
Cryptanalysis of Nyberg-Rueppel´s message recovery scheme
Author :
Lin, Chen-Chi ; Laih, Chi-Sung
Author_Institution :
Dept. of Electr. Eng., Nat. Cheng Kung Univ., Tainan, Taiwan
fDate :
7/1/2000 12:00:00 AM
Abstract :
The standard drafts, P1363 (1996) and ISO 9796-4 (1998), have adopted the discrete-logarithm based on signature equation, S3, which was originally proposed by Nyberg and Rueppel (1994). They also claimed that the signature scheme based on S3 and S5 can resist the known message attack. In this letter, we propose an extended known message attack to show that the message recovery signature scheme based on S3 and S5 has the security problem.
Keywords :
cryptography; telecommunication security; S3 signature scheme; S5 signature scheme; cryptanalysis; discrete-logarithm; extended known message attack; message recovery scheme; security problem; Bandwidth; Differential equations; ISO standards; Information security; National security; Protection; Public key; Public key cryptography; Resists;
Journal_Title :
Communications Letters, IEEE
DOI :
10.1109/4234.852925