On the Security of the Lee-Chang Group Signature Scheme and Its Derivatives
- First Online:
W.-B. Lee and C.-C. Chang (1998) proposed a very efficient group signature scheme based on the discrete logarithm problem. This scheme was subsequently improved by Y.-M. Tseng and J.-K. Jan (1999) so that the resulting group signatures are unlinkable. In this paper, we show that any obvious attempt to make unlinkable the Lee-Chang signatures would likely fail. More importantly, we show that both the original Lee-Chang signature scheme and its improved version are universally forgeable.
KeywordsDigital signatures Group signatures Cryptanalysis
Unable to display preview. Download preview PDF.
- 1.David Chaum and Eugène van Heijst. Group signatures. In Advances in Cryptology — EUROCRYPT’91, LNCS 547, pp. 257–265. Springer-Verlag, 1991.Google Scholar