# American Institute of Mathematical Sciences

February  2019, 13(1): 185-193. doi: 10.3934/amc.2019012

## On the security of the WOTS-PRF signature scheme

 1 ISARA Corporation, Waterloo, Canada 2 Department of Combinatorics & Optimization, University of Waterloo, Canada

Received  July 2018 Published  December 2018

We identify a flaw in the security proof and a flaw in the concrete security analysis of the WOTS-PRF variant of the Winternitz one-time signature scheme, and discuss the implications to its concrete security.

Citation: Philip Lafrance, Alfred Menezes. On the security of the WOTS-PRF signature scheme. Advances in Mathematics of Communications, 2019, 13 (1) : 185-193. doi: 10.3934/amc.2019012
##### References:

show all references

##### References:
The incomplete $\alpha$'th Winternitz hash chain in ${\mathcal{A}}_{{\rm KOW}}$'s experiment
The tree of $w$-keychains to $pk_{\alpha}$
 [1] Gregory M. Zaverucha, Douglas R. Stinson. Short one-time signatures. Advances in Mathematics of Communications, 2011, 5 (3) : 473-488. doi: 10.3934/amc.2011.5.473 [2] Meenakshi Kansal, Ratna Dutta, Sourav Mukhopadhyay. Group signature from lattices preserving forward security in dynamic setting. Advances in Mathematics of Communications, 2020, 14 (4) : 535-553. doi: 10.3934/amc.2020027 [3] Xuemei Li, Rafael de la Llave. Convergence of differentiable functions on closed sets and remarks on the proofs of the "Converse Approximation Lemmas''. Discrete & Continuous Dynamical Systems - S, 2010, 3 (4) : 623-641. doi: 10.3934/dcdss.2010.3.623 [4] Marcela Mejía, J. Urías. An asymptotically perfect pseudorandom generator. Discrete & Continuous Dynamical Systems - A, 2001, 7 (1) : 115-126. doi: 10.3934/dcds.2001.7.115 [5] Małgorzata Wyrwas, Dorota Mozyrska, Ewa Girejko. Subdifferentials of convex functions on time scales. Discrete & Continuous Dynamical Systems - A, 2011, 29 (2) : 671-691. doi: 10.3934/dcds.2011.29.671 [6] Carlos Lizama, Marina Murillo-Arcila. Discrete maximal regularity for volterra equations and nonlocal time-stepping schemes. Discrete & Continuous Dynamical Systems - A, 2020, 40 (1) : 509-528. doi: 10.3934/dcds.2020020 [7] Hélène Hivert. Numerical schemes for kinetic equation with diffusion limit and anomalous time scale. Kinetic & Related Models, 2018, 11 (2) : 409-439. doi: 10.3934/krm.2018019 [8] Nicolas Crouseilles, Giacomo Dimarco, Mohammed Lemou. Asymptotic preserving and time diminishing schemes for rarefied gas dynamic. Kinetic & Related Models, 2017, 10 (3) : 643-668. doi: 10.3934/krm.2017026 [9] Laurent Gosse. Well-balanced schemes using elementary solutions for linear models of the Boltzmann equation in one space dimension. Kinetic & Related Models, 2012, 5 (2) : 283-323. doi: 10.3934/krm.2012.5.283 [10] Adam M. Oberman. Wide stencil finite difference schemes for the elliptic Monge-Ampère equation and functions of the eigenvalues of the Hessian. Discrete & Continuous Dynamical Systems - B, 2008, 10 (1) : 221-238. doi: 10.3934/dcdsb.2008.10.221 [11] Françoise Demengel, Thomas Dumas. Extremal functions for an embedding from some anisotropic space, involving the "one Laplacian". Discrete & Continuous Dynamical Systems - A, 2019, 39 (2) : 1135-1155. doi: 10.3934/dcds.2019048 [12] Neal Koblitz, Alfred Menezes. Another look at security definitions. Advances in Mathematics of Communications, 2013, 7 (1) : 1-38. doi: 10.3934/amc.2013.7.1 [13] Isabelle Déchène. On the security of generalized Jacobian cryptosystems. Advances in Mathematics of Communications, 2007, 1 (4) : 413-426. doi: 10.3934/amc.2007.1.413 [14] Takeshi Fukao, Shuji Yoshikawa, Saori Wada. Structure-preserving finite difference schemes for the Cahn-Hilliard equation with dynamic boundary conditions in the one-dimensional case. Communications on Pure & Applied Analysis, 2017, 16 (5) : 1915-1938. doi: 10.3934/cpaa.2017093 [15] Francisco Guillén-González, Mouhamadou Samsidy Goudiaby. Stability and convergence at infinite time of several fully discrete schemes for a Ginzburg-Landau model for nematic liquid crystal flows. Discrete & Continuous Dynamical Systems - A, 2012, 32 (12) : 4229-4246. doi: 10.3934/dcds.2012.32.4229 [16] Daniele Boffi, Lucia Gastaldi, Sebastian Wolf. Higher-order time-stepping schemes for fluid-structure interaction problems. Discrete & Continuous Dynamical Systems - B, 2020, 25 (10) : 3807-3830. doi: 10.3934/dcdsb.2020229 [17] Ke Gu, Xinying Dong, Linyu Wang. Efficient traceable ring signature scheme without pairings. Advances in Mathematics of Communications, 2020, 14 (2) : 207-232. doi: 10.3934/amc.2020016 [18] Alina Ostafe, Igor E. Shparlinski, Arne Winterhof. On the generalized joint linear complexity profile of a class of nonlinear pseudorandom multisequences. Advances in Mathematics of Communications, 2010, 4 (3) : 369-379. doi: 10.3934/amc.2010.4.369 [19] Robert Glassey, Stephen Pankavich, Jack Schaeffer. On long-time behavior of monocharged and neutral plasma in one and one-half dimensions. Kinetic & Related Models, 2009, 2 (3) : 465-488. doi: 10.3934/krm.2009.2.465 [20] Ciprian Preda. Discrete-time theorems for the dichotomy of one-parameter semigroups. Communications on Pure & Applied Analysis, 2008, 7 (2) : 457-463. doi: 10.3934/cpaa.2008.7.457

2019 Impact Factor: 0.734