分析了已有的基于证书的聚合签名方案,指出该方案是不安全的,因为攻击者可以伪造单个签名和聚合签名,并且可以替换用户公钥.提出一个改进的基于证书的聚合签名方案,并在随机预言机模型下,证明了改进方案在计算性Diffie-Hellman困难性假设下是安全的.
The analysis of the certificated-based aggregate signature schemes proposed by Peng et al.shows that the scheme is insecure.In Peng's scheme,an adversary could forge a single signature and an aggregate signature,and the adversary also could replace user's public key.We propose an improved certificated-based aggregate signature schemes,which is provably secure in the random oracle model assuming the intractability of the computational Diffie-Hellman problem.