这个概念多,签名,多重签名人能在合作签署一样发送消息;任何验证器罐头验证多签名的有效性,被 Itakura 首先介绍;Nakamura。几多,签名方案从那时起被建议了。陈等。最近基于椭圆曲线秘密成员系统建议了一个新数字多签名计划。在这篇论文,我们证明他们的计划是不可靠的因为它对所谓的活跃攻击脆弱,例如到在一个关键目录或在传播期间的“真”的“假”的公共密钥的替换。然后攻击者罐头签署另外的用户签署了的法律签名;自己伪造签名它能被验证器接受。
The concept of multisignature, in which multiple signers can cooperate to sign the same message and any verifier can verify the validity of the multi-signature, was first introduced by Itakura and Nakamura. Several multisignature schemes have been proposed since. Chen et al. proposed a new digital multi-signature scheme based on the elliptic curve cryptosystem recently. In this paper, we show that their scheme is insecure, for it is vulnerable to the so-called active attacks, such as the substitution of a "false" public key to a "true" one in a key directory or during transmission. And then the attacker can sign a legal signature which other users have signed and forge a signature himself which can be accepted by the verifier.