Paper 2016/013

Threshold-optimal DSA/ECDSA signatures and an application to Bitcoin wallet security

Rosario Gennaro, Steven Goldfeder, and Arvind Narayanan

Abstract

While threshold signature schemes have been presented before, there has never been an optimal threshold signature algorithm for DSA. Due to the properties of DSA, it is far more difficult to create a threshold scheme for it than for other signature algorithms. In this paper, we present a breakthrough scheme that provides a threshold DSA algorithm that is efficient and optimal. We also present a compelling application to use our scheme: securing Bitcoin wallets. Bitcoin thefts are on the rise, and threshold DSA is necessary to secure Bitcoin wallets. Our scheme is the first general threshold DSA scheme that does not require an honest majority and is useful for securing Bitcoin wallets.

Metadata
Available format(s)
PDF
Category
Cryptographic protocols
Publication info
Preprint. MINOR revision.
Keywords
DSAECDSAthreshold signaturesthreshold cryptographyBitcoin
Contact author(s)
sgoldfed @ gmail com
History
2016-01-27: revised
2016-01-07: received
See all versions
Short URL
https://ia.cr/2016/013
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2016/013,
      author = {Rosario Gennaro and Steven Goldfeder and Arvind Narayanan},
      title = {Threshold-optimal DSA/ECDSA signatures and an application to Bitcoin wallet security},
      howpublished = {Cryptology ePrint Archive, Paper 2016/013},
      year = {2016},
      note = {\url{https://eprint.iacr.org/2016/013}},
      url = {https://eprint.iacr.org/2016/013}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.