Paper 2022/101

Lattice-Based Linkable Ring Signature in the Standard Model

Mingxing Hu and Zhen Liu


Ring signatures enable a user to sign messages on behalf of an arbitrary set of users, called the ring. The anonymity of the scheme guarantees that the signature does not reveal which member of the ring signed the message. The notion of linkable ring signatures (LRS) is an extension of the concept of ring signatures such that there is a public way of determining whether two signatures have been produced by the same signer. Lattice-based LRS is an important and active research line since lattice-based cryptography has attracted more attention due to its distinctive features, especially the quantum-resistant. However, all the existing lattice-based LRS relied on random oracle heuristics, i.e., no lattice-based LRS in the standard model has been introduced so far. In this paper, we present a lattice-based LRS scheme in the standard model. Toward our goal, we present new lattice basis extending algorithms which are the key ingredients in our construction, that may be of independent interest.

Available format(s)
Public-key cryptography
Publication info
Preprint. Minor revision.
Lattice-basedLinkable ring signatureStandard model
Contact author(s)
mxhu2018 @ sjtu edu cn
2022-05-22: last of 3 revisions
2022-01-31: received
See all versions
Short URL
Creative Commons Attribution


      author = {Mingxing Hu and Zhen Liu},
      title = {Lattice-Based Linkable Ring Signature in the Standard Model},
      howpublished = {Cryptology ePrint Archive, Paper 2022/101},
      year = {2022},
      note = {\url{}},
      url = {}
