Paper 2025/715

Updatable Signature with Public Tokens

Haotian Yin, Xi'an Jiaotong-Liverpool University
Jie Zhang, Xi'an Jiaotong-Liverpool University
Wanxin Li, Xi'an Jiaotong-Liverpool University
Yuji Dong, Xi'an Jiaotong-Liverpool University
Eng Gee Lim, Xi'an Jiaotong-Liverpool University
Dominik Wojtczak, Xi'an Jiaotong-Liverpool University
Abstract

The Updatable Signature (US) allows valid signatures to be updated by an update token without accessing the newly generated signing key. Cini et al. (PKC'21) formally defined this signature and gave several constructions. However, their security model requires the secrecy of the update token, which is only applicable in some specific scenarios, such as software verification in the trusted App Store. In Web3, information is usually shared via a public blockchain, and decentralized private computation is expensive. In addition, one can use the same token to update both the signing key and signatures and all signatures can be updated with a single token. The adversarial signature generated by an adversary might also be updated. Therefore, this work explores the (im)possibility of constructing an Updatable Signature with public tokens (USpt), the tokens of which are signature-dependent. Specifically, we define the updatable signature with public tokens and present its security model. Then, we present a concrete USpt scheme based on the Boneh–Lynn–Shacham signature. This variant introduces a limitation for the signer who must maintain a dataset about its signed messages or hashes of them, which is applicable in our applications.

Metadata
Available format(s)
PDF
Category
Applications
Publication info
Published elsewhere. Journal of Information Security and Applications
Keywords
Updatable signatureWeb3BLS signature
Contact author(s)
haotian yin23 @ student xjtlu edu cn
History
2025-04-21: approved
2025-04-21: received
See all versions
Short URL
https://ia.cr/2025/715
License
Creative Commons Attribution-NonCommercial
CC BY-NC

BibTeX

@misc{cryptoeprint:2025/715,
      author = {Haotian Yin and Jie Zhang and Wanxin Li and Yuji Dong and Eng Gee Lim and Dominik Wojtczak},
      title = {Updatable Signature with Public Tokens},
      howpublished = {Cryptology {ePrint} Archive, Paper 2025/715},
      year = {2025},
      url = {https://eprint.iacr.org/2025/715}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.