Paper 2025/715
Updatable Signature with Public Tokens
Abstract
The Updatable Signature (US) allows valid signatures to be updated by an update token without accessing the newly generated signing key. Cini et al. (PKC'21) formally defined this signature and gave several constructions. However, their security model requires the secrecy of the update token, which is only applicable in some specific scenarios, such as software verification in the trusted App Store. In Web3, information is usually shared via a public blockchain, and decentralized private computation is expensive. In addition, one can use the same token to update both the signing key and signatures and all signatures can be updated with a single token. The adversarial signature generated by an adversary might also be updated. Therefore, this work explores the (im)possibility of constructing an Updatable Signature with public tokens (USpt), the tokens of which are signature-dependent. Specifically, we define the updatable signature with public tokens and present its security model. Then, we present a concrete USpt scheme based on the Boneh–Lynn–Shacham signature. This variant introduces a limitation for the signer who must maintain a dataset about its signed messages or hashes of them, which is applicable in our applications.
Metadata
- Available format(s)
-
PDF
- Category
- Applications
- Publication info
- Published elsewhere. Journal of Information Security and Applications
- Keywords
- Updatable signatureWeb3BLS signature
- Contact author(s)
- haotian yin23 @ student xjtlu edu cn
- History
- 2025-04-21: approved
- 2025-04-21: received
- See all versions
- Short URL
- https://ia.cr/2025/715
- License
-
CC BY-NC
BibTeX
@misc{cryptoeprint:2025/715, author = {Haotian Yin and Jie Zhang and Wanxin Li and Yuji Dong and Eng Gee Lim and Dominik Wojtczak}, title = {Updatable Signature with Public Tokens}, howpublished = {Cryptology {ePrint} Archive, Paper 2025/715}, year = {2025}, url = {https://eprint.iacr.org/2025/715} }