Paper 2025/939
On the security of one certificateless aggregate signature scheme with dynamic revocation in vehicular ad-hoc networks
Abstract
We show that the certificateless signature scheme [Veh. Commun. 47: 100763 (2024)] is insecure, because an adversary can launch forgery attack for any message. The signer's certificateless public key is not tightly bound to the system public key. The inherent flaw results in that the adversary can find an efficient signing algorithm functionally equivalent to the valid signing algorithm. The findings in this note could be helpful for newcomers who are not familiar with the designing techniques for certificateless signatures.
Metadata
- Available format(s)
-
PDF
- Category
- Attacks and cryptanalysis
- Publication info
- Preprint.
- Keywords
- Certificateless signatureforgery attacksigning algorithmverification algorithm
- Contact author(s)
- liulh @ shmtu edu cn
- History
- 2025-05-23: approved
- 2025-05-23: received
- See all versions
- Short URL
- https://ia.cr/2025/939
- License
-
CC0
BibTeX
@misc{cryptoeprint:2025/939,
author = {Zhengjun Cao and Lihua Liu},
title = {On the security of one certificateless aggregate signature scheme with dynamic revocation in vehicular ad-hoc networks},
howpublished = {Cryptology {ePrint} Archive, Paper 2025/939},
year = {2025},
url = {https://eprint.iacr.org/2025/939}
}