Paper 2026/145

Round-Optimal GUC-Secure Blind Signatures from Minimal Computational and Setup Assumptions

Michele Ciampi, University of Edinburgh
Pierpaolo Della Monica, Sapienza University of Rome
Ivan Visconti, Sapienza University of Rome
Abstract

A blind signature scheme is an interactive protocol that enables a user to obtain a signature on a message without revealing any information about the message–signature pair to the signer. Despite more than 40 years of research, all existing constructions suffer from at least two of the following limitations. 1. The protocol is not round-optimal, requiring more than two messages to be exchanged during the signature phase. 2. There is only game-based security and/or lack of composability with global and observable setup (i.e., there is a need for trusted parameters or to program random oracles). 3. Security (unlike regular signatures) is based on demanding hardness assumptions, especially when considering quantum attacks. In this work, we show how to blindly sign a message, simultaneously overcoming all of the above three limitations. Specifically, we construct a Universally Composable (UC), two-round (optimal) blind signature protocol that relies only on one-way functions (optimal), without trusted parameters. The only deviation from the plain model is the need for a global non-programmable random oracle (NPRO). Nicely, our scheme can be instantiated from a variety of assumptions believed to be post-quantum secure (e.g., AES). A central technical component of our scheme is the construction of a novel commitment scheme that enjoys a special (mild) form of composability, which may be of independent interest. We also discuss a concrete instantiation of our scheme that is suitable for practical applications.

Metadata
Available format(s)
PDF
Category
Cryptographic protocols
Publication info
A major revision of an IACR publication in CRYPTO 2026
Keywords
blind signaturestwo-roundone-way functionsrandom oracle
Contact author(s)
michele ciampi @ ed ac uk
dellamonica @ diag uniroma1 it
visconti @ diag uniroma1 it
History
2026-07-26: last of 3 revisions
2026-01-29: received
See all versions
Short URL
https://ia.cr/2026/145
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2026/145,
      author = {Michele Ciampi and Pierpaolo Della Monica and Ivan Visconti},
      title = {Round-Optimal {GUC}-Secure Blind Signatures from Minimal Computational and Setup Assumptions},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/145},
      year = {2026},
      url = {https://eprint.iacr.org/2026/145}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.