Paper 2026/2121

Lattice-Based Synchronous Signatures: Efficiently Aggregatable and Thresholdizable

Dan Boneh, Stanford University
Binyi Chen, Tsinghua University
Trisha Datta, Stanford University
Abstract

Aggregate signatures play an important role in proof-of-stake systems, where many validators sign a block. There is a strong desire to aggregate all these signatures into one short signature that is fast to verify. Since all validators know the block number they are signing, this setting is well suited for synchronous (a.k.a stateful) signatures. Boneh and Kim (2019) showed that lattice-based one-time signatures (OTS) can be aggregated very efficiently. The Chipmunk and Lemur signature schemes extend this to an $\ell$-time synchronous scheme using a (homomorphic) Merkle tree of $\ell$ one-time public keys. Each leaf of the tree is used to sign one message, and these one-time signatures can be aggregated across many signers. Due to the Merkle tree, every aggregate signature includes a Merkle authentication path of length $O_\lambda(\log \ell)$. We present a different lattice-based approach to constructing a synchronous aggregate signature scheme. The length of an aggregate signature in our scheme is independent of $\ell$. The resulting signatures are asymptotically shorter than existing schemes, and concretely shorter for some parameter choices. The resulting signature verification algorithm is algebraic, which makes it amendable to efficient threshold signing. Moreover, we are able to prove security in an adaptive corruption model. We thus obtain an efficient lattice-based synchronous threshold signature scheme, where signatures from many signers can be aggregated into a single short signature. The scheme relies on a one time trusted setup to generate the public parameters.

Metadata
Available format(s)
PDF
Category
Public-key cryptography
Publication info
Preprint.
Keywords
synchronous signaturespost-quantumlattice-based cryptography
Contact author(s)
dabo @ cs stanford edu
by-chen @ mail tsinghua edu cn
tcdatta @ stanford edu
History
2026-09-22: approved
2026-09-20: received
See all versions
Short URL
https://ia.cr/2026/2121
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2026/2121,
      author = {Dan Boneh and Binyi Chen and Trisha Datta},
      title = {Lattice-Based Synchronous Signatures: Efficiently Aggregatable and Thresholdizable},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/2121},
      year = {2026},
      url = {https://eprint.iacr.org/2026/2121}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.