Paper 2026/2155
Practical Adaptor Signatures for NP from Online/Offline NIZK
Abstract
Adaptor signatures enable conditional payments on blockchain networks: a pre-signature is bound to a public instance $Y$ and can be completed into a valid signature by any party knowing a witness $y$ with $\mathcal{R}(Y,y)=1$, while the pre-signature and full signature together allow the signer to extract $y$. Existing constructions only support specific algebraically-structured relations, lose witness privacy, or have significant overhead both in signature size and computation. We present a practical adaptor signature framework for arbitrary NP relations, built from a new primitive we call Online/Offline NIZK whose proof is separated into online and offline parts. The key property is that the witness can be extracted from the online part knowing the randomness used in the offline part. We give two generic constructions: a basic scheme achieving witness hiding, and an instance-hiding scheme achieving a new, stronger forward-secure privacy notion we introduce. We instantiate our framework for the AES-128 relation using the VOLE-in-the-Head paradigm and the FAEST post-quantum signature scheme. The resulting complete signature is $11.6$ kB, roughly $60\%$ smaller than the state-of-the-art adaptor signature for NP (Ciampi et al., CT-RSA '25), and our implementation is an order of magnitude faster in overall signature generation, verification, and extraction.
Metadata
- Available format(s)
-
PDF
- Category
- Cryptographic protocols
- Publication info
- A minor revision of an IACR publication in ASIACRYPT 2026
- Keywords
- Post quantum cryptographyAdaptor signatureNIZKVOLEitH
- Contact author(s)
-
abe masayuki @ iecl ntt co jp
dung bui @ northwestern edu
kelong cong @ zama ai
m ohkubo @ nict go jp
shang zehua 23m @ st kyoto-u ac jp
takahashi akira 58s @ gmail com
mehdi tibouchi @ ntt com - History
- 2026-09-22: approved
- 2026-09-22: received
- See all versions
- Short URL
- https://ia.cr/2026/2155
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2026/2155,
author = {Masayuki Abe and Dung Bui and Kelong Cong and Miyako Ohkubo and Zehua Shang and Akira Takahashi and Mehdi Tibouchi},
title = {Practical Adaptor Signatures for {NP} from Online/Offline {NIZK}},
howpublished = {Cryptology {ePrint} Archive, Paper 2026/2155},
year = {2026},
url = {https://eprint.iacr.org/2026/2155}
}