Paper 2026/2155

Practical Adaptor Signatures for NP from Online/Offline NIZK

Masayuki Abe, NTT Social Informatics Laboratories
Dung Bui, Northwestern University
Kelong Cong, Zama
Miyako Ohkubo, National Institute of Information and Communications Technology
Zehua Shang, Kyoto University
Akira Takahashi, J.P. Morgan
Mehdi Tibouchi, NTT Social Informatics Laboratories
Abstract

Adaptor signatures enable conditional payments on blockchain networks: a pre-signature is bound to a public instance $Y$ and can be completed into a valid signature by any party knowing a witness $y$ with $\mathcal{R}(Y,y)=1$, while the pre-signature and full signature together allow the signer to extract $y$. Existing constructions only support specific algebraically-structured relations, lose witness privacy, or have significant overhead both in signature size and computation. We present a practical adaptor signature framework for arbitrary NP relations, built from a new primitive we call Online/Offline NIZK whose proof is separated into online and offline parts. The key property is that the witness can be extracted from the online part knowing the randomness used in the offline part. We give two generic constructions: a basic scheme achieving witness hiding, and an instance-hiding scheme achieving a new, stronger forward-secure privacy notion we introduce. We instantiate our framework for the AES-128 relation using the VOLE-in-the-Head paradigm and the FAEST post-quantum signature scheme. The resulting complete signature is $11.6$ kB, roughly $60\%$ smaller than the state-of-the-art adaptor signature for NP (Ciampi et al., CT-RSA '25), and our implementation is an order of magnitude faster in overall signature generation, verification, and extraction.

Metadata
Available format(s)
PDF
Category
Cryptographic protocols
Publication info
A minor revision of an IACR publication in ASIACRYPT 2026
Keywords
Post quantum cryptographyAdaptor signatureNIZKVOLEitH
Contact author(s)
abe masayuki @ iecl ntt co jp
dung bui @ northwestern edu
kelong cong @ zama ai
m ohkubo @ nict go jp
shang zehua 23m @ st kyoto-u ac jp
takahashi akira 58s @ gmail com
mehdi tibouchi @ ntt com
History
2026-09-22: approved
2026-09-22: received
See all versions
Short URL
https://ia.cr/2026/2155
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2026/2155,
      author = {Masayuki Abe and Dung Bui and Kelong Cong and Miyako Ohkubo and Zehua Shang and Akira Takahashi and Mehdi Tibouchi},
      title = {Practical Adaptor Signatures for {NP} from Online/Offline {NIZK}},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/2155},
      year = {2026},
      url = {https://eprint.iacr.org/2026/2155}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.