{"status":"ok","message-type":"work","message-version":"1.0.0","message":{"indexed":{"date-parts":[[2026,8,18]],"date-time":"2026-08-18T06:00:18Z","timestamp":1787032818682,"version":"3.56.0"},"reference-count":64,"publisher":"International Association for Cryptologic Research","issue":"4","license":[{"start":{"date-parts":[[2024,7,9]],"date-time":"2024-07-09T00:00:00Z","timestamp":1720483200000},"content-version":"vor","delay-in-days":0,"URL":"https:\/\/creativecommons.org\/licenses\/by\/4.0\/"}],"content-domain":{"domain":[],"crossmark-restriction":false},"short-container-title":["IACR CiC"],"accepted":{"date-parts":[[2024,12,3]]},"abstract":"<jats:p>We construct two efficient post-quantum ring signatures with anonymity against full key exposure from isogenies, addressing the limitations of existing isogeny-based ring signatures.<\/jats:p>\n                  <jats:p>First, we present an efficient concrete distinguisher for the SQIsign simulator when the signing key is provided using one transcript. This shows that turning SQIsign into an efficient full anonymous ring signature requires some new ideas.<\/jats:p>\n                  <jats:p>Second, we propose a variant of SQIsign (Asiacrypt'20) that is resistant to the distinguisher attack with only a x1.4 increase in size and we render it to a ring signature, that we refer to as Erebor.       This variant introduces a new zero-knowledge assumption that ensures full anonymity.       The efficiency of Erebor remains comparable to that of SQIsign, with only a proportional increase due to the ring size. This results in a signature size of 0.71 KB for 4 users and 1.41 KB for 8 users, making it the most compact post-quantum ring signature for up to 29 users.<\/jats:p>\n                  <jats:p>Third, we revisit the GPS signature scheme (Asiacrypt'17), developing efficient subroutines to make the scheme more efficient and significantly reduce the resulting signature size. By integrating our scheme with the paradigm by  Beullens, Katsumata, and Pintore       (Asiacrypt\u201920), we achieve an efficient logarithmic ring signature, that we call Durian, resulting in a signature size of 9.87 KB for a ring of size 1024.<\/jats:p>","DOI":"10.62056\/ava3zivrzn","type":"journal-article","created":{"date-parts":[[2025,1,13]],"date-time":"2025-01-13T12:00:52Z","timestamp":1736769652000},"update-policy":"https:\/\/doi.org\/10.62056\/adfjwm02dj","source":"Crossref","is-referenced-by-count":3,"title":["Erebor and Durian: Full Anonymous Ring Signatures from Quaternions and Isogenies"],"prefix":"10.62056","volume":"1","author":[{"ORCID":"https:\/\/orcid.org\/0009-0001-7311-3802","authenticated-orcid":false,"given":"Giacomo","family":"Borin","sequence":"first","affiliation":[{"id":[{"id":"https:\/\/ror.org\/02js37d36","id-type":"ROR","asserted-by":"publisher"}],"name":"IBM Research - Zurich","place":["S\u00e4umerstrasse 4, R\u00fcschlikon, 8803, Switzerland"]},{"id":[{"id":"https:\/\/ror.org\/02crff812","id-type":"ROR","asserted-by":"publisher"}],"name":"University of Zurich","place":["R\u00e4mistrasse 71, Zurich, 8006, Switzerland"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0000-0002-1346-9372","authenticated-orcid":false,"given":"Yi-Fu","family":"Lai","sequence":"additional","affiliation":[{"id":[{"id":"https:\/\/ror.org\/04tsk2644","id-type":"ROR","asserted-by":"publisher"}],"name":"Ruhr University Bochum","place":["Universit\u00e4tsstra\u00dfe 150, Bochum, 44801, Germany"]}],"role":[{"vocabulary":"crossref","role":"author"}]},{"ORCID":"https:\/\/orcid.org\/0009-0002-3737-0075","authenticated-orcid":false,"given":"Antonin","family":"Leroux","sequence":"additional","affiliation":[{"id":[{"id":"https:\/\/ror.org\/04wsqd844","id-type":"ROR","asserted-by":"publisher"}],"name":"DGA Maitrise de l'information","place":["Bruz, France"]},{"id":[{"id":"https:\/\/ror.org\/015m7wh34","id-type":"ROR","asserted-by":"publisher"}],"name":"Universit\u00e9 de Rennes","place":["263 avenue General Leclerc, Rennes, France"]}],"role":[{"vocabulary":"crossref","role":"author"}]}],"member":"48349","published-online":{"date-parts":[[2025,1,13]]},"reference":[{"key":"ref1:AC:RivShaTau01","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"552","DOI":"10.1007\/3-540-45682-1_32","article-title":"How to Leak a Secret","volume":"2248","author":"Ronald L. Rivest","year":"2001"},{"key":"ref2:ACISP:LiuWeiWon04","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"325","DOI":"10.1007\/978-3-540-27800-9_28","article-title":"Linkable Spontaneous Anonymous Group Signature for Ad Hoc\n  Groups (Extended Abstract)","volume":"3108","author":"Joseph K. Liu","year":"2004"},{"key":"ref3:EPRINT:Noether15","volume-title":"Ring Signature Confidential Transactions for Monero","author":"Shen Noether","year":"2015"},{"key":"ref4:FC:YSLAEZG20","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"464","DOI":"10.1007\/978-3-030-51280-4_25","article-title":"RingCT 3.0 for Blockchain Confidential Transaction:\n  Shorter Size and Stronger Security","volume":"12059","author":"Tsz Hon Yuen","year":"2020"},{"key":"ref5:SP:EsgSteZha22","doi-asserted-by":"publisher","first-page":"1281","DOI":"10.1109\/SP46214.2022.9833655","article-title":"MatRiCT${}^+$: More Efficient Post-Quantum Private\n  Blockchain Payments","author":"Muhammed F. Esgin","year":"2022"},{"key":"ref6:PKC:HKKP21","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"410","DOI":"10.1007\/978-3-030-75248-4_15","article-title":"An Efficient and Generic Construction for Signal's\n  Handshake (X3DH): Post-Quantum, State Leakage Secure, and Deniable","volume":"12711","author":"Keitaro Hashimoto","year":"2021"},{"key":"ref7:PKC:BFGJS22","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"3","DOI":"10.1007\/978-3-030-97131-1_1","article-title":"Post-quantum Asynchronous Deniable Key Exchange and the\n  Signal Handshake","volume":"13178","author":"Jacqueline Brendel","year":"2022"},{"key":"ref8:cryptoeprint:2024\/890","isbn-type":"print","doi-asserted-by":"publisher","first-page":"305","DOI":"10.1007\/978-3-031-68376-3_10","article-title":"Ring Signatures for\u00a0Deniable AKEM: Gandalf's Fellowship","author":"Phillip Gajland","year":"2024","ISBN":"https:\/\/id.crossref.org\/isbn\/9783031683763"},{"key":"ref9:AC:AbeOhkSuz02","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"415","DOI":"10.1007\/3-540-36178-2_26","article-title":"1-out-of-n Signatures from a Variety of Keys","volume":"2501","author":"Masayuki Abe","year":"2002"},{"key":"ref10:EC:BGLS03","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"416","DOI":"10.1007\/3-540-39200-9_26","article-title":"Aggregate and Verifiably Encrypted Signatures from Bilinear\n  Maps","volume":"2656","author":"Dan Boneh","year":"2003"},{"key":"ref11:EC:GroKoh15","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"253","DOI":"10.1007\/978-3-662-46803-6_9","article-title":"One-Out-of-Many Proofs: Or How to Leak a Secret and Spend a\n  Coin","volume":"9057","author":"Jens Groth","year":"2015"},{"key":"ref12:C:YELAD21","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"251","DOI":"10.1007\/978-3-030-84242-0_10","article-title":"DualRing: Generic Construction of Ring Signatures with\n  Efficient Instantiations","volume":"12825","author":"Tsz Hon Yuen","year":"2021"},{"key":"ref13:shor","doi-asserted-by":"publisher","first-page":"124","DOI":"10.1109\/SFCS.1994.365700","article-title":"Algorithms for quantum computation: discrete logarithms and\n  factoring","author":"P.W. Shor","year":"1994"},{"key":"ref14:CCS:KatKolWan18","doi-asserted-by":"publisher","first-page":"525","DOI":"10.1145\/3243734.3243805","article-title":"Improved Non-Interactive Zero Knowledge with Applications to\n  Post-Quantum Signatures","author":"Jonathan Katz","year":"2018"},{"key":"ref15:ACNS:LuAuZha19","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"110","DOI":"10.1007\/978-3-030-21568-2_6","article-title":"Raptor: A Practical Lattice-Based (Linkable) Ring\n  Signature","volume":"11464","author":"Xingye Lu","year":"2019"},{"key":"ref16:AC:BeuKatPin20","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"464","DOI":"10.1007\/978-3-030-64834-3_16","article-title":"Calamari and Falafl: Logarithmic (Linkable) Ring\n  Signatures from Isogenies and Lattices","volume":"12492","author":"Ward Beullens","year":"2020"},{"key":"ref17:EC:BDKLP22","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"95","DOI":"10.1007\/978-3-031-07085-3_4","article-title":"Group Signatures and More from Isogenies and Lattices:\n  Generic, Simple, and Efficient","volume":"13276","author":"Ward Beullens","year":"2022"},{"key":"ref18:C:LyuNguSei21","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"611","DOI":"10.1007\/978-3-030-84245-1_21","article-title":"SMILE: Set Membership from Ideal Lattices with\n  Applications to Ring Signatures and Confidential Transactions","volume":"12826","author":"Vadim Lyubashevsky","year":"2021"},{"key":"ref19:AC:CLMPR18","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"395","DOI":"10.1007\/978-3-030-03332-3_15","article-title":"CSIDH: An Efficient Post-Quantum Commutative Group\n  Action","volume":"11274","author":"Wouter Castryck","year":"2018"},{"key":"ref20:EC:LaiGalDel21","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"213","DOI":"10.1007\/978-3-030-77870-5_8","article-title":"Compact, Efficient and UC-Secure Isogeny-Based Oblivious\n  Transfer","volume":"12696","author":"Yi-Fu Lai","year":"2021"},{"key":"ref21:PKC:DeFMey20","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"187","DOI":"10.1007\/978-3-030-45388-6_7","article-title":"Threshold Schemes from Isogeny Assumptions","volume":"12111","author":"Luca De Feo","year":"2020"},{"key":"ref22:C:KLLQ23","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"729","DOI":"10.1007\/978-3-031-38548-3_24","article-title":"CSI-Otter: Isogeny-Based (Partially) Blind Signatures\n  from the Class Group Action with a Twist","volume":"14083","author":"Shuichi Katsumata","year":"2023"},{"key":"ref23:kuperberg2005subexponential","doi-asserted-by":"publisher","first-page":"170","DOI":"10.1137\/S0097539703436345","article-title":"A Subexponential-Time Quantum Algorithm for the Dihedral\n  Hidden Subgroup Problem","volume":"35","author":"Greg Kuperberg","year":"2005","journal-title":"SIAM Journal on Computing"},{"key":"ref24:kuperberg11","series-title":"Leibniz International Proceedings in Informatics (LIPIcs)","isbn-type":"print","doi-asserted-by":"publisher","first-page":"20","DOI":"10.4230\/LIPIcs.TQC.2013.20","article-title":"Another Subexponential-time Quantum Algorithm for the\n  Dihedral Hidden Subgroup Problem","volume":"22","author":"Greg Kuperberg","year":"2013","ISBN":"https:\/\/id.crossref.org\/isbn\/9783939897552","ISSN":"https:\/\/id.crossref.org\/issn\/1868-8969","issn-type":"electronic"},{"key":"ref25:EC:Peikert20","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"463","DOI":"10.1007\/978-3-030-45724-2_16","article-title":"He Gives C-Sieves on the CSIDH","volume":"12106","author":"Chris Peikert","year":"2020"},{"key":"ref26:PKC:DFKLMPW23","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"345","DOI":"10.1007\/978-3-031-31368-4_13","article-title":"SCALLOP: Scaling the CSI-FiSh","volume":"13940","author":"Luca De Feo","year":"2023"},{"key":"ref27:PKC:CheLerPan24","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"190","DOI":"10.1007\/978-3-031-57725-3_7","article-title":"SCALLOP-HD: Group Action from 2-Dimensional Isogenies","volume":"14603","author":"Mingjie Chen","year":"2024"},{"key":"ref28:de2014towards","doi-asserted-by":"crossref","first-page":"209","DOI":"10.1515\/jmc-2012-0015","article-title":"Towards quantum-resistant cryptosystems from supersingular\n  elliptic curve isogenies","volume":"8","author":"Luca De Feo","year":"2014","journal-title":"Journal of Mathematical Cryptology"},{"key":"ref29:AC:GalPetSil17","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"3","DOI":"10.1007\/978-3-319-70694-8_1","article-title":"Identification Protocols and Signature Schemes Based on\n  Supersingular Isogeny Problems","volume":"10624","author":"Steven D. Galbraith","year":"2017"},{"key":"ref30:FC:YAJJS17","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"163","DOI":"10.1007\/978-3-319-70972-7_9","article-title":"A Post-quantum Digital Signature Scheme Based on\n  Supersingular Isogenies","volume":"10322","author":"Youngho Yoo","year":"2017"},{"key":"ref31:urbanik2020new","doi-asserted-by":"crossref","first-page":"120","DOI":"10.1515\/jmc-2015-0056","article-title":"New Techniques for SIDH-based NIKE","volume":"14","author":"David Urbanik","year":"2020","journal-title":"Journal of Mathematical Cryptology"},{"key":"ref32:AC:DDGZ22","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"310","DOI":"10.1007\/978-3-031-22966-4_11","article-title":"SIDH Proof of Knowledge","volume":"13792","author":"Luca De Feo","year":"2022"},{"key":"ref33:EC:CasDec23","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"423","DOI":"10.1007\/978-3-031-30589-4_15","article-title":"An Efficient Key Recovery Attack on SIDH","volume":"14008","author":"Wouter Castryck","year":"2023"},{"key":"ref34:EC:Robert23","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"472","DOI":"10.1007\/978-3-031-30589-4_17","article-title":"Breaking SIDH in Polynomial Time","volume":"14008","author":"Damien Robert","year":"2023"},{"key":"ref35:EC:MMPPW23","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"448","DOI":"10.1007\/978-3-031-30589-4_16","article-title":"A Direct Key Recovery Attack on SIDH","volume":"14008","author":"Luciano Maino","year":"2023"},{"key":"ref36:EC:BCCDFLMPPW23","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"405","DOI":"10.1007\/978-3-031-30617-4_14","article-title":"Supersingular Curves You Can Trust","volume":"14005","author":"Andrea Basso","year":"2023"},{"key":"ref37:ACNS:ConLaiLev23","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"248","DOI":"10.1007\/978-3-031-33491-7_10","article-title":"Efficient Isogeny Proofs Using Generic Techniques","volume":"13906","author":"Kelong Cong","year":"2023"},{"key":"ref38:AC:DKLPW20","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"64","DOI":"10.1007\/978-3-030-64837-4_3","article-title":"SQISign: Compact Post-quantum Signatures from Quaternions\n  and Isogenies","volume":"12491","author":"Luca De Feo","year":"2020"},{"key":"ref39:EC:DLLW23","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"659","DOI":"10.1007\/978-3-031-30589-4_23","article-title":"New Algorithms for the Deuring Correspondence - Towards\n  Practical and Secure SQISign Signatures","volume":"14008","author":"Luca De Feo","year":"2023"},{"key":"ref40:EC:DLRW24","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"3","DOI":"10.1007\/978-3-031-58716-0_1","article-title":"SQIsignHD: New Dimensions in Cryptography","volume":"14651","author":"Pierrick Dartois","year":"2024"},{"key":"ref41:sqisign2de","isbn-type":"print","doi-asserted-by":"publisher","first-page":"272","DOI":"10.1007\/978-981-96-0891-1_9","article-title":"SQIsign2D-East: A New Signature Scheme Using 2-Dimensional\n  Isogenies","author":"Kohei Nakagawa","year":"2025","ISBN":"https:\/\/id.crossref.org\/isbn\/9789819608911"},{"key":"ref42:sqisign2dw","isbn-type":"print","doi-asserted-by":"publisher","first-page":"339","DOI":"10.1007\/978-981-96-0891-1_11","article-title":"SQIsign2D\u2013West","author":"Andrea Basso","year":"2025","ISBN":"https:\/\/id.crossref.org\/isbn\/9789819608911"},{"key":"ref43:sqisign-spcifications","volume-title":"SQISign Specification","author":"Jorge Chavez-Saab","year":"2023"},{"key":"ref44:C:CraDamSch94","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"174","DOI":"10.1007\/3-540-48658-5_19","article-title":"Proofs of Partial Knowledge and Simplified Design of Witness\n  Hiding Protocols","volume":"839","author":"Ronald Cramer","year":"1994"},{"key":"ref45:C:FiaSha86","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"186","DOI":"10.1007\/3-540-47721-7_12","article-title":"How to Prove Yourself: Practical Solutions to\n  Identification and Signature Problems","volume":"263","author":"Amos Fiat","year":"1987"},{"key":"ref46:book:silverman2009arithmetic","series-title":"Graduate Texts in Mathematics","isbn-type":"print","doi-asserted-by":"publisher","DOI":"10.1007\/978-0-387-09494-6","volume-title":"The Arithmetic of Elliptic Curves","volume":"106","author":"Joseph H. Silverman","year":"2009","ISBN":"https:\/\/id.crossref.org\/isbn\/9780387094946"},{"key":"ref47:voight2021quaternion","series-title":"Graduate Texts in Mathematics","isbn-type":"print","doi-asserted-by":"publisher","DOI":"10.1007\/978-3-030-56694-4","volume-title":"Quaternion Algebras","volume":"288","author":"John Voight","year":"2021","ISBN":"https:\/\/id.crossref.org\/isbn\/9783030566944"},{"key":"ref48:leroux2022quaternion","volume-title":"Quaternion Algebra and isogeny-based cryptography","author":"Antonin Leroux","year":"2022"},{"key":"ref49:cryptoeprint:2023\/1251","volume-title":"Verifiable random function from the Deuring correspondence\n  and higher dimensional isogenies","author":"Antonin Leroux","year":"2023"},{"key":"ref50:onuki2024ideal","isbn-type":"print","first-page":"243","article-title":"Ideal-to-Isogeny Algorithm Using 2-Dimensional Isogenies\n  and\u00a0Its Application to\u00a0SQIsign","author":"Hiroshi Onuki","year":"2025","ISBN":"https:\/\/id.crossref.org\/isbn\/9789819608911"},{"key":"ref51:van1935verallgemeinerung","doi-asserted-by":"crossref","first-page":"62","DOI":"10.4064\/aa-1-1-62-66","article-title":"Verallgemeinerung einer mordellschen Beweismethode in der\n  Geometrie der Zahlen","volume":"1","author":"J van der Corput","year":"1935","journal-title":"Acta Arithmetica"},{"key":"ref52:klpt","doi-asserted-by":"publisher","first-page":"418","DOI":"10.1112\/S1461157014000151","article-title":"On the quaternion $\\ell$-isogeny path problem","volume":"17","author":"David Kohel","year":"2014","journal-title":"LMS Journal of Computation and Mathematics"},{"key":"ref53:EC:PagWes24","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"388","DOI":"10.1007\/978-3-031-58751-1_14","article-title":"The Supersingular Endomorphism Ring and One Endomorphism\n  Problems are Equivalent","volume":"14656","author":"Aurel Page","year":"2024"},{"key":"ref54:EC:EHLMP18","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"329","DOI":"10.1007\/978-3-319-78372-7_11","article-title":"Supersingular Isogeny Graphs and Endomorphism Rings:\n  Reductions and Solutions","volume":"10822","author":"Kirsten Eisentr\u00e4ger","year":"2018"},{"key":"ref55:FOCS:Wesolowski21","doi-asserted-by":"publisher","first-page":"1100","DOI":"10.1109\/FOCS52979.2021.00109","article-title":"The supersingular isogeny path and endomorphism ring\n  problems are equivalent","author":"Benjamin Wesolowski","year":"2022"},{"key":"ref56:sqiprime","isbn-type":"print","doi-asserted-by":"publisher","first-page":"396","DOI":"10.1007\/978-981-96-0891-1_13","article-title":"SQIPrime: A Dimension 2 Variant of\u00a0SQISignHD\n  with\u00a0Non-smooth Challenge Isogenies","author":"Max Duparc","year":"2025","ISBN":"https:\/\/id.crossref.org\/isbn\/9789819608911"},{"key":"ref57:sqiasignhd","volume-title":"SQIAsignHD: SQIsignHD Adaptor Signature","author":"Farzin Renan","year":"2024"},{"key":"ref58:nguyen2009lowdimlattices","isbn-type":"print","doi-asserted-by":"publisher","first-page":"338","DOI":"10.1007\/978-3-540-24847-7_26","article-title":"Low-Dimensional Lattice Basis Reduction Revisited","author":"Phong Q. Nguyen","year":"2004","ISBN":"https:\/\/id.crossref.org\/isbn\/9783540248477"},{"key":"ref59:EC:CEMR24","series-title":"Lecture Notes in Computer Science","doi-asserted-by":"publisher","first-page":"63","DOI":"10.1007\/978-3-031-58716-0_3","article-title":"Apr\u00e8sSQI: Extra Fast Verification for SQIsign Using\n  Extension-Field Signing","volume":"14651","author":"Maria Corte-Real Santos","year":"2024"},{"key":"ref60:CiC-1-3-1","doi-asserted-by":"publisher","DOI":"10.62056\/avr-11zn4","article-title":"Capybara and Tsubaki: Verifiable Random Functions from Group\n  Actions and Isogenies","volume":"1","author":"Yi-Fu Lai","year":"2024","journal-title":"IACR Communications in Cryptology","ISSN":"https:\/\/id.crossref.org\/issn\/3006-5496","issn-type":"electronic"},{"key":"ref61:cryptoeprint:2023\/718","volume-title":"A Guide to the Design of Digital Signatures based on\n  Cryptographic Group Actions","author":"Giacomo Borin","year":"2023"},{"key":"ref62:AC:BeuKleVer19","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"227","DOI":"10.1007\/978-3-030-34578-5_9","article-title":"CSI-FiSh: Efficient Isogeny Based Signatures Through\n  Class Group Computations","volume":"11921","author":"Ward Beullens","year":"2019"},{"key":"ref63:EC:AABN02","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"418","DOI":"10.1007\/3-540-46035-7_28","article-title":"From Identification to Signatures via the Fiat-Shamir\n  Transform: Minimizing Assumptions for Security and Forward-Security","volume":"2332","author":"Michel Abdalla","year":"2002"},{"key":"ref64:C:Merkle87","series-title":"LNCS","doi-asserted-by":"publisher","first-page":"369","DOI":"10.1007\/3-540-48184-2_32","article-title":"A Digital Signature Based on a Conventional Encryption\n  Function","volume":"293","author":"Ralph C. Merkle","year":"1988"}],"container-title":["IACR Communications in Cryptology"],"original-title":[],"language":"en","deposited":{"date-parts":[[2025,1,13]],"date-time":"2025-01-13T12:10:56Z","timestamp":1736770256000},"score":1,"resource":{"primary":{"URL":"https:\/\/cic.iacr.org\/p\/1\/4\/4"}},"subtitle":[],"short-title":[],"issued":{"date-parts":[[2025,1,13]]},"references-count":64,"journal-issue":{"issue":"4","published-online":{"date-parts":[[2025,1,13]]}},"URL":"https:\/\/doi.org\/10.62056\/ava3zivrzn","archive":["Internet Archive","Internet Archive"],"relation":{},"ISSN":["3006-5496"],"issn-type":[{"value":"3006-5496","type":"electronic"}],"subject":[],"published":{"date-parts":[[2025,1,13]]},"assertion":[{"value":"2024-07-09","order":0,"name":"received","label":"Received","group":{"name":"publication_history","label":"Publication History"}},{"value":"2024-12-03","order":1,"name":"accepted","label":"Accepted","group":{"name":"publication_history","label":"Publication History"}}],"article-number":"cc1-3-108"}}