Browse > Article
http://dx.doi.org/10.13089/JKIISC.2002.12.2.147

On the security of SFLASH  

정배은 (한국전자통신연구원 정보보호연구본부)
류희수 (한국전자통신연구원 정보보호연구본부)
Abstract
SFLASH, one of the asymmetric signature schemes in NESSIE project, was suggested and accepted in the fat phase. In the latest, results about attacking the affine parts of SFLASH was published. In this paper, we have that an attacker knowing one linear part and two affine parts can easily forge signatures for arbitrary messages without information of the other linear part and the secret suing. It follows that the security of SFLASH depends only on the linear par, which is used in the last step when a signature is being generated. Also, we show that an attacker can obtain partial information of the linear part by the forging method using hem public key and secret elements and we discuss the length of secret key.
Keywords
SFLASH;
Citations & Related Records
연도 인용수 순위
  • Reference
1 Cryptanalysis of Two Sparse Polynomial Based public Key Cryptosystems /
[ F. Bao;R. H. Deng;W. Geiselmann;C. Schnorr;R. Steinwandt;H. Wu;K. Kim(ed.) ] / Proceedings of PKC 2001
2 Attacking the Affine Parts of SFLASH /
[ W. Geiselmann;R. Steinwandt;T. Beth ] / Proceedings of Cryptography and Coding
3 FLASH, a fast asymmetric signature scheme for low-cost smartcards. Primitive specification and supporting documentation /
[ J. Patarin;N. Courtois;L. Goubin ] / Presented at First Open NESSIE Workshop
4 SFLASH, a fast asymmetric signature scheme for low-cost smartcards. Primitive specification and supporting documentation /
[ J. Patarin;N. Courtois;L. Goubin ] / Presented at First Open NESSIE Workshop
5 /
[ B. Jacob ] / Linear Algebra