U.S. flag   An unofficial archive of your favorite United States government website
Dot gov

Official websites do not use .rip
We are an unofficial archive, replace .rip by .gov in the URL to access the official website. Access our document index here.

Https

We are building a provable archive!
A lock (Dot gov) or https:// don't prove our archive is authentic, only that you securely accessed it. Note that we are working to fix that :)

Presentation

Threshold EdDSA Submissions of FROST and (Maybe) Sparkle

September 26, 2023

Presenters

Chelsea Komlo - University of Waterloo; Zcash Foundation; Dfns

Description

Abstract. In this presentation, we will introduce two threshold signature submissions for the FROST and Sparkle schemes, and the teams that will be contributing towards the submissions. FROST is a two-round EdDSA threshold signature scheme, and Sparkle is a three-round EdDSA threshold signature scheme. We will discuss key differences between these two schemes, and other schemes in the literature, namely, in the security models and proving techniques. FROST is secure assuming the One-More Discrete Logarithm problem is hard, and Sparkle is secure assuming the Discrete Logarithm problem is hard. Both schemes are proven in the Random Oracle Model. In addition, we will discuss details of the submission, namely, the assumed networking models and key generation assumptions. Our submissions will assume an idealized key generation scheme, and assume only reliable public communication channels.

[Slides]

Presented at

MPTS 2023: NIST Workshop (virtual) on Multi-Party Threshold Schemes 2023

Event Details

Location

    Virtual

Related Topics

Security and Privacy: cryptography

Created September 21, 2023, Updated October 12, 2023