Better than Biba: Short One-Time Signatures with Fast Signing and Verifying

by Leonid Reyzin and Natan Reyzin

One-time signature schemes have found numerous applications: in ordinary, on-line/off-line, and forward-secure signatures. More recently, they have been used in multicast and broadcast authentication. We propose a one-time signature scheme with very efficient signing and verifying, and short signatures. Our scheme is well-suited for broadcast authentication, and, in fact, can be viewed as an improvement of the BiBa one-time signature (proposed by Perrig in CCS 2001 for broadcast authentication).

This work appears in Information Security and Privacy -- 7th Australasian Conference ACSIP 2002, Jennifer Seberry, editor, Lecture Notes in Computer Science 2384, © Springer-Verlag, 2002.