How to repair ESIGN

Louis Granboulan
In Giuseppe Persiano, editor, Third Conference on Security in Communication Networks '02, Amalfi, Italy, 12-13 September 2002. LNCS 2576, Springer-Verlag, 2003.

Abstract: The ESIGN signature scheme was provided with an inadequate proof of security. We propose two techniques to repair the scheme, which we name ESIGN-D and ESIGN-R.
Another improvement of ESIGN is encouraged, where the public key is hashed together with the message. This allows to have a security proof in the multi key setting.
Additionally, the lower security of ESIGN compared to RSA-PSS leads to suggest that a common public key is used for ESIGN and RSA-PSS, leaving to the signer the choice between fast signature or better security.

Download the paper. [pdf] [ps.gz]
The slides presented at SCN'02.
Report 2002/074 on the Cryptology ePrint Archive
NESSIE report numbered NES/DOC/ENS/WP5/019/3, Sept. 2002.