Security of ECQV-Certified ECDSA Against Passive Adversaries

Executive Summary

The authors show that the Elliptic Curve Qu-Vanstone implicit certificate scheme (ECQV), when composed with the Elliptic Curve Digital Signature Algorithm (ECDSA), is secure against passive adversaries under the combined assumption of the random oracle model and the generic group model, - if the ECQV certificate itself is excluded from the signable message space, because of an attack of Kravitz. In contrast, they detail an attack on the composition of another implicit certificate scheme, proposed by Pintsov and Vanstone for Optimal Mail Certificates (OMC), and ECDSA.

  • Format: PDF
  • Size: 186.1 KB