Paper 2022/778
SPHINCS+C: Compressing SPHINCS+ With (Almost) No Cost
Abstract
SPHINCS+~[CCS '19] is one of the selected post-quantum digital signature schemes of NIST's post-quantum standardization process. The scheme is a hash-based signature and is considered one of the most secure and robust proposals. The proposal includes a fast (but large) variant and a small (but costly) variant for each security level. The main problem that might hinder its adoption is its large signature size. Although SPHINCS+ supports a trade-off between signature size and the computational cost of signing, further reducing the signature size (below the small variants) results in a prohibitively high computational cost for the signer.
This paper presents several novel methods for further compressing the signature size while requiring negligible added computational costs for the signer and further reducing verification time. Moreover, our approach enables a much more efficient trade-off curve between signature size and the computational costs of the signer. In many parameter settings, we achieve small signatures and faster running times simultaneously. For example, for
Metadata
- Available format(s)
-
PDF
- Category
- Public-key cryptography
- Publication info
- Preprint.
- Keywords
- hash based signatures post-quantum security
- Contact author(s)
-
m kudinov @ tue nl
andreas @ huelsing net
eyal ronen @ cs tau ac il
eylon yogev @ biu ac il - History
- 2022-09-14: revised
- 2022-06-16: received
- See all versions
- Short URL
- https://ia.cr/2022/778
- License
-
CC BY-SA
BibTeX
@misc{cryptoeprint:2022/778, author = {Mikhail Kudinov and Andreas Hülsing and Eyal Ronen and Eylon Yogev}, title = {{SPHINCS}+C: Compressing {SPHINCS}+ With (Almost) No Cost}, howpublished = {Cryptology {ePrint} Archive, Paper 2022/778}, year = {2022}, url = {https://eprint.iacr.org/2022/778} }