Ring signature allows a user to sign messages as a member of a set of users, which is called the ring. In addition to an unforgeability, ring signature ensures that nobody can detect which member in the ring signs the message. In this paper, we propose the first generic construction of ring signature with unconditional anonymity in the plain model based on the standard assumption. The plain model means that we do not need any setup procedure by trusted third party and not depends on a random oracle methodology. Our scheme is constructed based on a statistical ZAP argument, a lossy encryption scheme, and a standard signature scheme. It is known that all of our building blocks can be instantiated based on the quasi-polynomial learning with errors assumption.
Read full abstract