State Management for Hash Based Signatures

  author={David A. McGrew and Panos Kampanakis and Scott R. Fluhrer and Stefan-Lukas Gazdag and Denis Butin and Johannes A. Buchmann},
  journal={IACR Cryptology ePrint Archive},
The unavoidable transition to post-quantum cryptography requires mature quantum-safe digital signature schemes. Hash-based signatures are well-understood and promising candidates. A common concern regarding their deployment is their statefulness, due to their use of one-time signature schemes. While the theory of hash-based signatures is mature, a complete understanding of the system security issues arising from the concrete management of their state has been lacking. In this paper, we analyze… CONTINUE READING
