SearcharxivSearch

arXiv subjects

Stefano Pepe

Publications and source records attributed to Stefano Pepe.

2 recordsLinked to original sources

Equivocation-resistant multiparty digital signature for quantum networks

Digital signatures are a critical cryptographic primitive requiring quantum-safe solutions. One possibility are quantum digital signatures (QDS), which offer information-theoretic (IT) security without a trusted authority. However, even the most promising QDS proposals are largely limited to the tripartite scenario (one sender, two receivers) and are vulnerable to equivocation-based attacks that hinder transferability and non-repudiation. To overcome such limitations, we introduce an equivocation-resistant signature (ERS) protocol based on preshared keys and universal hashing that achieves IT security and scales to an arbitrary number of receivers. We benchmark the ERS protocol against state-of-the-art QDS schemes, namely [Amiri et al., 2018] for the multi-receiver scenario and [Yin et al., 2023] and [Garcia Cid et al., 2025] for the tripartite case, demonstrating orders-of-magnitude reductions in preshared key consumption and signature size. The superior performance of the ERS protocol is also validated in a field test on the Rome quantum metropolitan area network, reaching a rate of 13 signatures per second for one-megabit documents shared among five parties. Our findings position our ERS protocol as a strong candidate for implementing IT-secure digital signatures in today's quantum communication infrastructures.

quant-ph

UniquID: A Quest to Reconcile Identity Access Management and the Internet of Things

The Internet of Things (IoT) has caused a revolutionary paradigm shift in computer networking. After decades of human-centered routines, where devices were merely tools that enabled human beings to authenticate themselves and perform activities, we are now dealing with a device-centered paradigm: the devices themselves are actors, not just tools for people. Conventional identity access management (IAM) frameworks were not designed to handle the challenges of IoT. Trying to use traditional IAM systems to reconcile heterogeneous devices and complex federations of online services (e.g., IoT sensors and cloud computing solutions) adds a cumbersome architectural layer that can become hard to maintain and act as a single point of failure. In this paper, we propose UniquID, a blockchain-based solution that overcomes the need for centralized IAM architectures while providing scalability and robustness. We also present the experimental results of a proof-of-concept UniquID enrolment network, and we discuss two different use-cases that show the considerable value of a blockchain-based IAM.

cs.CR