IACR News item: 13 June 2025
Alexander Ushakov
Regardless of the choice of parameters, knowledge of a single signed message, i.e., a pair message/signature, produced by Kahrobaei-Koupparis digital signature scheme is sufficient to forge a valid signature for any other message.
Additional news items may be found on the IACR news page.