Note on new message recovery signature scheme
LI Shan-qing · Journal of Zhejiang University(Sciences Edition) · 2004
The new message recovery signature scheme proposed by Li and Yang is not secure against recovery equation attack, and two kinds of attacks are presented in this paper. Furthermore, the scheme is improved, and it is shown that the improved scheme is more secure than the original by analyzing the security of the improved scheme, and has only one exponentiation modulo p and two hash-function evaluations for verification.