Paper 2025/2007

k-Anonymous Group Signatures

Shalini Banerjee, Karlsruhe Institute of Technology, KASTEL Security Research Labs
Andrey Bozhko, University of Luxembourg
Andy Rupp, University of Luxembourg, KASTEL Security Research Labs
Abstract

We review $k$-anonymity in authentication schemes, group signatures, and ring signatures. Existing constructions either require a signer to maintain state across interactions, or admit tracing algorithms that cost $O(n^k)$ in the number $n$ of signatures. We introduce $k$-anonymous group signatures ($k$-AGS), that achieves stateless signing with a tracing cost $O(n+k)$, while necessarily sacrificing unlinkability. We present a generic construction of $k$-AGS together with an efficient instantiation. We additionally construct a proof-of-concept $k$-unlinkable group signature ($k$-UGS) scheme that achieve unlinkability at the expense of $O(n^2k)$ tracing overhead. We pose the question of whether stateless signing, $O(n+k)$ tracing, and unlinkability are simultaneously achievable, and leave it as an open problem. Building on our $k$-AGS framework, we introduce $k$-Anonymous Set Pre Constrained Group Signatures ($k$-ASPCGS), a threshold variant of Set Pre-Constrained Group Signatures introduced by Bartusek et al. (EUROCRYPT '23). As a proof-of-concept, we present two generic constructions of $k$-ASPCGS. We show that our notions arise naturally in the context of content moderation in end-to-end encrypted messaging platforms, where users must remain anonymous until a threshold number of distinct illegitimate contents have been reported.

Metadata
Available format(s)
PDF
Category
Cryptographic protocols
Publication info
Preprint.
Keywords
k-AnonymityGroup SignaturesSet Pre-Constrained Group Signatures
Contact author(s)
shalini banerjee @ kit edu
andrey bozhko @ uni lu
andy rupp @ uni lu
History
2026-07-09: revised
2025-10-27: received
See all versions
Short URL
https://ia.cr/2025/2007
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2025/2007,
      author = {Shalini Banerjee and Andrey Bozhko and Andy Rupp},
      title = {k-Anonymous Group Signatures},
      howpublished = {Cryptology {ePrint} Archive, Paper 2025/2007},
      year = {2025},
      url = {https://eprint.iacr.org/2025/2007}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.