IP Library Granted Patent US 8,788,827
Granted Patent B2
US 8,788,827 · App. 13/620,206 · Granted Jul 22, 2014

Accelerated verification of digital signatures and public keys

View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 8,788,827
App. No.
13/620,206
Granted
Jul 22, 2014
Kind
B2
Abstract

Accelerated computation of combinations of group operations in a finite field is provided by arranging for at least one of the operands to have a relatively small bit length. In a elliptic curve group, verification that a value representative of a point R corresponds the sum of two other points uG and vG is obtained by deriving integers w,z of reduced bit length and so that v=w/z. The verification equality R=uG+vQ may then be computed as −zR+(uz mod n) G+wQ=O with z and w of reduced bit length. This is beneficial in digital signature verification where increased verification can be attained.

Claims (26)

1. A computer-implemented method comprising:

receiving, from a signer, a signature on a message M, wherein the signature includes a first signature component r and a second signature component s;

obtaining an elliptic curve point associated with the first signature component r; and

generating, by operation of a cryptographic module comprising one or more processors, a public key of the signer based on the elliptic curve point and a hash value e computed from the message M;

wherein the elliptic curve point comprises a first elliptic curve point R, the public key of the signer comprises a second elliptic curve point Q, generating the public key of the signer comprises computing Q=r −1 (sR−eG), and G comprises a generator of an elliptic curve group that includes the first elliptic curve point R and the second elliptic curve point Q.

2. The method of claim 1 , further comprising verifying that the second elliptic curve point Q represents the public key of the signer.

3. The method of claim 1 , wherein the first elliptic curve point R is generated based on the first signature component r and a cofactor h for an elliptic curve that includes the first elliptic curve point R and the second elliptic curve point Q.

4. The method of claim 1 , wherein the public key of the signer can be used to verify the signature.

5. The method of claim 4 , wherein verifying the signature comprises verifying the signature according to an Elliptic Curve Digital Signature Algorithm (ECDSA).

6. A non-transitory computer-readable medium storing instructions that, when executed by one or more processors, perform operations comprising:

receiving, from a signer, a signature on a message M, wherein the signature includes a first signature component r and a second signature component s;

obtaining an elliptic curve point associated with the first signature component r; and

generating a public key of the signer based on the elliptic curve point and a hash value e computed from the message M;

wherein the elliptic curve point comprises a first elliptic curve point R, the public key of the signer comprises a second elliptic curve point Q, generating the public key of the signer comprises computing Q=r −1 (sR−eG), and G comprises a generator of an elliptic curve group that includes the first elliptic curve point R and the second elliptic curve point Q.

7. The computer-readable medium of claim 6 , the operations further comprising verifying that the second elliptic curve point Q represents the public key of the signer.

8. The computer-readable medium of claim 6 , wherein the first elliptic curve point R is generated based on the first signature component r and a cofactor h for an elliptic curve that includes the first elliptic curve point R and the second elliptic curve point Q.

9. The computer-readable medium of claim 6 , wherein the public key of the signer can be used to verify the signature.

10. A computing device comprising:

a cryptographic module operable to:

receive, from a signer, a signature on a message M, wherein the signature includes a first signature component r and a second signature component s;

obtain an elliptic curve point associated with the first signature component r; and

generate a public key of the signer based on the elliptic curve point and a hash value e computed from the message M;

wherein the elliptic curve point comprises a first elliptic curve point R, the public key of the signer comprises a second elliptic curve point Q, generating the public key of the signer comprises computing Q=r −1 (sR−eG), and G comprises a generator of an elliptic curve group that includes the first elliptic curve point R and the second elliptic curve point Q.

11. The computing device of claim 10 , wherein the cryptographic module is further operable to verify that the second elliptic curve point Q represents the public key of the signer.

12. The computing device of claim 10 , wherein the first elliptic curve point R is generated based on the first signature component r and a cofactor h for an elliptic curve that includes the first elliptic curve point R and the second elliptic curve point Q.

13. The computing device of claim 10 , wherein the public key of the signer can be used to verify the signature.

Assignments (8)
CORRECTIVE ASSIGNMENT TO CORRECT THE ADDED PATENT NUMBER TO REMOVE PATENT NO. 8,873,407 AT PREVIOUSLY RECORDED ON REEL 64066 FRAME 1. ASSIGNOR(S) HEREBY CONFIRMS THE NUNC PRO TUNC ASSIGNMENT EFFECTIVE DATE MARCH 20, 2023. Recorded Feb 2, 2026
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 074921/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT 12817157 APPLICATION NUMBER PREVIOUSLY RECORDED AT REEL: 064015 FRAME: 0001. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064807/0001 →
CORRECTIVE ASSIGNMENT TO CORRECT THE COVER SHEET AT PAGE 50 TO REMOVE 12817157 PREVIOUSLY RECORDED ON REEL 063471 FRAME 0474. ASSIGNOR(S) HEREBY CONFIRMS THE ASSIGNMENT. Recorded Sep 5, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 064806/0669 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 19, 2023
From: BLACKBERRY LIMITED
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064066/0001 →
NUNC PRO TUNC ASSIGNMENT Recorded Jun 16, 2023
From: OT PATENT ESCROW, LLC
To: MALIKIE INNOVATIONS LIMITED
Reel/Frame 064015/0001 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Apr 27, 2023
From: BLACKBERRY LIMITED
To: OT PATENT ESCROW, LLC
Reel/Frame 063471/0474 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Oct 2, 2019
From: CERTICOM CORP.
To: BLACKBERRY LIMITED
Reel/Frame 050610/0937 →
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded Nov 19, 2013
From: STRUIK, MARINUS; BROWN, DANIEL R.; VANSTONE, SCOTT A.; GALLANT, ROBERT P.; LAMBERT, ROBERT J.; ANTIPA, ADRIAN
To: CERTICOM CORP.
Reel/Frame 031634/0437 →