IP Library Granted Patent US 12,341,908
Granted Patent B2
US 12,341,908 · App. 18/622,826 · Granted Jun 24, 2025

Computer-implemented method and system for transferring access to a digital asset

Inventors: John Fletcher (Cambridge, GB); Thomas Trevethan (London, GB)
Assignee: NCHAIN LICENSING AG
H04L9/3255H04L9/085H04L9/3066H04L9/3236H04L9/50H04L2209/56
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,341,908
App. No.
18/622,826
Granted
Jun 24, 2025
Kind
B2
Abstract

A method of digitally signing a message is disclosed. The method comprises distributing first shares of a first secret value among a plurality of participants, wherein the first secret value is a private key accessible by means of a first threshold number of the first shares, and is inaccessible to less than the first threshold number of the first shares; distributing second shares of a second secret value among the participants, wherein the second secret value is an ephemeral key, wherein said ephemeral key is inaccessible to less than said first threshold number of said second shares; and distributing third shares of a third secret value among the participants, wherein each third share is adapted to be applied to a message to generate a respective fourth share of a fourth secret value, wherein the fourth secret value is the message signed with the private key and using the ephemeral key.

Claims (29)

1. A method of transferring access to a digital asset, the method comprising:

providing each of a plurality of participants with a respective share of a second private key of a second private-public key pair of a cryptography system;

splitting the respective share of one of said participants is into a plurality of sub-shares, and deleting it;

receiving a first blockchain transaction from a first participant of said participants by each of a plurality of second participants of said participants, wherein said first participant has a first private key of a first private-public key pair of said cryptography system, and wherein said first blockchain transaction is signed with said first private key;

verifying, by a plurality of said second participants, that said first blockchain transaction has been signed with said first private key;

applying a respective said share of said second private key to said first blockchain transaction to generate a respective share of a first secret value, wherein said first secret value is a second blockchain transaction signed with said second private key, wherein said first secret value is accessible to a first threshold number of said shares of said first secret value and is inaccessible to less than said first threshold number of shares of said first secret value; and

combining at least said first threshold number of said shares of said first secret value from said first participant and a plurality of said second participants to generate said first secret value.

2. The method according to claim 1 , wherein one of said sub-shares is stored at one of the other participants.

3. The method according to claim 1 , wherein each of a plurality of said second participants has a respective private key of the cryptography system.

4. The method according to claim 1 , further comprising distributing shares of a said share of said second private key in possession of said first participant among said first participant and at least one said second participant.

5. The method according to claim 1 , further comprising transferring access to said digital asset to a third private key of said cryptography system in an event of a said second participant becoming unresponsive.

6. The method according to claim 5 , wherein the digital asset remains under control of said third private key for a predetermined time.

7. The method according to claim 1 , further comprising distributing said shares of said second private key among a plurality of said participants.

8. A method of transferring access to a digital asset, the method comprising:

providing each of a plurality of participants with a respective share of a second private key of a second private-public key pair of a cryptography system;

splitting the respective share of one of said participants is into a plurality of sub-shares, and deleting it;

sending a first blockchain transaction from a first participant to a plurality of second participants, wherein said first participant has a first private key of a first private-public key pair of said cryptography system, wherein said first blockchain transaction is signed with said first private key, wherein the respective share of one of said participants is split into a plurality of sub-shares, after which it is deleted;

receiving, from a plurality of said second participants, a respective share of a first secret value, wherein said first secret value is a second blockchain transaction signed with said second private key, wherein said first secret value is accessible to a first threshold number of said shares of said first secret value and is inaccessible to less than said first threshold number of shares of said first secret value, wherein each said share of said second private key is applied to said second blockchain transaction after verification, by the corresponding said second participants, that said first blockchain transaction has been signed with said first private key; and

combining at least said first threshold number of said shares of said first secret value from said first participant and a plurality of said second participants to generate said first secret value.

9. The method according to claim 8 , wherein one of said sub-shares is stored at one of the other participants.

10. The method according to claim 8 , wherein the method further comprises at least one of:

each of a plurality of said second participants has a respective private key of the cryptography system; or

distributing shares of a said share of said second private key in possession of said first participant among said first participant and at least one said second participant.

11. The method according to claim 8 , further comprising transferring access to said digital asset to a third private key of said cryptography system in an event of a said second participant becoming unresponsive.

12. The method according to claim 11 , wherein the digital asset remains under control of said third private key for a predetermined time.

13. The method according to claim 8 , further comprising distributing said shares of said second private key among a plurality of said participants.

14. The method according to claim 8 , wherein the cryptography system is an elliptic curve cryptography system, wherein a respective public key is related to a corresponding private key of the first and second public-private key pairs by multiplication of an elliptic curve generator point of the corresponding private key.

15. A computer-implemented system for carrying out a method according to claim 1 .

16. A computer-implemented system for carrying out a method according to claim 1 .

Assignments (1)
CHANGE OF NAME Recorded Jun 25, 2024
From: NCHAIN HOLDINGS LTD.
To: NCHAIN LICENSING AG
Reel/Frame 067839/0110 →
Priority Claims (1)
GB 1805633 · Apr 5, 2018 · national
Continuity (3)
Continuation 18126467 · Mar 26, 2023
Division 17045425
Related Publication 20240333525A1 · Oct 3, 2024
References Cited (48)
US 9331984B2 · Matsuo · 2016 [cited by examiner]
US 9489522B1 · El Defrawy · 2016 [cited by examiner]
US 10938549B2 · Ma · 2021 [cited by examiner]
US 11102184B2 · Ma · 2021 [cited by examiner]
US 11271729B2 · Covaci · 2022 [cited by examiner]
US 11282325B2 · Cui · 2022 [cited by examiner]
US 11431477B2 · Wright · 2022 [cited by examiner]
US 20160212109A1 · Hird · 2016 [cited by examiner]
US 20160344543A1 · Alness · 2016 [cited by examiner]
US 20170213210A1 · Kravitz · 2017 [cited by examiner]
US 20170237570A1 · Vandervort · 2017 [cited by examiner]
US 20170250972A1 · Ronda · 2017 [cited by examiner]
US 20180053161A1 · Bordash · 2018 [cited by examiner]
US 20180054316A1 · Tomlinson · 2018 [cited by examiner]
US 20190149336A1 · Lancashire · 2019 [cited by examiner]
US 20200012527A1 · Hartsock · 2020 [cited by examiner]
US 20200313884A1 · Trevethan · 2020 [cited by examiner]
US 20210090072A1 · Sewell · 2021 [cited by examiner]
US 20210119785A1 · Ben-Reuven · 2021 [cited by examiner]
US 20210160222A1 · Bartolucci · 2021 [cited by examiner]
US 20220052921A1 · Branton · 2022 [cited by examiner]
US 20220070007A1 · Schnabel · 2022 [cited by examiner]
CN 106533675A · 2017 [cited by applicant]
CN 106548345A · 2017 [cited by applicant]
TW 201733304A · 2017 [cited by applicant]
WO 2016049406A1 · 2016 [cited by applicant]
WO 2017145010A1 · 2017 [cited by applicant]
WO 2017149537A1 · 2017 [cited by applicant]
WO 2017151861A1 · 2017 [cited by applicant]
WO 2018007828A2 · 2018 [cited by applicant]
Antonopoulos, “Mastering Bitcoin—Unlocking Digital Cryptocurrencies,” O'Reilly Media, Inc., Dec. 20, 2014, 282 pages. [cited by applicant]
Buterin, “Secret Sharing DAOs: The Other Crypto 2.0,” Ethereum Blog, Dec. 26, 2014 [retrieved Nov. 21, 2019], https://ethereum.github.io/blog/2014/12/26/secret-sharing-daos-crypto-2-0/, 10 pages. [cited by applicant]
Gennaro et al., “Robust Threshold DSS Signatures,” International Conference on the Theory and Applications of Cryptographic Techniques, May 12, 1996, https://link.springer.com/content/pdf/10.1007%2F3-540-68339-9_31.pdf,… [cited by applicant]
Gennaro et al., “Threshold-Optimal DSA/ECDSA Signatures and an Application to Bitcoin Wallet Security,” retrieved from https://eprint.iacr.org/2016/013.pdf, 2016, 42 pages. [cited by applicant]
Goldfeder et al., “Securing Bitcoin wallets via threshold signatures,” retrieved from http://www.cs.princeton.edu/˜stevenag/bitcoin_threshold_signatures.pdf, Jun. 3, 2014, 11 pages. [cited by applicant]
Green et al., “Strength in Numbers: Threshold ECDSA to Protect Keys in the Cloud,” Worcester Polytechnic Institute, retrieved from https://eprint.iacr.org/2015/1169.pdf, 2015, 19 pages. [cited by applicant]
Ibrahim, “SecureCoin: A Robust Secure and Efficient Protocol for Anonymous Bitcoin Ecosystem,” International Journal of Network Security 19(2):295-312, http://ijns.jalaxy.com.tw/contents/ijns-v19-n2/ijns-2017-v19-n2-p29… [cited by applicant]
International Search Report and Written Opinion mailed Jul. 30, 2019, Patent Application No. PCT/IB2019/052428, 12 pages. [cited by applicant]
Nakamoto, “Bitcoin: A Peer-to-Peer Electronic Cash System,” Bitcoin, Oct. 31, 2008, https://bitcoin. org/bitcoin.pdf, 9 pages. [cited by applicant]
Nchain, “Threshold (Signature) of Greatness—Dr. Craig Wright—Hong Kong 2017,” https://www.youtube.com/watch?v=GUg2mocV9TI, Sep. 26, 2017, 17 pages. [cited by applicant]
Satoshi et al., “Connection Limits,” Bitcoin Forum, Aug. 9, 2010, https://bitcointalk.org/index.php?topic=741.0;prev_next=prev, 2 pages. [cited by applicant]
Shamir, “How to Share a Secret,” Massachusetts Institute of Technology, 22(11): Nov. 1979, 2 pages. [cited by applicant]
Shoup, “Practical Threshold Signatures,” IBM Zurich Research Lab, May 2000, 14 pages. [cited by applicant]
Traugott, “What is a Hashed Timeclock Contract (HTLC)?,” Captain Altcoin, https://captainaltcoin.com/hashed-timelock-contract-htlc/, Nov. 17, 2019, 7 pages. [cited by applicant]
UK Commercial Search Report mailed Oct. 15, 2018, Patent Application No. GB1805633.3, 8 pages. [cited by applicant]
UK IPO Search Report mailed Oct. 8, 2018, Patent Application No. GB1805633.3, 6 pages. [cited by applicant]
Winbits.Us, “Re:BitMedia.IO is a Modern Bitcoin Advertising Platform (Official Support),” Bitcoin Forum, Jun. 30, 2015, Retrieved from: https://bitcointalk.org/index.php?topic=1085968.140, 9 pages. [cited by applicant]
Wuille, “Hierarchical Deterministic Wallets,” Github, https://github.com/bitcoin/bips/blob/ab90b5289f0356282397fa9b8aa47d2238a7b380/bip-0032.mediawiki, Feb. 12, 2016 (retrieved Mar. 23, 2017), 9 pages. [cited by applicant]