IP Library › Granted Patent US 12,513,004
Granted Patent B2
US 12,513,004 · App. 18/679,367 · Granted Dec 30, 2025

Secure dynamic threshold signature scheme employing trusted hardware

Inventor: Thomas Trevethan (London, GB)
Assignee: NCHAIN LICENSING AG
H04L9/3252H04L9/085H04L9/3239H04L9/3255H04L9/50H04L2209/127
View Patent ↗
Loading inventors, assignments & file history…
Monitor This Case
Get email alerts when status or documents change.
Order Certified Copies
Most orders are placed with the USPTO same day — all within 24 business hours.
Order via The Patent Place →
Pre-filled with this patent's details
Quick Facts
Patent No.
US 12,513,004
App. No.
18/679,367
Filed
May 30, 2024
Granted
Dec 30, 2025
Kind
B2
Art Unit
2495
USPC
713/176
Abstract

Techniques are presented for using a processing resource to control access to a resource. Steps comprise generating an elliptic curve digital signature algorithm signature comprising a first signature component, r, and a second signature component, w, the generation step comprising: forming, by a node, a signing group with other nodes; obtaining, by the node, based on a secure random number: a) a multiplicative inverse of the secure random number; and b) the first signature component, r, wherein the first signature component is determined based on the secure random number and an elliptic curve generator point; determining, by the node, a partial signature; receiving partial signatures from other nodes of the signing group; generating the second component; and using the signature to control access to the and/or transfer of a resource over a computer-implemented network.

Claims (47)

1 . A computer-implemented method of controlling access to a resource, the method implemented by a processing resource of a node in the blockchain network, the method comprising the step of:

generating an elliptic curve digital signature algorithm signature comprising a first signature component, r, and a second signature component, w, to enable a threshold number of nodes to cooperatively sign a blockchain transaction without revealing private secret shares and without changing a group public key, the generation step comprising:

forming, by the node, a signing group with other nodes;

obtaining, by the processing resource of the node within an enclave of a trusted execution environment (TEE), based on a secure random number:

a) a multiplicative inverse of the secure random number; and

b) the first signature component, r, wherein the first signature component is determined based on the secure random number and an elliptic curve generator point;

determining, by the processing resource of the node within the enclave of the TEE, a partial signature based on a private secret share, the multiplicative inverse of the secure random number, and the first signature component, r;

receiving, by the processing resource of the node within the enclave of the TEE, partial signatures from other nodes of the signing group;

generating, by the processing resource of the node within the enclave of the TEE, the second signature component, w, based on the determined partial signature and the received partial signatures; and

using, by the node, the signature to control access to the resource and/or transfer of the resource.

2 . The computer-implemented method of claim 1 , wherein obtaining comprises generating, within the enclave, the multiplicative inverse and the first signature component, r, and wherein the method further comprises sending, from the enclave, the multiplicative inverse to the other nodes of the signing group.

3 . The computer-implemented method of claim 2 , wherein obtaining comprises provisioning the enclave associated with the TEE of the node to generate the secure random number.

4 . The computer-implemented method of claim 1 , wherein obtaining comprises receiving, within the enclave, the multiplicative inverse and the first signature component, r, from one of the other nodes of the signing group.

5 . The computer-implemented method of claim 1 , further comprising, prior to forming the signing group, signalling, by the node, an intention to participate in distributed signature generation for the blockchain transaction.

6 . The computer-implemented method of claim 1 , wherein the partial signature is determined by performing Lagrangian interpolation to compute a Lagrangian interpolation coefficient used in generating the partial signature based on the private secret share, the multiplicative inverse of the secure random number, and the first signature component, r.

7 . The computer-implemented method of claim 1 , wherein the method further includes, after generating the second signature component, w, sending the elliptic curve digital signature algorithm from the enclave to a host portion of the node for adding to the blockchain transaction.

8 . The computer-implemented method of claim 1 , further comprising adding the signature to the blockchain transaction and broadcasting the blockchain transaction to a blockchain network.

9 . The computer-implemented method of claim 1 , further comprising, prior to forming the signing group, obtaining the private secret share based on secret share data received from a plurality of existing members of the signing group.

10 . The computer-implemented method of claim 9 , wherein the private secret share is determined within the enclave.

11 . The computer-implemented method of claim 1 , wherein the partial signature, v i , is determined as:

v i =k −1 rb i s i mod p,

where b i is a Lagrangian interpolation coefficient, k −1 is the multiplicative inverse of the secure random number, s i is the private secret share, r is the first signature component, and p is an order.

12 . The computer-implemented method of claim 1 , wherein the resource is an unspent transaction output (UTXO) encumbered by the group public key, and wherein using the signature comprises unlocking the encumbrance on the UTXO to enable transfer of the UTXO in the blockchain transaction, the blockchain transaction being validated by a blockchain network to authorize access to a digital asset represented by the UTXO.

13 . The computer-implemented method of claim 1 , wherein using the signature to control access to the resource comprises executing a smart contract on a blockchain network, the smart contract verifying the signature to unlock a cryptographic lock controlling access to a hardware-based resource external to the blockchain network.

14 . The computer-implemented method of claim 13 , wherein the hardware-based resource comprises a physical access control device, and wherein executing the smart contract causes the physical access control device to transition from a locked state to an unlocked state to permit physical access to a restricted area or device.

15 . A non-transitory computer-readable storage medium comprising computer-executable instructions that, when executed by a processor of a node, cause the processor to perform a method of controlling access to a resource, the method comprising:

generating an elliptic curve digital signature algorithm signature comprising a first signature component, r, and a second signature component, w, to enable a threshold number of nodes to cooperatively sign a blockchain transaction without revealing private secret shares and without changing a group public key, the generation step comprising:

forming, by the node, a signing group with other nodes;

obtaining, by the processor of the node within an enclave of a trusted execution environment (TEE) of the node, based on a secure random number:

a) a multiplicative inverse of the secure random number; and

b) the first signature component, r, wherein the first signature component is determined based on the secure random number and an elliptic curve generator point;

determining, by the processor of the node within the enclave of the TEE, a partial signature based on a private secret share, the multiplicative inverse of the secure random number, and the first signature component, r;

receiving, by the processor of the node within the enclave of the TEE, partial signatures from other nodes of the signing group;

generating, by the processor of the node within the enclave of the TEE, the second signature component, w, based on the determined partial signature and the received partial signatures; and

using, by the node, the signature to control access to the resource and/or transfer the resource.

16 . An electronic device, wherein the electronic device is a node, the electronic device comprising:

an interface device to communicate with other nodes;

a processor coupled to the interface device; and

a memory coupled to the processor, the memory having stored thereon computer-executable instructions that, when executed by the processor, cause the processor to perform a method of controlling access to a resource, the method comprising:

generating an elliptic curve digital signature algorithm signature comprising a first signature component, r, and a second signature component, w, to enable a threshold number of nodes to cooperatively sign a blockchain transaction without revealing private secret shares and without changing a group public key, the generation step comprising:

forming, by the node, a signing group with the other nodes;

obtaining, by the processor of the node within the enclave of a trusted execution environment (TEE), based on a secure random number:

a) a multiplicative inverse of the secure random number; and

b) the first signature component, r, wherein the first signature component is determined based on the secure random number and an elliptic curve generator point;

determining, by the processor of the node within the enclave of the TEE, a partial signature based on a private secret share, the multiplicative inverse of the secure random number, and the first signature component, r; receiving, by the node within the enclave, partial signatures from other nodes of the signing group;

generating, by the processor of the node within the enclave of the TEE, the second signature component, w, based on the determined partial signature and the received partial signatures; and

using, by the node, the signature to control access to the resource and/or transfer the resource.

Assignments (2)
ASSIGNMENT OF ASSIGNOR'S INTEREST Recorded May 30, 2024
From: TREVETHAN, THOMAS
To: NCHAIN HOLDINGS LTD.
Reel/Frame 067575/0055 →
CHANGE OF NAME Recorded May 30, 2024
From: NCHAIN HOLDINGS LTD.
To: NCHAIN LICENSING AG
Reel/Frame 067590/0621 →
Priority Claims (1)
GB 1707168 · May 5, 2017 · national
Continuity (3)
Continuation 17576779 · Jan 14, 2022
Continuation 16611201
Related Publication 20240414011A1 · Dec 12, 2024
References Cited (132)
US 5625692A · Herzberg et al. · 1997 [cited by applicant]
US 8139763B2 · Boscher · 2012 [cited by examiner]
US 8782420B2 · Zollinger · 2014 [cited by examiner]
US 9009481B2 · Muir · 2015 [cited by examiner]
US 10417217B2 · Pierce et al. · 2019 [cited by applicant]
US 10423938B1 · Gaeta et al. · 2019 [cited by applicant]
US 10491402B2 · Kaehler · 2019 [cited by applicant]
US 10523443B1 · Kleinman · 2019 [cited by applicant]
US 10832247B2 · Durvasula et al. · 2020 [cited by applicant]
US 11509482B2 · Chan et al. · 2022 [cited by applicant]
US 11528145B2 · Chan et al. · 2022 [cited by applicant]
US 20020152385A1 · Vanstone et al. · 2002 [cited by applicant]
US 20120233469A1 · Vanstone et al. · 2012 [cited by applicant]
US 20130046983A1 · Zhu et al. · 2013 [cited by applicant]
US 20130073867A1 · Lambert · 2013 [cited by applicant]
US 20150081566A1 · Slepinin · 2015 [cited by applicant]
US 20150229480A1 · Joye · 2015 [cited by examiner]
US 20150302400A1 · Metral · 2015 [cited by applicant]
US 20160012465A1 · Sharp · 2016 [cited by applicant]
US 20160043870A1 · Avanzi · 2016 [cited by examiner]
US 20160253663A1 · Clark et al. · 2016 [cited by applicant]
US 20160269186A1 · Wallrabenstein · 2016 [cited by examiner]
US 20160292672A1 · Fay et al. · 2016 [cited by applicant]
US 20160344550A1 · Anton et al. · 2016 [cited by applicant]
US 20160344557A1 · Chabanne · 2016 [cited by examiner]
US 20170011460A1 · Molinari et al. · 2017 [cited by applicant]
US 20170085545A1 · Lohe et al. · 2017 [cited by applicant]
US 20170091750A1 · Maim · 2017 [cited by applicant]
US 20170109734A1 · Kote · 2017 [cited by applicant]
US 20170109748A1 · Kote · 2017 [cited by applicant]
US 20170140408A1 · Wuehler · 2017 [cited by applicant]
US 20170149819A1 · Androulaki et al. · 2017 [cited by applicant]
US 20170180134A1 · King · 2017 [cited by applicant]
US 20170187535A1 · Middleton et al. · 2017 [cited by applicant]
US 20170220815A1 · Ansari et al. · 2017 [cited by applicant]
US 20170221052A1 · Sheng et al. · 2017 [cited by applicant]
US 20170230189A1 · Toll et al. · 2017 [cited by applicant]
US 20170236121A1 · Lyons et al. · 2017 [cited by applicant]
US 20170237554A1 · Jacobs et al. · 2017 [cited by applicant]
US 20170300912A1 · Narasimhan et al. · 2017 [cited by applicant]
US 20170301047A1 · Brown et al. · 2017 [cited by applicant]
US 20170337534A1 · Goeringer et al. · 2017 [cited by applicant]
US 20170353319A1 · Scarlata · 2017 [cited by examiner]
US 20180039667A1 · Pierce et al. · 2018 [cited by applicant]
US 20180253702A1 · Dowding · 2018 [cited by applicant]
US 20180260921A1 · Wagstaff · 2018 [cited by applicant]
US 20180278594A1 · Schiffman et al. · 2018 [cited by applicant]
US 20180285838A1 · Franaszek et al. · 2018 [cited by applicant]
US 20180285996A1 · Ma · 2018 [cited by applicant]
US 20190043048A1 · Wright et al. · 2019 [cited by applicant]
US 20190050832A1 · Wright et al. · 2019 [cited by applicant]
US 20190058592A1 · Wright et al. · 2019 [cited by applicant]
US 20190116024A1 · Wright et al. · 2019 [cited by applicant]
US 20190149337A1 · Savanah et al. · 2019 [cited by applicant]
US 20190172026A1 · Vessenes et al. · 2019 [cited by applicant]
US 20190213564A1 · Chan et al. · 2019 [cited by applicant]
US 20190220836A1 · Caldwell · 2019 [cited by applicant]
US 20190228391A1 · Hu et al. · 2019 [cited by applicant]
US 20190244227A1 · Inoue · 2019 [cited by applicant]
US 20190347658A1 · Haimes et al. · 2019 [cited by applicant]
US 20200005277A1 · Prabhu et al. · 2020 [cited by applicant]
US 20200082361A1 · Chan et al. · 2020 [cited by applicant]
US 20200136815A1 · Trevethan · 2020 [cited by applicant]
US 20200143339A1 · Chan et al. · 2020 [cited by applicant]
US 20200193432A1 · Millar et al. · 2020 [cited by applicant]
US 20200234386A1 · Blackman et al. · 2020 [cited by applicant]
US 20210090037A1 · Dowding · 2021 [cited by applicant]
US 20210182433A1 · Yan et al. · 2021 [cited by applicant]
US 20210336956A1 · Bitauld et al. · 2021 [cited by applicant]
US 20210350360A1 · Kote · 2021 [cited by applicant]
US 20220052857A1 · Middleton et al. · 2022 [cited by applicant]
CA 3004423A1 · 2017 [cited by applicant]
CN 105809062A · 2016 [cited by applicant]
CN 106022917A · 2016 [cited by applicant]
CN 106598549A · 2017 [cited by applicant]
KR 101590076B1 · 2016 [cited by applicant]
KR 20160095720A · 2016 [cited by applicant]
KR 101661930B1 · 2016 [cited by applicant]
WO 2015160839A1 · 2015 [cited by applicant]
WO 2016105927A1 · 2016 [cited by applicant]
WO 2017079218A1 · 2017 [cited by applicant]
WO 2017091530A1 · 2017 [cited by applicant]
Gennaro et al., “Robust Threshold DSS Signatures,” International Conference on the Theory and Applications of Cryptographic Techniques, May 12, 1996, https://link.springer.com/content/pdf/10.1007%2F3-540-68339-9_31.pdf,… [cited by applicant]
Antonopoulos, “Bitcoin Book,” GitHub, retrieved from https://github.com/bitcoinbook/bitcoinbook, Feb. 2, 2018, 4 pages. [cited by applicant]
Antonopoulos, “Mastering Bitcoin—Unlocking Digital Cryptocurrencies,” O'Reilly Media, Inc., Dec. 20, 2014, 282 pages. [cited by applicant]
Armknecht et al., “Ripple: Overview and Outlook,” retrieved from https://www.researchgate.net/profile/Avikarsha_Mandal/publication/281631024_Ripple_Overview_and_Outlook/links/55f1434c08aef559dc4700f4/Ripple-Overview-and… [cited by applicant]
Bissias et al., “Sybil-Resistant Mixing for Bitcoin,” Proceedings of the 13th Workshop on Privacy in the Electronic Society, Nov. 3, 2014, http://forensics.umass.edu/pubs/bissias.wpes.2014.pdf, 10 pages. [cited by applicant]
Bitcoin Stack Exchange, “Custom Validation Logic for Transactions/Custom Script Extensions,” retrieved from https://bitcoin.stackexchange.com/questions/4125/custom-validation-logic-for-transactions-custom-script-extensi… [cited by applicant]
Bitfury Group, “Digital Assets on Public Blockchains,” White Paper, BitFury Group Limited, Mar. 15, 2016, http://bitfury.com/content/5-white-papers-research/bitfury-digital_assets_on_public_blockchains-1.pdf, 37 pages. [cited by applicant]
Bitfury Group, “Smart Contracts on Bitcoin Blockchain,” BitFury Group Limited, Aug. 13, 2015 (updated Sep. 4, 2015), http://bitfury.com/content/5-white-papers-research/contracts-1.1.1.pdf, 20 pages. [cited by applicant]
Coleman, “Bitcoin/Bips,” retrieved from https://github.com/bitcoin/bips/blob/11b0fa37bee4eac40c3a1be0591078688bcc3392/bip-0032.mediawiki, GitHub, Feb. 24, 2017, 15 pages. [cited by applicant]
Deathandtaxes, “Using a DHT to Reduce the Resource Requirements of Full Nodes,” retrieved from https://bitcointalk.org/index.php?topic=662734.0, Jun. 23, 2014, 11 pages. [cited by applicant]
Eragmus, “Dr. Craig Wright (alleged Satoshi, by Wired) on YouTube, From Bitcoin Investor Conference at Las Vegas,” retrieved from https://www.reddit.com/r/Bitcoin/comments/3w027x/dr_craig_steven_, Jun. 22, 2017, 24 page… [cited by applicant]
Fangolo et al., “Sergio Lerner: I Think I Will Start Working On a New Soft-Fork For Bitcoin to Add Turing-Complete Scripting, Called Bit2. CLTV/CSTV Made With Std Opcodes,” retrieved from https://www.reddit.com/r/ethere… [cited by applicant]
Greatwolf, “What Happens if Everyone Prunes Blocks?” retrieved from https://www.reddit.com/r/Bitcoin/comments/3det7n/what_happens_if_everyone_prunes_bloc ks/, Jul. 15, 2015, 7 pages. [cited by applicant]
Heilman et al., “TumbleBit: An Untrusted Tumbler for Bitcoin-Compatible Anonymous Payments,” International Association for Cryptologic Research, Jun. 3, 2016, 14 pages. [cited by applicant]
International Search Report and Written Opinion for Application No. PCT/IB2018/053335, mailed Aug. 1, 2018, filed May 14, 2018, 11 pages. [cited by applicant]
International Search Report and Written Opinion for Application No. PCT/IB2018/053338, mailed Aug. 1, 2018, filed May 14, 2018, 11 pages. [cited by applicant]
International Search Report and Written Opinion for Application No. PCT/IB2018/053339, mailed Jul. 20, 2018, filed May 14, 2018, 11 pages. [cited by applicant]
International Search Report and Written Opinion mailed Aug. 1, 2018, International Patent Application No. PCT/IB2018/053337, filed May 14, 2018, 11 pages. [cited by applicant]
International Search Report and Written Opinion mailed Jul. 23, 2018, International Patent Application No. PCT/IB2018/053336, filed May 14, 2018, 12 pages. [cited by applicant]
International Search Report and Written Opinion mailed Jul. 23, 2018, International Patent Application No. PCT/IB2018/053340, filed May 14, 2018, 12 pages. [cited by applicant]
Kaminsky, “I Tried to Hack Bitcoin and Failed,” retrieved from https://www.reddit.com/r/Bitcoin/comments/1c7lzi/i_tried_to_hack_bitcoin_and_failed_dan_kaminsky/aminsky/, Sep. 9, 2010, 24 pages. [cited by applicant]
Lerner, “Ethereum Comments,” retrieved from https://www.reddit.com/r/ethereum/comments/468hdc/sergio_lerner_i_think_i_will_start_working_on_a/, Feb. 16, 2016, 7 pages. [cited by applicant]
Nakamoto, “Bitcoin: A Peer-to-Peer Electronic Cash System,” Bitcoin, Oct. 31, 2008, https://bitcoin.org/bitcoin.pdf, 9 pages. [cited by applicant]
Okupski, “Bitcoin Developer Reference,” retrieved from https://lopp.net/pdf/Bitcoin_Developer_Reference.pdf, Jul. 30, 2016, 43 pages. [cited by applicant]
Pair et al., “Re: [Bitcoin-development] Blocking Uneconomical UTXO Creation,” email thread, retrieved from https://www.mail-archive.com/[email protected]&q=subject:%22\[Bitcoin\-developm… [cited by applicant]
Piachu, “Custom Validation Logic for Transactions/Custom Script Extensions,” retrieved from https://bitcoin.stackexchange.com/questions/4125/custom-validation-logic-for-transactions• custom-script-extensions, Sep. 8, 20… [cited by applicant]
Poon et al., “The Bitcoin Lightning Network: Scalable Off-Chain Instant Payments,” https://www.bitcoinlightning.com/wp-content/uploads/2018/03/lightning-network-paper.pdf, Jan. 14, 2016 [retrieved Dec. 10, 2018], 59 pag… [cited by applicant]
Priest, Op_CheckWildCardSigverify or “Wildcard Inputs” or “Coalescing Transactions,” retrieved from <http://www.reddit.com/r/bitcoindevlist/comments/3vzm2i/op_checkwidcardsigverify_orwid>_checkwildcard inputs or/ Nov. 2… [cited by applicant]
Ruffing et al., “P2P Mixing and Unlinkable Bitcoin Transactions,” International Association for Cryptologic Research, Aug. 24, 2016, 15 pages. [cited by applicant]
Satoshi et al., “Connection Limits,” Bitcoin Forum, Aug. 9, 2010, https://bitcointalk.org/index.php?topic=741.0; prev_next=prev, 2 pages. [cited by applicant]
Selij et al., “CoinShuffle Anonymity in the Block Chain,” retrieved from http://delaat.net/rp/2014-2015/p77/report.pdf, Jul. 20, 2015, 36 pages. [cited by applicant]
Smart Contracts, “Smart Contracts/EVM FAQ,” retrieved from https://web.archive.org/web/20170719092538/ https://counterparty.io/docs/faq-smartcontracts/, Jul. 19, 2017, 7 pages. [cited by applicant]
Todd, “Building Blocks of the State Machine Approach to Consensus,” petertodd.org, Jun. 20, 2016 [retrieved Feb. 5, 2018], https://petertodd.org/2016/state-machine-consensus-building-blocks, 15 pages. [cited by applicant]
UK IPO Search Report mailed Nov. 14, 2017, Patent Application No. GB1708185.2, 7 pages. [cited by applicant]
UK IPO Search Report mailed Nov. 14, 2017, Patent Application No. GB1708190.2, 7 pages. [cited by applicant]
UK IPO Search Report mailed Nov. 14, 2017, Patent Application No. GB1708192.8, 8 pages. [cited by applicant]
UK IPO Search Report mailed Nov. 14, 2017, Patent Application No. GB1708196.9, 7 pages. [cited by applicant]
UK IPO Search Report mailed Nov. 14, 2017, Patent Application No. GB1708198.5, 7 pages. [cited by applicant]
UK IPO Search Report mailed Nov. 14, 2017, Patent Application No. GB1708200.9, 7 pages. [cited by applicant]
Wikipedia, “Atomic Swap,” retrieved from https://en.bitcoin.it/wiki/Atomic_swap, Dec. 2018, 3 pages. [cited by applicant]
Wright, “Reddit/Ethereum Forum,” retrieved from http://www.reddit.com/r/Bitcoin/comments/3w027x/drcraig_stevenwrightallegedsatoshi>by_wired/, Dec. 8, 2015, 24 pages. [cited by applicant]
Dennis et al., “Rep on the Block: A Next Generation Reputation System Based on the Block”, The 10th International Conference for Internet Technology and Secured Transactions, IEEE, 2015, 8 pages. [cited by applicant]
Sharples et al., “The Blockchain and Kudos: A Distributed System for Education Record, Reputation and Reward”, European Conference on Technology Enhanced Learning, Sep. 2016, 7 pages. [cited by applicant]
Vallois et al., “Bitcoin Transaction: From the Creation to Validation, a Protocol Overview”, IEEE, Cyber Security in Networking Conference (CSNet), Rio de Janerio, Brazil, 7 pages. [cited by applicant]
Franco, “Understanding Bitcoin: Cryptography, Engineering and Economics,” O'Reilly, Chapter 6 Transactions, 2014, 16 pages. [cited by applicant]
Sahoo et al., “An Elliptic-Curve-Based Hierarchical Cluster Key Management in Wireless Sensor Network,” Proceedings of the International Conference on Advanced Computing, Networking, and Informatics, Jun. 2013, https://… [cited by applicant]
Wang et al., “Group Authentication and Group Key Distribution for Ad Hoc Networks,” International Journal of Network Security, 17(2):199-207, Mar. 2015, https://pdfs.semanticscholar.org/a8ed/69bbba47a702190680614c4c61b0… [cited by applicant]
International Search Report and Written Opinion for Application No. PCT/IB2018/052885, mailed Jul. 31, 2018, 10 pages. [cited by applicant]
UK IPO Search Report mailed Oct. 17, 2017, Patent Application No. GB1707168.9, 6 pages. [cited by applicant]
Gennaro et al., “Threshold-Optimal DSA/ECDSA Signatures and an Application to Bitcoin Wallet Security,” International Conference on Applied Cryptography and Network Security, Jun. 9, 2016, 42 pages. [cited by applicant]