Supplementary Token Signatures for Quantum-Resistant ID Data
Find Innovative SolutionsGenerate Solutions
Solution Overview
Problem
Existing cryptographic methods used in ID tokens, such as passports and identity cards, are vulnerable to decryption by quantum computers due to their reliance on RSA or ECC, posing a risk to the security and authenticity of stored data over long validity periods.
Innovation Solution
A supplementary cryptographic signature is added to the ID token using a post-quantum key, such as a PQC key, which is created by a signature device and stored on the token, enhancing tamper-proof security by requiring a different attack method than existing mechanisms.
Engineering Contradictions & Design Principles
Engineering Contradiction Analysis
1Reliability
If existing cryptographic methods (RSA or ECC) are used for securing ID tokens, then current security standards are met, but vulnerability to quantum computer attacks increases
Solution Approach 1:
The patent divides the cryptographic security into two independent layers: the original ECC-based signature mechanism and a new supplementary quantum-resistant signature mechanism. Each layer operates independently with its own key pairs and verification processes, allowing the system to maintain backward compatibility while adding quantum security without compromising the existing infrastructure
Solution Approach 2:
The patent changes the cryptographic parameter regime by introducing post-quantum cryptographic algorithms that rely on different mathematical assumptions than traditional ECC. The supplementary signature uses cryptographic parameters that are secure against quantum attacks, fundamentally changing the security landscape from quantum-vulnerable to quantum-resistant
2Reliability
If a supplementary cryptographic signature is added to the token, then quantum security is enhanced, but storage space requirements increase
Solution Approach 1:
The patent applies partial action by selecting only the essential components needed for quantum security - specifically, a hash value of the data structure and a supplementary signature. This partial approach provides sufficient quantum protection without requiring complete cryptographic replacement, thereby minimizing storage overhead while achieving the security goal
3Reliability
If a supplementary cryptographic signature is added to the token, then quantum security is enhanced, but device complexity increases
Solution Approach 1:
The patent implements universality by designing a verification system that can handle both the original ECC signature and the new quantum-resistant signature using a unified approach. The verification device can process both signature types through consistent procedures, and the supplementary signature can be verified independently or in conjunction with the original signature, providing flexible multi-functional security verification
Data Source
Figure 1A~1B
Figure 2A~2B
Figure 3
AI summary
The invention relates to a method and electronic system for supplementing and verifying a supplementary cryptographic signature in a digital token. For this purpose, after mutual authentication of the digital token and a terminal, a supplementary cryptographic signature is created by a signature device based on a secret key not previously used for this digital token and stored in the digital token. The supplementary signature can then be verified using an associated public key.