Skip to content

Conversation

rtjk
Copy link

@rtjk rtjk commented Mar 6, 2025

This pull request simply adds claimed-security: SUF-CMA to META.yml, as declared in FIPS 204:

ML-DSA is designed to be strongly existentially unforgeable under chosen message attack (SUF-CMA).
That is, it is expected that even if an adversary can get the honest party to sign arbitrary messages, the
adversary cannot create any additional valid signatures based on the signer’s public key, including on
messages for which the signer has already provided a signature.

The purpose is to allow liboqs to test this property after importing ML-DSA.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant