> Don’t overextend your Oblivious Transfer
[DATE: 20/09/2023 12:00]
[LANGUAGE: EN]
We found a vulnerability in a threshold signature scheme that allows an attacker to recover the signing key of threshold ECDSA implementations that are based on Oblivious Transfer (OT). A malicious participant of the threshold signing protocols could perform selective abort attacks during the OT extension subprotocol, recover the secret […]