零知识证明 zkDaily
ZKP Frontier Tracker 🎯
Fri
05.29
2026
Project avatar
Paper
https://eprint.iacr.org/2026/1042
Georg Fuchsbauer Multi-signatures

Notes

零知识证明 zkDaily
Q&A Deep Dive 💬
Fri
05.29
2026
beginner
What are Doubly Aggregatable Signatures?
Doubly Aggregatable Signatures are a two-layer signature aggregation scheme. Layer-0 signers sign a message, while layer-1 signers attest to the signatures they observed, producing a compact aggregated certificate.
answer
intermediate
What is the “who observed whom” bitmap in the paper?
The bitmap records which layer-1 signers observed which layer-0 signatures. Verifiers can use it to check vote dissemination and prevent fake observation claims.
answer
expert
How does the scheme prevent equivocation attacks?
The security model ensures that a layer-1 signer can only attest to layer-0 signatures it actually observed. Otherwise, the attestation is treated as a forgery. Cryptographic binding and aggregation checks enforce this property.
answer