Efficient Online-friendly Two-Party ECDSA Signature

Published: 13 November 2021


Two-party ECDSA signatures have received much attention due to their widespread deployment in cryptocurrencies. Depending on whether or not the message is required, we could divide two-party signing into two different phases, namely, offline and online. Ideally, the online phase should be made as lightweight as possible. At the same time, the cost of the offline phase should remain similar to that of a normal signature generation. However, the existing two-party protocols of ECDSA are not optimal: either their online phase requires decryption of a ciphertext, or their offline phase needs at least two executions of multiplicative-to-additive conversion which dominates the overall complexity. This paper proposes an online-friendly two-party ECDSA with a lightweight online phase and a single multiplicative-to-additive function in the offline phase. It is constructed by a novel design of a re-sharing of the secret key and a linear sharing of the nonce. Our scheme significantly improves previous protocols based on either oblivious transfer or homomorphic encryption. We implement our scheme and show that it outperforms prior online-friendly schemes (i.e., those have lightweight online cost) by a factor of roughly 2 to 9 in both communication and computation. Furthermore, our two-party scheme could be easily extended to the 2-out-of-n threshold ECDSA.


  • (2025)Blockchain-Assisted Robust Subgroup ECDSA Multisignature for ConsensusIEEE Internet of Things Journal10.1109/JIOT.2024.348521512:4(4525-4535)Online publication date: 15-Feb-2025
  • (2024)Direct Range Proofs for Paillier Cryptosystem and Their ApplicationsProceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security10.1145/3658644.3690261(899-913)Online publication date: 2-Dec-2024
  • (2024)Blockchain-Enabled Distributed Identity-Based Ring Signature With Identity Abort for Consumer ElectronicsIEEE Transactions on Consumer Electronics10.1109/TCE.2024.342610170:3(5340-5352)Online publication date: Aug-2024
Permission to make digital or hard copies of all or part of this work for personal or classroom use is granted without fee provided that copies are not made or distributed for profit or commercial advantage and that copies bear this notice and the full citation on the first page.



  1. ECDSA
  2. blockchain
  3. threshold signature
  4. two-party signature
  5. zero-knowledge proof


Funding Sources

  • the National Natural Science Foundation of China
  • the National Key Research and Development Program of China
  • the Research Grant Council of Hong Kong


  • (2025)Blockchain-Assisted Robust Subgroup ECDSA Multisignature for ConsensusIEEE Internet of Things Journal10.1109/JIOT.2024.348521512:4(4525-4535)Online publication date: 15-Feb-2025
  • (2024)Direct Range Proofs for Paillier Cryptosystem and Their ApplicationsProceedings of the 2024 on ACM SIGSAC Conference on Computer and Communications Security10.1145/3658644.3690261(899-913)Online publication date: 2-Dec-2024
  • (2024)Blockchain-Enabled Distributed Identity-Based Ring Signature With Identity Abort for Consumer ElectronicsIEEE Transactions on Consumer Electronics10.1109/TCE.2024.342610170:3(5340-5352)Online publication date: Aug-2024
  • (2024)An Efficient Multiparty Threshold ECDSA Protocol against Malicious Adversaries for Blockchain‐Based LLMsIET Information Security10.1049/2024/22528652024:1Online publication date: 17-Oct-2024
  • (2024)Industrial blockchain threshold signatures in federated learning for unified space-air-ground-sea model trainingJournal of Industrial Information Integration10.1016/j.jii.2024.10059339(100593)Online publication date: May-2024
  • (2024)TOPCOAT: towards practical two-party Crystals-DilithiumDiscover Computing10.1007/s10791-024-09449-227:1Online publication date: 10-Jul-2024
  • (2024)Subverting Cryptographic Protocols from a Fine-Grained Perspective- A Case Study on 2-Party ECDSAInformation Security and Privacy10.1007/978-981-97-5028-3_19(370-390)Online publication date: 15-Jul-2024
  • (2023)Efficient Multiplicative-to-Additive Function from Joye-Libert Cryptosystem and Its Application to Threshold ECDSAProceedings of the 2023 ACM SIGSAC Conference on Computer and Communications Security10.1145/3576915.3616595(2974-2988)Online publication date: 15-Nov-2023
  • (2023)Fast 2-out-of-n ECDSA Threshold Signature2023 IEEE Intl Conf on Parallel & Distributed Processing with Applications, Big Data & Cloud Computing, Sustainable Computing & Communications, Social Computing & Networking (ISPA/BDCloud/SocialCom/SustainCom)10.1109/ISPA-BDCloud-SocialCom-SustainCom59178.2023.00092(456-465)Online publication date: 21-Dec-2023
  • (2023)Experimental Analysis of the Recent Key Recovery Protocol with respect to Commitment Schemes2023 14th International Conference on Information and Communication Technology Convergence (ICTC)10.1109/ICTC58733.2023.10392697(669-674)Online publication date: 11-Oct-2023
  • Show More Cited By

