Abstract:
Ring signature allows to specify a set of potential message signers instead of the actual signer. In this paper, a new signature type is introduced – the one-time ring signature which allows to sign only one message. The use of the same secret key twice reveals signer's identity. A protocol for untraceable payments in Bitcoin e-cash system is also offered.