ZebraCPA: Decentralized, Postquantum Conditional Privacy-Preserving Authentication for VANETs via Traceable ZK Ring Signatures
Abstract
Vehicular ad-hoc networks (VANETs) require authentication mechanisms that simultaneously deliver privacy, accountability, and timely cross-domain synchronization. The existing schemes struggle to balance unlinkable anonymity with effective tracing. They are also vulnerable to future quantum adversaries and rely on slow and costly revocation workflows. We present ZebraCPA, a decentralized conditional privacy-preserving authentication (CPPA) framework that combines lattice-based traceable ring signatures (TRS) with zero-knowledge (ZK) proofs and a consortium blockchain. Our TRS design removes linkability tags and embeds a tracing trapdoor only recoverable by the authorized auditors. It naturally extends to threshold tracing for multi-auditor settings. To avoid the plain-text key escrow, ZebraCPA leverages the additively homomorphic property of the commitments to support the ciphertext-only key updates by the vehicles, preventing the catastrophic key leakage at authorities. A hierarchical blockchain layer provides fast, consistent synchronization of active-key status across regions. The experiments show 1.7Γβ7.0Γ speedups over state-of-the-art baselines in signing/verification while retaining an anonymity-set size of N=10. The network-level simulations further indicate that ZebraCPA reduces an average packet delay by 30.7% - 61.6% compared with the baselines under moderate traffic densities. Moreover, the security of ZebraCPA is validated through our informal analysis under the Dolev-Yao model. Overall, ZebraCPA achieves post-quantum security, strong anonymity with conditional traceability, and practical deployment efficiency for VANETs, outperforming the existing solutions in terms of both latency and robustness.
Community
0 commentsNo discussion yet
Be the first to share a question or observation.