SVP: A flexible micropayment scheme

  • Jacques Stern
  • Serge Vaudenay
Conference paper
Part of the Lecture Notes in Computer Science book series (LNCS, volume 1318)


We propose a cheap micropayment scheme based on reasonable requirements. It can be used for any payment which is online between the customer and the vendor and offline with the broker. It is flexible in the sense that many security options are possible depending on the policy of the involved participants. We avoid large data storage, heavy computations. The scheme is software based for the customer and hardware based for the vendor. Possibilities of having software-based solution for both are also presented.


External Memory Message Authentication Code Payment Scheme Resistant Device Payment Protocol 
These keywords were added by machine and not by the authors. This process is experimental and the keywords may be updated as the learning algorithm improves.


Unable to display preview. Download preview PDF.

Unable to display preview. Download preview PDF.


  1. [1]
    Secure Elecronic Transactions (SET) specifications. Draft. 17 july 1996 Scholar
  2. [2]
    R. J. Anderson, M. G. Kuhn. Tamper resistance — a cautionary note. In Proceedings of the 2nd Usenix Workshop on Electronic Commerce, Oakland, California, U.S.A., pp. 1–21, nov. 1996.Google Scholar
  3. [3]
    D. Bleichenbacher, U. M. Maurer. Directed acyclic graphs, one-way functions and digital signatures. In Advances in Cryptology CRYPTO'94, Santa Barbara, California, U.S.A., Lectures Notes in Computer Science 839, pp. 75–82, Springer-Verlag, 1994.Google Scholar
  4. [4]
    D. Boneh, R. A. deMillo, R. J. Lipton. On the importance of checking computations. Preprint, nov. 1996. To appear in the proceedings of Eurocrypt'97.Google Scholar
  5. [5]
    E. Biham, A. Shamir. Research anouncement: a new cryptanalytic attack on DES. Oct. 1996. Presented at the Rump Session of Fast Sofwtare Encryption'97 Scholar
  6. [6]
    S. Glassman, M. Manasse, M. Abadi, P. Gauthier, P. Sobalvarro. The Millicent protocol for inexpensive electronic commerce. In World Wide Web Journal, Fourth International World Wide Web Conference Proceedings, pp. 603–618, O'Reilly, 1995.Google Scholar
  7. [7]
    S. Jarecki, A. Odlyzko. An efficient micropayment system based on probabilistic polling. In these proceedings.Google Scholar
  8. [8]
    C. S. Jutla, M. Yung. Paytree. “Amortized-signature” for flexible micropayments. Presented at the Rump Session of ASIACRYPT'96. Scholar
  9. [9]
    L. Lamport. Constructing digital signatures from a one way function, Technical report CSL-98, SRI Intl., 1979.Google Scholar
  10. [10]
    A. K. Lenstra. Memo on RSA signature generation in the presence of faults. Sep. 1996. Unpublished.Google Scholar
  11. [11]
    R. Merkle. A Certified Digital Signature, In Advances in Cryptology CRYPTO'89, Santa Barbara, California, U.S.A., Lectures Notes in Computer Science 435, pp. 218–238, Springer-Verlag, 1990.Google Scholar
  12. [12]
    M. Naor, M. Yung. Universal one-way hash functions and their cryptographic applications. In Proceedings of the 21st ACM Symposium on Theory of Computing, Seattle, Washington, U.S.A., pp. 33–43, ACM Press, 1989.Google Scholar
  13. [13]
    R. L. Rivest, A. Shamir. PayWord and MicroMint: two simple micropayments schemes. CryptoBytes, vol. 2, num. 1, pp. 7–11, 1996. rivestGoogle Scholar
  14. [14]
    B. Schneier. Applied Cryptography, 2nd Edition, John Wiley and sons, 1996.Google Scholar
  15. [15]
    E. Sperner. Ein Satz über Utermengen einer endlichen Menge. Mathematische Zeitschrift, vol. 27, pp. 544–548, 1928.CrossRefMathSciNetGoogle Scholar
  16. [16]
    S. Vaudenay. One-time identification with low memory. In Proc. EUROCODE'92, Udine, Italy, CISM Courses and Lectures 339, pp. 217–228, Springer-Verlag, 1993. vaudenayGoogle Scholar
  17. [17]
    Y. Yacobi. On the continuum between on-line and off-line e-cash systems. In these proceedings.Google Scholar

Copyright information

© Springer-Verlag Berlin Heidelberg 1997

Authors and Affiliations

  • Jacques Stern
    • 1
  • Serge Vaudenay
    • 1
  1. 1.Ecole Normale Supérieure - CNRSFrance

Personalised recommendations