Previously known blind signature systems require an amount of computation at least proportional to the number of signature types, and also that the number of such types be fixed in advance. These requirements are not practical in some applications. Here, a new blind signature technique is introduced that allows an unlimited number of signature types with only a (modest) constant amount of computation.

doi.org/10.1007/3-540-39118-5_21
Advances in Cryptology - EUROCRYPT
Centrum Wiskunde & Informatica, Amsterdam (CWI), The Netherlands

Chaum, D. (1987). Blinding for unanticipated signatures. In Lecture Notes in Computer Science/Lecture Notes in Artificial Intelligence (pp. 227–233). doi:10.1007/3-540-39118-5_21