Security of Tseng-Jan's group signature schemes

Two forgery attacks are given to show that the group signature schemes proposed by Tseng and Jan, based on the discrete logarithm, are insecure.