首页> 外文会议>International conference on information security and cryptology >Security Analysis of Group Action Inverse Problem with Auxiliary Inputs with Application to CSIDH Parameters
【24h】

Security Analysis of Group Action Inverse Problem with Auxiliary Inputs with Application to CSIDH Parameters

机译:带有辅助输入的群动作逆问题的安全性分析及其在CSIDH参数中的应用

获取原文

摘要

In this paper, we consider the security of a problem called Group Action Inverse Problem with Auxiliary Inputs (GAIPwAI). The Group Action Inverse Problem (GAIP) plays an important role in the security of several isogeny-based cryptosystems, such as CSIDH, SeaSign and CSI-FiSh. Briefly speaking, given two isogenous supersingular curves E and E' over F_p, where E' is defined by an ideal a in the F_p-endomorphism ring of E and denoted by E' = [a] * E, GAIP requires finding a ⊂ End_(F_p)(E). Its best classical algorithm is based on the baby-step-giant-step method and it runs in time O(p~(1/4)). In this paper, we show that if E and E' are given together with [a~d] * E for a positive divisor d that divides the order of the class group of Z[-p~(1/2)], then a can be computed in O((p~(1/2)/d)~(1/2) -I- d~(l/2)) time complexity. In particular, when d ≈ p~(1/4), it can be solved in time O(p~(1/8)) which is significantly less than O(p1/4). Applying the idea to CSIDH-512 parameters, we show that, if an additional isogenous curve [a~d] * E is given, the security level of this cryptosystem reduces to 68-bit security instead of 128-bit security as originally believed.
机译:在本文中,我们考虑了具有辅助输入的组动作逆问题(GAIPwAI)的问题的安全性。小组行动逆问题(GAIP)在诸如CSIDH,SeaSign和CSI-FiSh的几种基于异构的密码系统的安全性中起着重要作用。简而言之,给定F_p上的两个同构超奇异曲线E和E',其中E'由E的F_p同胚环中的理想a定义,并由E'= [a] * E表示,GAIP需要找到⊂End_ (F_p)(E)。它的最佳经典算法是基于婴儿步长法的,并且运行时间为O(p〜(1/4))。在本文中,我们表明,如果E和E'与[a〜d] * E一起给出,则将除以Z [-p〜(1/2)]的类组的阶数为正数d,则a可以用O((p〜(1/2)/ d)〜(1/2)-Id-(l / 2))时间复杂度来计算。特别是,当d≈p〜(1/4)时,可以在时间O(p〜(1/8))中求解,该时间显着小于O(p1 / 4)。将这一思想应用于CSIDH-512参数,我们表明,如果给出附加的同质曲线[a〜d] * E,则该密码系统的安全级别将降低到68位安全性,而不是最初认为的128位安全性。

著录项

相似文献

  • 外文文献
  • 中文文献
  • 专利
获取原文

客服邮箱:kefu@zhangqiaokeyan.com

京公网安备:11010802029741号 ICP备案号:京ICP备15016152号-6 六维联合信息科技 (北京) 有限公司©版权所有
  • 客服微信

  • 服务号