Paper 2024/459
Isogeny problems with level structure
Abstract
Given two elliptic curves and the degree of an isogeny between them, finding the isogeny is believed to be a difficult problem---upon which rests the security of nearly any isogeny-based scheme. If, however, to the data above we add information about the behavior of the isogeny on a large enough subgroup, the problem can become easy, as recent cryptanalyses on SIDH have shown.
Between the restriction of the isogeny to a full
Metadata
- Available format(s)
-
PDF
- Category
- Attacks and cryptanalysis
- Publication info
- A minor revision of an IACR publication in EUROCRYPT 2024
- Keywords
- IsogeniesPost-quantumSecurity reductions.
- Contact author(s)
-
eurocrypt24 @ defeo lu
tako fouotsa @ epfl ch
lorenz @ yx7 cc - History
- 2024-03-22: approved
- 2024-03-18: received
- See all versions
- Short URL
- https://ia.cr/2024/459
- License
-
CC BY
BibTeX
@misc{cryptoeprint:2024/459, author = {Luca De Feo and Tako Boris Fouotsa and Lorenz Panny}, title = {Isogeny problems with level structure}, howpublished = {Cryptology {ePrint} Archive, Paper 2024/459}, year = {2024}, url = {https://eprint.iacr.org/2024/459} }