[Resource Topic] 2004/209: The Security and Efficiency of Micciancio's Cryptosystem

The Security and Efficiency of Micciancio’s Cryptosystem

Authors: Christoph Ludwig


We report experiments on the security of the GGH-like cryptosystem proposed by Micciancio. Based on these experiments, we conclude that the system can be securely used only in lattice dimensions > 781. Further experiments on the efficiency of the system show that it requires key sizes of 1 MByte and more and that the key generation as well as the decryption take inacceptibly long. Therefore, Micciancio’s cryptosystem seems currently far from being practical.

ePrint: https://eprint.iacr.org/2004/209

