[Resource Topic] 2023/1425: Popping “R-propping”: breaking hardness assumptions for matrix groups over F_{2^8}

Welcome to the resource topic for 2023/1425

Title:
Popping “R-propping”: breaking hardness assumptions for matrix groups over F_{2^8}

Authors: Fernando Virdia

Abstract:

A recent series of works (Hecht, IACR ePrint, 2020–2021) propose to build post-quantum public-key encapsulation, digital signatures, group key agreement and oblivious transfer from “R-propped” variants of the Symmetrical Decomposition and Discrete Logarithm problems for matrix groups over \mathbb{F}_{2^8}. We break all four proposals by presenting a linearisation attack on the Symmetrical Decomposition platform, a forgery attack on the signature scheme, and a demonstration of the insecurity of the instances of the Discrete Logarithm Problem used for signatures, group key agreement and oblivious transfer, showing that none of the schemes provides adequate security.

ePrint: https://eprint.iacr.org/2023/1425

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .