[Resource Topic] 2023/432: Practical key-recovery attack on MQ-Sign

Practical key-recovery attack on MQ-Sign

Authors: Thomas Aulbach, Simona Samardjiska, Monika Trimoska


This note describes a polynomial-time key-recovery attack on the UOV-based signature scheme called MQ-Sign. The scheme is a first-round candidate in the Korean Post-Quantum Cryptography Competition. Our attack exploits the sparsity of the secret central polynomials in combination with the specific structure of the secret linear map S. We provide a verification script that recovers the secret key in less than seven seconds for security level 5.

ePrint: https://eprint.iacr.org/2023/432

