[Resource Topic] 2023/926: Analysis of the security of the PSSI problem and cryptanalysis of the Durandal signature scheme

Welcome to the resource topic for 2023/926

Title:
Analysis of the security of the PSSI problem and cryptanalysis of the Durandal signature scheme

Authors: Nicolas Aragon, Victor Dyseryn, Philippe Gaborit

Abstract:

We present a new attack against the PSSI problem, one of the three problems at the root of security of Durandal, an efficient rank metric code-based signature scheme with a public key size of 15 kB and a signature size of 4 kB, presented at EUROCRYPT’19. Our attack recovers the private key using a leakage of information coming from several signatures produced with the same key. Our approach is to combine pairs of signatures and perform Cramer-like formulas in order to build subspaces containing a secret element. We break all existing parameters of Durandal: the two published sets of parameters claiming a security of 128 bits are broken in respectively 2^{66} and 2^{73} elementary bit operations, and the number of signatures required to finalize the attack is 1,792 and 4,096 respectively. We implemented our attack and ran experiments that demonstrated its success with smaller parameters.

ePrint: https://eprint.iacr.org/2023/926

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .