[Resource Topic] 2024/611: A Security Analysis of Restricted Syndrome Decoding Problems

Welcome to the resource topic for 2024/611

Title:
A Security Analysis of Restricted Syndrome Decoding Problems

Authors: Ward Beullens, Pierre Briaud, Morten Øygarden

Abstract:

Restricted syndrome decoding problems (R-SDP and R-SDP(G)) provide an interesting basis for post-quantum cryptography. Indeed, they feature in CROSS, a submission in the ongoing process for standardizing post-quantum signatures.

This work improves our understanding of the security of both problems.
Firstly, we propose and implement a novel collision attack on R-SDP(G) that provides the best attack under realistic restrictions on memory. Secondly, we derive precise complexity estimates for algebraic attacks on R-SDP that are shown to be accurate by our experiments. We note that neither of these improvements threatens the updated parameters of CROSS.

ePrint: https://eprint.iacr.org/2024/611

See all topics related to this paper.

Feel free to post resources that are related to this paper below.

Example resources include: implementations, explanation materials, talks, slides, links to previous discussions on other websites.

For more information, see the rules for Resource Topics .