Cover attacks for elliptic curves with prime order

12/13/2020
by   Song Tian, et al.
0

We give a new approach to the elliptic curve discrete logarithm problem over cubic extension fields 𝔽_q^3. It is based on a transfer: First an 𝔽_q-rational (ℓ,ℓ,ℓ)-isogeny from the Weil restriction of the elliptic curve under consideration with respect to 𝔽_q^3/𝔽_q to the Jacobian variety of a genus three curve over 𝔽_q is applied and then the problem is solved in the Jacobian via the index-calculus attacks. Although using no covering maps in the construction of the desired homomorphism, this method is, in a sense, a kind of cover attack. As a result, it is possible to solve the discrete logarithm problem in some elliptic curve groups of prime order over 𝔽_q^3 in a time of Õ(q).

READ FULL TEXT

page 1

page 2

page 3

page 4

research
05/11/2020

Initial minors – a conjecture to solve the elliptic curve discrete logarithm problem

The purpose of this paper is to propose a paradigm shift in attacking th...
research
06/18/2021

Extending the GLS endomorphism to speed up GHS Weil descent using Magma

Let q = 2^n, and let E / 𝔽_q^ℓ be a generalized Galbraith–Lin–Scott (GLS...
research
03/23/2020

Faster computation of isogenies of large prime degree

Let E/F_q be an elliptic curve, and P a point in E(F_q) of prime order ℓ...
research
02/10/2022

Faulty isogenies: a new kind of leakage

In SIDH and SIKE protocols, public keys are defined over quadratic exten...
research
09/19/2019

A New Method for Geometric Interpretation of Elliptic Curve Discrete Logarithm Problem

In this paper, we intend to study the geometric meaning of the discrete ...
research
06/03/2020

An Authenticated Key Scheme over Elliptic Curves and Security Considerations

Nodes of sensor networks may be resource-constrained devices, often havi...
research
09/25/2019

Expanding the use of quasi-subfield polynomials

The supposed hardness of the elliptic curve discrete logarithm problem i...

Please sign up or login with your details

Forgot password? Click here to reset