Time-Space Tradeoffs for Distinguishing Distributions and Applications to Security of Goldreich's PRG

by   Sumegha Garg, et al.

In this work, we establish lower-bounds against memory bounded algorithms for distinguishing between natural pairs of related distributions from samples that arrive in a streaming setting. In our first result, we show that any algorithm that distinguishes between uniform distribution on {0,1}^n and uniform distribution on an n/2-dimensional linear subspace of {0,1}^n with non-negligible advantage needs 2^Ω(n) samples or Ω(n^2) memory. Our second result applies to distinguishing outputs of Goldreich's local pseudorandom generator from the uniform distribution on the output domain. Specifically, Goldreich's pseudorandom generator G fixes a predicate P:{0,1}^k →{0,1} and a collection of subsets S_1, S_2, ..., S_m ⊆ [n] of size k. For any seed x ∈{0,1}^n, it outputs P(x_S_1), P(x_S_2), ..., P(x_S_m) where x_S_i is the projection of x to the coordinates in S_i. We prove that whenever P is t-resilient (all non-zero Fourier coefficients of (-1)^P are of degree t or higher), then no algorithm, with <n^ϵ memory, can distinguish the output of G from the uniform distribution on {0,1}^m with a large inverse polynomial advantage, for stretch m <(n/t)^(1-ϵ)/36· t (barring some restrictions on k). The lower bound holds in the streaming model where at each time step i, S_i⊆ [n] is a randomly chosen (ordered) subset of size k and the distinguisher sees either P(x_S_i) or a uniformly random bit along with S_i. Our proof builds on the recently developed machinery for proving time-space trade-offs (Raz 2016 and follow-ups) for search/learning problems.



There are no comments yet.


page 1

page 2

page 3

page 4


Extractor-Based Time-Space Lower Bounds for Learning

A matrix M: A × X →{-1,1} corresponds to the following learning problem:...

An Information-Theoretic Proof of the Streaming Switching Lemma for Symmetric Encryption

Motivated by a fundamental paradigm in cryptography, we consider a recen...

Time-Space Tradeoffs for Learning from Small Test Spaces: Learning Low Degree Polynomial Functions

We develop an extension of recently developed methods for obtaining time...

Quantum Time-Space Tradeoffs by Recording Queries

We use the recording queries technique of Zhandry [Zha19] to prove lower...

Size-Degree Trade-Offs for Sums-of-Squares and Positivstellensatz Proofs

We show that if a system of degree-k polynomial inequalities on n Boolea...

Quantum learning algorithms imply circuit lower bounds

We establish the first general connection between the design of quantum ...

Random restrictions and PRGs for PTFs in Gaussian Space

A polynomial threshold function (PTF) f:ℝ^n →ℝ is a function of the form...
This week in AI

Get the week's most popular data science and artificial intelligence research sent straight to your inbox every Saturday.