[PDF] Top 20 Computing supersingular isogenies on Kummer surfaces
Has 10000 "Computing supersingular isogenies on Kummer surfaces" found on our website. Below are the top 20 most common "Computing supersingular isogenies on Kummer surfaces".
Computing supersingular isogenies on Kummer surfaces
... – In 2014, Bernstein and Lange [6] revived Scholten’s work when they proposed using his con- struction in the context of (hyper)elliptic curve cryptography (H)ECC to convert keys back and forth between elliptic and ... See full document
22
Supersingular Isogeny Oblivious Transfer
... puting isogenies between ordinary elliptic ...compute isogenies between ordinary curves in subexponential ...of computing isogenies between supersin- gular elliptic curves, which does not have ... See full document
23
The supersingular isogeny problem in genus 2 and beyond
... message where the hash fails than it is to find a preimage with a square-root algorithm. The former requires O(p) work, the latter O(p 3/2 ). In this, as we will see, the simplified CDS hash function contains the seeds ... See full document
18
Trapdoor DDH groups from pairings and isogenies
... random supersingular curve with a large prime as the group order, and an isogeny be- tween this curve and a curve with a known distortion map as a ...dom supersingular elliptic curve, and the hardness of ... See full document
21
Computing isogenies between Montgomery curves using the action of (0,0)
... proposed supersingular isogeny Diffie– Hellman (SIDH) as a key exchange protocol offering post-quantum ...on computing explicit isogenies on Montgomery curves is more ... See full document
19
A Note on Post-Quantum Authenticated Key Exchange from Supersingular Isogenies
... It can be seen that, in general, sign-and-MAC variants appear to o ff er a wider variety of security features at a lower computing cost. Nevertheless, in some settings implicitly authenticated protocols can o ff ... See full document
22
Supersingular isogeny graphs and endomorphism rings: reductions and solutions
... Section 6 shows that constructing paths in the `-isogeny graph reduces to a different type of endomorphism ring computation. However, instead of just re- quiring an algorithm for computing the maximal order, one ... See full document
40
Strongly Secure Authenticated Key Exchange from Supersingular Isogenies
... cryptography, supersingular elliptic curve isogeny is one of the most attractive candidates for post-quantum ...Feo’s supersingular isogeny Diffie-Hellman key exchange (SIDH) [JD14] based on the hard ... See full document
29
Constructing Abelian Surfaces for Cryptography via Rosenhain Invariants
... their Kummer surfaces via Rosenhain invariants and related Kummer ...so computing them requires less precision, and in addition, the Rosenhain model for the curve can be written down directly ... See full document
23
Simple oblivious transfer protocols compatible with Kummer and supersingular isogenies
... Because of its simplicity, the Diffie-Hellman key exchange has served as a basis for several oblivious transfer methods, most notably by Bellare and Micali, Naor and Pinkas, and more recently Chou and Orlandi [4,11,25]. ... See full document
31
Faster Cryptographic Hash Function From Supersingular Isogeny Graphs
... of supersingular elliptic curves over finite fields. Supersingular isogeny graphs are excellent expander graphs with asymptotically optimal expansion con- stant ...of computing isogenies of ... See full document
20
On the cost of computing isogenies between supersingular elliptic curves
... The Supersingular Isogeny Diffie-Hellman (SIDH) key agreement scheme was proposed by Jao and De Feo [12] (see also ...Computational Supersingular Isogeny (CSSI) problem, which was first defined by Charles, ... See full document
20
Supersingular Isogeny Diffie-Hellman Authenticated Key Exchange
... (SIDH). Computing a sequence of isogenies of elliptic curves is a new cryptographic basic operation in some ...of computing an isogeny sequence, which is based on the hardness of constructing an ... See full document
30
Factor Base Discrete Logarithms in Kummer Extensions
... Abstract. The discrete logarithm over finite fields of small character- istic can be solved much more efficiently than previously thought. This algorithmic breakthrough is based on pinpointing relations among the factor ... See full document
19
Supersingular isogeny key exchange for beginners
... are isogenies of degree ...however, isogenies do not have an inverse that behaves like this; instead, every isogeny has a unique dual isogeny [12, Theorem ...dual isogenies lands us back on the same ... See full document
31
Arithmetic on Abelian and Kummer Varieties
... the Kummer varieties. In fact most models of Kummer varieties have dedicated faster formulae for the doubling and differential additions than for the schematic ... See full document
20
Explicit isogenies of elliptic curves
... In Chapter 3 we give a method called the “Division polynomial factor- ization method” for computing kernel polynomials for `-isogenies of E. The main advantage of this method is that it works for any prime ... See full document
121
ON AN EXTENSION OF KUMMER-TYPE II TRANSFORMATION
... of Kummer type I transformation (2) obtained by Paris [7], recently Rathie and Pogany [12] have given the following interesting extension of Kummer type II transformation in the ... See full document
6
Approximation of Analytic Functions by Kummer Functions
... In the following theorem, we will prove a local Hyers-Ulam stability of the Kummer’s equation under some additional conditions. More precisely, if an analytic function satisfies some conditions given in the following ... See full document
11
Connecting Legendre with Kummer and Edwards
... [15] Sabyasachi Karati and Palash Sarkar. Kummer for genus one over prime order fields. In Tsuyoshi Takagi and Thomas Peyrin, editors, Advances in Cryptology - ASIACRYPT 2017 - 23rd International Conference on the ... See full document
25
Related subjects