-
arXiv:2506.06547 [pdf, ps, other]
The complexity of the SupportMinors Modeling for the MinRank Problem
Abstract: In this note, we provide proven estimates for the complexity of the SupportMinors Modeling, mostly confirming the heuristic complexity estimates contained in the original article.
Submitted 6 June, 2025; originally announced June 2025.
-
arXiv:2503.03010 [pdf, ps, other]
Latroids and code invariants
Abstract: Latroids were introduced by Vertigan, who associated a latroid to a linear block code and showed that its Tutte polynomial determines the weight enumerator of the code. We associate a latroid to a code over a ring or a field endowed with a general support function, and show that the generalized weights of the code can be recovered from the associated latroid. This provides a uniform framework for… ▽ More
Submitted 4 March, 2025; originally announced March 2025.
-
arXiv:2309.03855 [pdf, ps, other]
The complexity of solving a random polynomial system
Abstract: A multivariate cryptograpic instance in practice is a multivariate polynomial system. So the security of a protocol rely on the complexity of solving a multivariate polynomial system. In this paper there is an overview on a general algorithm used to solve a multivariate system and the quantity to which the complexity of this algorithm depends on: the solving degree. Unfortunately, it is hard to co… ▽ More
Submitted 18 November, 2024; v1 submitted 7 September, 2023; originally announced September 2023.
-
arXiv:2307.06595 [pdf, ps, other]
Integer sequences that are generalized weights of a linear code
Abstract: Which integer sequences are sequences of generalized weights of a linear code? In this paper, we answer this question for linear block codes, rank-metric codes, and more generally for sum-rank metric codes. We do so under an existence assumption for MDS and MSRD codes. We also prove that the same integer sequences appear as sequences of greedy weights of linear block codes, rank-metric codes, and… ▽ More
Submitted 13 July, 2023; originally announced July 2023.
Comments: 19 pages
-
arXiv:2304.13341 [pdf, ps, other]
MacWilliams' Extension Theorem for rank-metric codes
Abstract: The MacWilliams' Extension Theorem is a classical result by Florence Jessie MacWilliams. It shows that every linear isometry between linear block-codes endowed with the Hamming distance can be extended to a linear isometry of the ambient space. Such an extension fails to exist in general for rank-metric codes, that is, one can easily find examples of linear isometries between rank-metric codes whi… ▽ More
Submitted 26 April, 2023; originally announced April 2023.
Comments: 12 pages
MSC Class: 94B05 (Primary) 15A03 (Secondary)
-
Sum-rank metric codes
Abstract: Sum-rank metric codes are a natural extension of both linear block codes and rank-metric codes. They have several applications in information theory, including multishot network coding and distributed storage systems. The aim of this chapter is to present the mathematical theory of sum-rank metric codes, paying special attention to the $\mathbb{F}_q$-linear case in which different sizes of matrice… ▽ More
Submitted 24 April, 2023; originally announced April 2023.
-
arXiv:2212.12265 [pdf, ps, other]
Generalized column distances
Abstract: We define a notion of r-generalized column distances for the j-truncation of a convolutional code. Taking the limit as j tends to infinity allows us to define r-generalized column distances of a convolutional code. We establish some properties of these invariants and compare them with other invariants of convolutional codes which appear in the literature.
Submitted 23 December, 2022; originally announced December 2022.
Comments: 13 pages, submitted
-
arXiv:2207.12170 [pdf, ps, other]
Generalized weights of convolutional codes
Abstract: In 1997 Rosenthal and York defined generalized Hamming weights for convolutional codes, by regarding a convolutional code as an infinite dimensional linear code endowed with the Hamming metric. In this paper, we propose a new definition of generalized weights of convolutional codes, that takes into account the underlying module structure of the code. We derive the basic properties of our generaliz… ▽ More
Submitted 25 July, 2022; originally announced July 2022.
-
arXiv:2201.07579 [pdf, ps, other]
Quasi optimal anticodes: structure and invariants
Abstract: It is well-known that the dimension of optimal anticodes in the rank-metric is divisible by the maximum m between the number of rows and columns of the matrices. Moreover, for a fixed k divisible by m, optimal rank-metric anticodes are the codes with least maximum rank, among those of dimension k. In this paper, we study the family of rank-metric codes whose dimension is not divisible by m and who… ▽ More
Submitted 19 January, 2022; originally announced January 2022.
-
arXiv:2201.05813 [pdf, ps, other]
Generalized weights of codes over rings and invariants of monomial ideals
Abstract: We develop an algebraic theory of supports for $R$-linear codes of fixed length, where $R$ is a finite commutative unitary ring. A support naturally induces a notion of generalized weights and allows one to associate a monomial ideal to a code. Our main result states that, under suitable assumptions, the generalized weights of a code can be obtained from the graded Betti numbers of its associated… ▽ More
Submitted 15 January, 2022; originally announced January 2022.
-
arXiv:2112.10506 [pdf, ps, other]
The complexity of solving Weil restriction systems
Abstract: The solving degree of a system of multivariate polynomial equations provides an upper bound for the complexity of computing the solutions of the system via Groebner bases methods. In this paper, we consider polynomial systems that are obtained via Weil restriction of scalars. The latter is an arithmetic construction which, given a finite Galois field extension $k\hookrightarrow K$, associates to a… ▽ More
Submitted 3 February, 2023; v1 submitted 20 December, 2021; originally announced December 2021.
Comments: Final version. To appear in Journal of Algebra
-
arXiv:2112.05579 [pdf, ps, other]
Solving degree, last fall degree, and related invariants
Abstract: In this paper we study and relate several invariants connected to the solving degree of a polynomial system. This provides a rigorous framework for estimating the complexity of solving a system of polynomial equations via Groebner bases methods. Our main results include a connection between the solving degree and the last fall degree and one between the degree of regularity and the Castelnuovo-Mum… ▽ More
Submitted 1 June, 2022; v1 submitted 10 December, 2021; originally announced December 2021.
Comments: Final version. To appear in Journal of Symbolic Computation
-
Optimal anticodes, MSRD codes, and generalized weights in the sum-rank metric
Abstract: Sum-rank metric codes have recently attracted the attention of many researchers, due to their relevance in several applications. Mathematically, the sum-rank metric is a natural generalization of both the Hamming metric and the rank metric. In this paper, we provide an Anticode Bound for the sum-rank metric, which extends the corresponding Hamming and rank-metric Anticode bounds. We classify then… ▽ More
Submitted 21 December, 2021; v1 submitted 28 July, 2021; originally announced July 2021.
-
Stronger bounds on the cost of computing Groebner bases for HFE systems
Abstract: We give upper bounds for the solving degree and the last fall degree of the polynomial system associated to the HFE (Hidden Field Equations) cryptosystem. Our bounds improve the known bounds for this type of systems. We also present new results on the connection between the solving degree and the last fall degree and prove that, in some cases, the solving degree is independent of coordinate change… ▽ More
Submitted 2 November, 2020; originally announced November 2020.
Comments: 15 pages
-
arXiv:2011.01032 [pdf, ps, other]
Semi-regular sequences and other random systems of equations
Abstract: The security of multivariate cryptosystems and digital signature schemes relies on the hardness of solving a system of polynomial equations over a finite field. Polynomial system solving is also currently a bottleneck of index-calculus algorithms to solve the elliptic and hyperelliptic curve discrete logarithm problem. The complexity of solving a system of polynomial equations is closely related t… ▽ More
Submitted 2 November, 2020; originally announced November 2020.
Comments: 27 pages, 4 tables
MSC Class: Primary: 94A60; 13P10; 13P15; 13P25; Secondary: 13D40
-
arXiv:1905.02682 [pdf, ps, other]
The complexity of MinRank
Abstract: In this note, we leverage some of our results from arXiv:1706.06319 to produce a concise and rigorous proof for the complexity of the generalized MinRank Problem in the under-defined and well-defined case. Our main theorem recovers and extends previous results by Faugère, Safey El Din, Spaenlehauer (arXiv:1112.4411).
Submitted 10 March, 2022; v1 submitted 6 May, 2019; originally announced May 2019.
Comments: Final version. Theorem numbering adjusted to match the published version
MSC Class: 94A60; 13P10; 13P15; 13C40; 13P25
Journal ref: Women in Numbers Europe III. Association for Women in Mathematics Series, vol 24, pp. 163-169, Springer, Cham, 2021
-
arXiv:1902.02650 [pdf, ps, other]
Rank-metric codes
Abstract: This is a chapter of the upcoming "A Concise Encyclopedia of Coding Theory", W.C. Huffman, J.-L. Kim, and P. Sole' Eds., CRC Press. The chapter gives an introduction to the mathematical theory of rank-metric codes. Treated topics include: definition of rank metric, equivalence of codes, support of a codeword and of a code, duality, weight enumerators and MacWilliams identities, higher rank weights… ▽ More
Submitted 7 February, 2019; originally announced February 2019.
Comments: 26 pages, to appear in "A Concise Encyclopedia of Coding Theory", W.C. Huffman, J.-L. Kim, and P. Sole' Eds., CRC Press
Report number: ICERM-Fall2018
-
arXiv:1803.10844 [pdf, ps, other]
Rank-Metric Codes and $q$-Polymatroids
Abstract: This paper contributes to the study of rank-metric codes from an algebraic and combinatorial point of view. We introduce $q$-polymatroids, the $q$-analogue of polymatroids, and develop their basic properties. We associate a pair of q-polymatroids to a rank-metric codes and show that several invariants and structural properties of the code, such as generalized weights, the property of being MRD or… ▽ More
Submitted 5 September, 2019; v1 submitted 28 March, 2018; originally announced March 2018.
Comments: Previous version has a typo in M_2 in Example 2.5
Journal ref: Journal of Algebraic Combinatorics (2019)
-
arXiv:1710.02067 [pdf, ps, other]
Codes Endowed With the Rank Metric
Abstract: We review the main results of the theory of rank-metric codes, with emphasis on their combinatorial properties. We study their duality theory and MacWilliams identities, comparing in particular rank-metric codes in vector and matrix representation. We then investigate the combinatorial structure of MRD codes and optimal anticodes in the rank metric, describing how they relate to each other.
Submitted 5 October, 2017; originally announced October 2017.
-
arXiv:1709.04178 [pdf, ps, other]
Scalar multiplication in compressed coordinates in the trace-zero subgroup
Abstract: We consider trace-zero subgroups of elliptic curves over a degree three field extension. The elements of these groups can be represented in compressed coordinates, i.e. via the two coefficients of the line that passes through the point and its two Frobenius conjugates. In this paper we give the first algorithm to compute scalar multiplication in the degree three trace-zero subgroup using these coo… ▽ More
Submitted 13 September, 2017; originally announced September 2017.
Comments: 23 pages
-
arXiv:1706.06319 [pdf, ps, other]
Solving multivariate polynomial systems and an invariant from commutative algebra
Abstract: The complexity of computing the solutions of a system of multivariate polynomial equations by means of Groebner bases computations is upper bounded by a function of the solving degree. In this paper, we discuss how to rigorously estimate the solving degree of a system, focusing on systems arising within public-key cryptography. In particular, we show that it is upper bounded by, and often equal to… ▽ More
Submitted 21 September, 2022; v1 submitted 20 June, 2017; originally announced June 2017.
Comments: Final version. Theorem numbering adjusted to match the published version
MSC Class: 94A60; 13P10; 13P15; 13P25; 68W40
Journal ref: Lecture Notes in Computer Science, 2021, 12542 LNCS, pp. 3-36
-
arXiv:1611.04226 [pdf, ps, other]
An algebraic framework for end-to-end physical-layer network coding
Abstract: We propose an algebraic setup for end-to-end physical-layer network coding based on submodule transmission. We introduce a distance function between modules, describe how it relates to information loss and errors, and show how to compute it. Then we propose a definition of submodule error-correcting code, and investigate bounds and constructions for such codes.
Submitted 13 November, 2016; originally announced November 2016.
-
arXiv:1510.01008 [pdf, ps, other]
Rank distribution of Delsarte codes
Abstract: In analogy with the Singleton defect for classical codes, we propose a definition of rank defect for Delsarte rank-metric codes. We characterize codes whose rank defect and dual rank defect are both zero, and prove that the rank distribution of such codes is determined by their parameters. This extends a result by Delsarte on the rank distribution of MRD codes. In the general case of codes of posi… ▽ More
Submitted 4 October, 2015; originally announced October 2015.
MSC Class: 2010: 94B60; 94C99; 68P30
Journal ref: Designs, Codes and Cryptography, 86 (2018), no. 1, 1-16
-
arXiv:1507.08555 [pdf, ps, other]
Compression for trace zero points on twisted Edwards curves
Abstract: We propose two optimal representations for the elements of trace zero subgroups of twisted Edwards curves. For both representations, we provide efficient compression and decompression algorithms. The efficiency of the algorithm is compared with the efficiency of similar algorithms on elliptic curves in Weierstrass form.
Submitted 27 July, 2015; originally announced July 2015.
-
arXiv:1507.01728 [pdf, ps, other]
Equidistant subspace codes
Abstract: In this paper we study equidistant subspace codes, i.e. subspace codes with the property that each two distinct codewords have the same distance. We provide an almost complete classification of such codes under the assumption that the cardinality of the ground field is large enough. More precisely, we prove that for most values of the parameters, an equidistant code of maximum cardinality is eithe… ▽ More
Submitted 7 July, 2015; originally announced July 2015.
MSC Class: 11T71; 14G50; 94B60; 51E23; 15A21
-
arXiv:1405.2736 [pdf, ps, other]
Subspace codes from Ferrers diagrams
Abstract: In this paper we give new constructions of Ferrer diagram rank metric codes, which achieve the largest possible dimension. In particular, we prove several cases of a conjecture by T. Etzion and N. Silberstein. We also establish a sharp lower bound on the dimension of linear rank metric anticodes with a given profile. Combining our results with the multilevel construction, we produce examples of su… ▽ More
Submitted 13 June, 2014; v1 submitted 12 May, 2014; originally announced May 2014.
Comments: minor edits
-
arXiv:1405.2733 [pdf, ps, other]
An optimal representation for the trace zero subgroup
Abstract: We give an optimal-size representation for the elements of the trace zero subgroup of the Picard group of an elliptic or hyperelliptic curve of any genus, with respect to a field extension of any prime degree. The representation is via the coefficients of a rational function, and it is compatible with scalar multiplication of points. We provide efficient compression and decompression algorithms, a… ▽ More
Submitted 15 June, 2016; v1 submitted 12 May, 2014; originally announced May 2014.
Comments: submitted
MSC Class: primary: 14G50; 11G25; 14H52; secondary: 11T71; 14K15
-
arXiv:1405.1059 [pdf, ps, other]
Index Calculus in the Trace Zero Variety
Abstract: We discuss how to apply Gaudry's index calculus algorithm for abelian varieties to solve the discrete logarithm problem in the trace zero variety of an elliptic curve. We treat in particular the practically relevant cases of field extensions of degree 3 or 5. Our theoretical analysis is compared to other algorithms present in the literature, and is complemented by results from a prototype implemen… ▽ More
Submitted 23 February, 2015; v1 submitted 5 May, 2014; originally announced May 2014.
Comments: 20 pages
MSC Class: primary: 14G50; 11G25; 11Y40; secondary: 11T71; 14K15; 14H52
-
arXiv:1403.7920 [pdf, ps, other]
Computing the dimension of ideals in group algebras, with an application to coding theory
Abstract: The problem of computing the dimension of a left/right ideal in a group algebra F[G] of a finite group G over a field F is considered. The ideal dimension is related to the rank of a matrix originating from a regular left/right representation of G; in particular, when F[G] is semisimple, the dimension of a principal ideal is equal to the rank of the matrix representing a generator. From this obser… ▽ More
Submitted 6 September, 2019; v1 submitted 31 March, 2014; originally announced March 2014.
Comments: 13 pages, submitted
-
arXiv:1403.0126 [pdf, ps, other]
Point compression for the trace zero subgroup over a small degree extension field
Abstract: Using Semaev's summation polynomials, we derive a new equation for the $\mathbb{F}_q$-rational points of the trace zero variety of an elliptic curve defined over $\mathbb{F}_q$. Using this equation, we produce an optimal-size representation for such points. Our representation is compatible with scalar multiplication. We give a point compression algorithm to compute the representation and a decompr… ▽ More
Submitted 1 March, 2014; originally announced March 2014.
Comments: 23 pages, to appear in Designs, Codes and Cryptography
MSC Class: 14G50; 11G25; 14H52; 11T71; 14K15
-
arXiv:1306.5609 [pdf, ps, other]
Partial Spreads in Random Network Coding
Abstract: Following the approach by R. Kötter and F. R. Kschischang, we study network codes as families of k-dimensional linear subspaces of a vector space F_q^n, q being a prime power and F_q the finite field with q elements. In particular, following an idea in finite projective geometry, we introduce a class of network codes which we call "partial spread codes". Partial spread codes naturally generalize s… ▽ More
Submitted 24 June, 2013; originally announced June 2013.
MSC Class: 11T71
-
arXiv:1107.5523 [pdf, ps, other]
An Algebraic Approach for Decoding Spread Codes
Abstract: In this paper we study spread codes: a family of constant-dimension codes for random linear network coding. In other words, the codewords are full-rank matrices of size (k x n) with entries in a finite field F_q. Spread codes are a family of optimal codes with maximal minimum distance. We give a minimum-distance decoding algorithm which requires O((n-k)k^3) operations over an extension field F_{q^… ▽ More
Submitted 6 June, 2012; v1 submitted 27 July, 2011; originally announced July 2011.
-
arXiv:0805.0507 [pdf, ps, other]
Spread Codes and Spread Decoding in Network Coding
Abstract: In this paper we introduce the class of Spread Codes for the use in random network coding. Spread Codes are based on the construction of spreads in finite projective geometry. The major contribution of the paper is an efficient decoding algorithm of spread codes up to half the minimum distance.
Submitted 21 May, 2008; v1 submitted 5 May, 2008; originally announced May 2008.
Journal ref: Proceedings of the 2008 IEEE International Symposium on Information Theory, Toronto, ON, Canada, July 6 - 11, 2008
-
arXiv:0708.3022 [pdf, ps, other]
Efficient FPGA-based multipliers for F_{3^97} and F_{3^{6*97}}
Abstract: In this work we present a new structure for multiplication in finite fields. This structure is based on a digit-level LFSR (Linear Feedback Shift Register) multiplier in which the area of digit-multipliers are reduced using the Karatsuba method. We compare our results with the other works in the literature for F_{3^97}. We also propose new formulas for multiplication in F_{3^{6*97}}. These new f… ▽ More
Submitted 22 August, 2007; originally announced August 2007.
Comments: 6 pages, 3 figures, to appear in the proceedings of FPL07
-
arXiv:0708.3014 [pdf, ps, other]
Explicit formulas for efficient multiplication in F_{3^{6m}}
Abstract: Efficient computation of the Tate pairing is an important part of pairing-based cryptography. Recently with the introduction of the Duursma-Lee method special attention has been given to the fields of characteristic 3. Especially multiplication in F_{3^{6m}}, where m is prime, is an important operation in the above method. In this paper we propose a new method to reduce the number of F_{3^m} mul… ▽ More
Submitted 22 August, 2007; originally announced August 2007.
Comments: 11 pages, to appear in the proceedings of SAC2007
-
arXiv:cs/0602037 [pdf, ps, other]
Cryptanalysis of the CFVZ cryptosystem
Abstract: The paper analyzes a new public key cryptosystem whose security is based on a matrix version of the discrete logarithm problem over an elliptic curve. It is shown that the complexity of solving the underlying problem for the proposed system is dominated by the complexity of solving a fixed number of discrete logarithm problems in the group of an elliptic curve. Using an adapted Pollard rho algor… ▽ More
Submitted 10 February, 2006; originally announced February 2006.
Comments: 12 pages