Skip to main content

Showing 1–5 of 5 results for author: Galbraith, S D

Searching in archive math. Search in all archives.
.
  1. arXiv:2205.00135  [pdf, other

    math.NT cs.CR

    Failing to hash into supersingular isogeny graphs

    Authors: Jeremy Booher, Ross Bowden, Javad Doliskani, Tako Boris Fouotsa, Steven D. Galbraith, Sabrina Kunzweiler, Simon-Philipp Merz, Christophe Petit, Benjamin Smith, Katherine E. Stange, Yan Bo Ti, Christelle Vincent, José Felipe Voloch, Charlotte Weitkämper, Lukas Zobernig

    Abstract: An important open problem in supersingular isogeny-based cryptography is to produce, without a trusted authority, concrete examples of "hard supersingular curves" that is, equations for supersingular curves for which computing the endomorphism ring is as difficult as it is for random supersingular curves. A related open problem is to produce a hash function to the vertices of the supersingular… ▽ More

    Submitted 8 May, 2024; v1 submitted 29 April, 2022; originally announced May 2022.

    Comments: 34 pages, 8 figures

    MSC Class: 11G05; 11T71; 14G50; 14K02; 81P94; 94A60; 68Q12

  2. arXiv:1310.7789  [pdf, ps, other

    math.NT

    Computing isogenies between supersingular elliptic curves over F_p

    Authors: Christina Delfs, Steven D. Galbraith

    Abstract: Let p>3 be a prime and let E, E' be supersingular elliptic curves over F_p. We want to construct an isogeny phi: E --> E'. The currently fastest algorithm for finding isogenies between supersingular elliptic curves solves this problem by performing a "meet-in-the-middle" breadth-first search in the full supersingular 2-isogeny graph over F_{p^2}. In this paper we consider the structure of the isog… ▽ More

    Submitted 29 October, 2013; originally announced October 2013.

  3. Constructing supersingular elliptic curves with a given endomorphism ring

    Authors: Ilya Chevyrev, Steven D. Galbraith

    Abstract: Let O be a maximal order in the quaternion algebra B_p over Q ramified at p and infinity. The paper is about the computational problem: Construct a supersingular elliptic curve E over F_p such that End(E) = O. We present an algorithm that solves this problem by taking gcds of the reductions modulo p of Hilbert class polynomials. New theoretical results are required to determine the complexity of o… ▽ More

    Submitted 23 October, 2014; v1 submitted 29 January, 2013; originally announced January 2013.

    Comments: Full version of paper published by the LMS Journal of Computation and Mathematics

    MSC Class: 11G20 (Primary); 11E20; 11H55; 11R52; 14G15 (Secondary)

    Journal ref: LMS J. Comput. Math. (2014), Vol. 17, suppl. A, 71-91

  4. arXiv:math/0611471  [pdf, ps, other

    math.NT

    Distortion maps for genus two curves

    Authors: Steven D. Galbraith, Jordi Pujolàs, Christophe Ritzenthaler, Benjamin Smith

    Abstract: Distortion maps are a useful tool for pairing based cryptography. Compared with elliptic curves, the case of hyperelliptic curves of genus g > 1 is more complicated since the full torsion subgroup has rank 2g. In this paper we prove that distortion maps always exist for supersingular curves of genus g>1 and we construct distortion maps in genus 2 (for embedding degrees 4,5,6 and 12).

    Submitted 15 November, 2006; originally announced November 2006.

    Comments: 16 pages

    MSC Class: 11G20

  5. arXiv:math/0610073  [pdf, ps, other

    math.NT

    Discrete Logarithms in Generalized Jacobians

    Authors: S. D. Galbraith, B. A. Smith

    Abstract: Déchène has proposed generalized Jacobians as a source of groups for public-key cryptosystems based on the hardness of the Discrete Logarithm Problem (DLP). Her specific proposal gives rise to a group isomorphic to the semidirect product of an elliptic curve and a multiplicative group of a finite field. We explain why her proposal has no advantages over simply taking the direct product of groups… ▽ More

    Submitted 2 October, 2006; originally announced October 2006.

    MSC Class: 14G50 11G20 11T71