Logo image
Estimate All the {LWE, NTRU} Schemes!
Conference proceeding   Peer reviewed

Estimate All the {LWE, NTRU} Schemes!

Martin R. Albrecht, Benjamin R. Curtis, Amit Deo, Alex Davidson, Rachel Player, Eamonn W. Postlethwaite, Fernando Virdia and Thomas Wunderer
SECURITY AND CRYPTOGRAPHY FOR NETWORKS, SCN 2018, Vol.11035, pp.351-367
Lecture Notes in Computer Science
01/01/2018

Abstract

Computer Science Computer Science, Theory & Methods Engineering Engineering, Electrical & Electronic Science & Technology Technology
We consider all LWE- and NTRU-based encryption, key encapsulation, and digital signature schemes proposed for standardisation as part of the Post-Quantum Cryptography process run by the US National Institute of Standards and Technology (NIST). In particular, we investigate the impact that different estimates for the asymptotic runtime of (block-wise) lattice reduction have on the predicted security of these schemes. Relying on the "LWE estimator" of Albrecht et al., we estimate the cost of running primal and dual lattice attacks against every LWE-based scheme, using every cost model proposed as part of a submission. Furthermore, we estimate the security of the proposed NTRU-based schemes against the primal attack under all cost models for lattice reduction.

Metrics

1 Record Views

Details

Logo image

Usage Policy