Algebraically Structured LWE, Revisited Chris Peikert Zachary Pepin University of Michigan
TCC 2019
1 / 13
Algebraically Structured LWE, Revisited Chris Peikert Zachary Pepin - - PowerPoint PPT Presentation
Algebraically Structured LWE, Revisited Chris Peikert Zachary Pepin University of Michigan TCC 2019 1 / 13 Algebraic Learning With Errors A foundation of efficient lattice crypto: Ring-LWE, Module-LWE, Polynomial-LWE, Order-LWE,
1 / 13
2 / 13
2 / 13
2 / 13
2 / 13
⋆ Several steps between problems of interest ⋆ Complex analysis and parameters ⋆ Frequently large blowup and distortion of error distributions,
⋆ Sometimes non-uniform advice that appears hard to compute 2 / 13
3 / 13
3 / 13
3 / 13
3 / 13
4 / 13
4 / 13
4 / 13
⋆ All have easy-to-analyze effects on the error distribution ⋆ Some are even error preserving 4 / 13
⋆ All have easy-to-analyze effects on the error distribution ⋆ Some are even error preserving
4 / 13
⋆ All have easy-to-analyze effects on the error distribution ⋆ Some are even error preserving
4 / 13
5 / 13
5 / 13
5 / 13
6 / 13
6 / 13
6 / 13
6 / 13
7 / 13
7 / 13
7 / 13
7 / 13
7 / 13
7 / 13
8 / 13
8 / 13
8 / 13
8 / 13
8 / 13
8 / 13
9 / 13
9 / 13
9 / 13
9 / 13
10 / 13
10 / 13
10 / 13
10 / 13
11 / 13
n − 1
n − 2
n − 1
n
n + d − 2 11 / 13
n − 1
n − 2
n − 1
n
n + d − 2
11 / 13
n − 1
n − 2
n − 1
n
n + d − 2
11 / 13
n − 1
n − 2
n − 1
n
n + d − 2
11 / 13
n − 1
n − 2
n − 1
n
n + d − 2
11 / 13
12 / 13
12 / 13
12 / 13
12 / 13
13 / 13
13 / 13
13 / 13
13 / 13