RUHR-UNIVERSITÄT BOCHUM
Attacks on Lattice Crypto December 7th, 2016
FluxFingers Workgroup Symmetric Cryptography Ruhr University Bochum Friedrich Wiemer
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 1
Attacks on Lattice Crypto December 7th, 2016 FluxFingers Workgroup - - PowerPoint PPT Presentation
RUHR-UNIVERSITT BOCHUM Attacks on Lattice Crypto December 7th, 2016 FluxFingers Workgroup Symmetric Cryptography Ruhr University Bochum Friedrich Wiemer Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 1 RUHR-UNIVERSITT
RUHR-UNIVERSITÄT BOCHUM
FluxFingers Workgroup Symmetric Cryptography Ruhr University Bochum Friedrich Wiemer
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 1
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 2
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 2
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 2
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 2
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 3
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 4
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 4
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 4
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 4
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 4
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 5
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 5
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 5
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 7
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 7
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 8
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 9
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 9
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 9
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 10
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 10
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 11
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 11
RUHR-UNIVERSITÄT BOCHUM
1Thanks to Elena for the nice pictures.
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 12
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 12
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 12
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 13
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 14
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 14
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 14
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 15
RUHR-UNIVERSITÄT BOCHUM
b1 b2 t
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 16
RUHR-UNIVERSITÄT BOCHUM
b1 b2 t t3 t2 t1 e1
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 16
RUHR-UNIVERSITÄT BOCHUM
b1 b2 t t3 t2 t1
ei R
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 16
RUHR-UNIVERSITÄT BOCHUM
b1 b2 t t3 t2 t1
ei R
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 16
RUHR-UNIVERSITÄT BOCHUM
b1 b2 t t3 t2 t1
ei R ej R′
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 16
RUHR-UNIVERSITÄT BOCHUM
b1 b2 t
ei R ej R′
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 16
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 17
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 17
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 18
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 18
RUHR-UNIVERSITÄT BOCHUM
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 18
RUHR-UNIVERSITÄT BOCHUM
Mainboard & Questionmark Images: flickr
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 19
RUHR-UNIVERSITÄT BOCHUM
[Alk+16]
. Schwabe. “Post-quantum Key Exchange - A New Hope”. In: USENIX Security Symposium. USENIX Association, 2016, pp. 327–343. [Bab86]
Combinatorica 6.1 (1986), pp. 1–13. [ES16]
. W. Shor. “An Efficient Quantum Algorithm for a Variant of the Closest Lattice-Vector Problem”. In: arXiv Preprint Archive (2016). URL:
[Fac16]
[Gal]
URL: https://www.math.auckland.ac.nz/~sgal018/compact-LWE.pdf.
[GNR10]
. Q. Nguyen, and O. Regev. “Lattice Enumeration Using Extreme Pruning”. In:
[Gooa]
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 20
RUHR-UNIVERSITÄT BOCHUM
[Goob]
[KF15] P . Kirchner and P . Fouque. “An Improved BKW Algorithm for LWE with Applications to Cryptography and Lattices”. In: CRYPTO (1). Vol. 9215. Lecture Notes in Computer
[KM15]
Archive 2015 (2015), p. 1018. [KMW16]
. Wiemer. “Parallel Implementation of BDD Enumeration for LWE”. In: ACNS. Vol. 9696. Lecture Notes in Computer Science. Springer, 2016,
[LP11]
CT-RSA. Vol. 6558. Lecture Notes in Computer Science. Springer, 2011, pp. 319–339. [Reg]
Friedrich Wiemer | Attacks on Lattice Crypto | December 7th, 2016 21