Foundations of Lattice Cryptography
Daniele Micciancio
Department of Computer Science and Engineering University of California, San Diego
August 12-16, 2013, (UCI)
Daniele Micciancio Foundations of Lattice Cryptography
Foundations of Lattice Cryptography Daniele Micciancio Department - - PowerPoint PPT Presentation
Foundations of Lattice Cryptography Daniele Micciancio Department of Computer Science and Engineering University of California, San Diego August 12-16, 2013, (UCI) Daniele Micciancio Foundations of Lattice Cryptography This Talk Introduction
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
b1 b2 c1 c2 Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
N, and compute x′ =
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
λ1 λ2 Daniele Micciancio Foundations of Lattice Cryptography
t µ
Daniele Micciancio Foundations of Lattice Cryptography
1 µ ≈ λn (up to √n factors) 2 For some lattices λ1 ≪ λ2 ≪ . . . ≪ λn 3 For some lattices λ1 = λ2 = . . . = λn and 2µ = √nλn 4 For some lattices λ1 = λ2 = . . . = λn and µ ≤ 2λn
Daniele Micciancio Foundations of Lattice Cryptography
2λ1 b1 b2 λ1 Bx = 5b1 − 2b2 Daniele Micciancio Foundations of Lattice Cryptography
2λ2 b1 b2 Bx1 λ2 Bx2 Daniele Micciancio Foundations of Lattice Cryptography
t µ 2µ b1 b2 Bx Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
N
N is uniformly random and Cube(x′) = y ′
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
1 Can we do better that LLL? 2 Can lattice algorithms take advantage of lattice symmetries? Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography
Daniele Micciancio Foundations of Lattice Cryptography