Passer à la navigation principale Passer à la recherche Passer au contenu principal

Discrete Gaussian Sampling for BKZ-Reduced Basis

  • IRISA

Résultats de recherche: Le chapitre dans un livre, un rapport, une anthologie ou une collectionContribution à une conférenceRevue par des pairs

Résumé

Discrete Gaussian sampling on lattices is a fundamental problem in lattice-based cryptography . In this paper, we revisit the Markov chain Monte Carlo (MCMC)-based Metropolis-Hastings-Klein (MHK) algorithm proposed by Wang and Ling and study its complexity under the Geometric Series Assumption (GSA) when the given basis is BKZ-reduced . We give experimental evidence that the GSA is accurate in this context, and we give a very simple approximate formula for the complexity of the sampler that is accurate over a large range of parameters and easily computable. We apply our results to the dual attack on LWE of [24] and significantly improve the complexity estimates of the attack. Finally, we provide some results of independent interest on the Gaussian mass of a random q-ary lattices.

langue originaleAnglais
titrePost-Quantum Cryptography - 16th International Workshop, PQCrypto 2025, Proceedings
rédacteurs en chefRuben Niederhagen, Markku-Juhani O. Saarinen
EditeurSpringer Science and Business Media Deutschland GmbH
Pages63-88
Nombre de pages26
ISBN (imprimé)9783031866012
Les DOIs
étatPublié - 1 janv. 2025
Evénement16th International Workshop on Post-Quantum Cryptography, PQCrypto 2025 - Taipei, Taiwan
Durée: 8 avr. 202510 avr. 2025

Série de publications

NomLecture Notes in Computer Science
Volume15578 LNCS
ISSN (imprimé)0302-9743
ISSN (Electronique)1611-3349

Une conférence

Une conférence16th International Workshop on Post-Quantum Cryptography, PQCrypto 2025
Pays/TerritoireTaiwan
La villeTaipei
période8/04/2510/04/25

Empreinte digitale

Examiner les sujets de recherche de « Discrete Gaussian Sampling for BKZ-Reduced Basis ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation