Passer à la navigation principale Passer à la recherche Passer au contenu principal

Mitaka: A Simpler, Parallelizable, Maskable Variant of Falcon

  • Thomas Espitau
  • , Pierre Alain Fouque
  • , François Gérard
  • , Mélissa Rossi
  • , Akira Takahashi
  • , Mehdi Tibouchi
  • , Alexandre Wallet
  • , Yang Yu

Résultats de recherche: Le chapitre dans un livre, un rapport, une anthologie ou une collectionContribution à une conférenceRevue par des pairs

Résumé

This work describes the Mitaka signature scheme: a new hash-and-sign signature scheme over NTRU lattices which can be seen as a variant of NIST finalist Falcon. It achieves comparable efficiency but is considerably simpler, online/offline, and easier to parallelize and protect against side-channels, thus offering significant advantages from an implementation standpoint. It is also much more versatile in terms of parameter selection. We obtain this signature scheme by replacing the FFO lattice Gaussian sampler in Falcon by the “hybrid” sampler of Ducas and Prest, for which we carry out a detailed and corrected security analysis. In principle, such a change can result in a substantial security loss, but we show that this loss can be largely mitigated using new techniques in key generation that allow us to construct much higher quality lattice trapdoors for the hybrid sampler relatively cheaply. This new approach can also be instantiated on a wide variety of base fields, in contrast with Falcon’s restriction to power-of-two cyclotomics. We also introduce a new lattice Gaussian sampler with the same quality and efficiency, but which is moreover compatible with the integral matrix Gram root technique of Ducas et al., allowing us to avoid floating point arithmetic. This makes it possible to realize the same signature scheme as Mitaka efficiently on platforms with poor support for floating point numbers. Finally, we describe a provably secure masking of Mitaka. More precisely, we introduce novel gadgets that allow provable masking at any order at much lower cost than previous masking techniques for Gaussian sampling-based signature schemes, for cheap and dependable side-channel protection.

langue originaleAnglais
titreAdvances in Cryptology – EUROCRYPT 2022 - 41st Annual International Conference on the Theory and Applications of Cryptographic Techniques, 2022, Proceedings
rédacteurs en chefOrr Dunkelman, Stefan Dziembowski
EditeurSpringer Science and Business Media Deutschland GmbH
Pages222-253
Nombre de pages32
ISBN (imprimé)9783031070815
Les DOIs
étatPublié - 1 janv. 2022
Modification externeOui
Evénement41st Annual International Conference on the Theory and Applications of Cryptographic Techniques, EUROCRYPT 2022 - Trondheim, Norvcge
Durée: 30 mai 20223 juin 2022

Série de publications

NomLecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
Volume13277 LNCS
ISSN (imprimé)0302-9743
ISSN (Electronique)1611-3349

Une conférence

Une conférence41st Annual International Conference on the Theory and Applications of Cryptographic Techniques, EUROCRYPT 2022
Pays/TerritoireNorvcge
La villeTrondheim
période30/05/223/06/22

Empreinte digitale

Examiner les sujets de recherche de « Mitaka: A Simpler, Parallelizable, Maskable Variant of Falcon ». Ensemble, ils forment une empreinte digitale unique.

Contient cette citation