00:00:00 / 00:00:00

An efficient break of the supersingular isogeny Diffie-Hellman protocol

De Wouter Castryck

Apparaît dans la collection : AGCT - Arithmetic, Geometry, Cryptography and Coding Theory / AGCT - Arithmétique, géométrie, cryptographie et théorie des codes 2023

Finding an explicit isogeny between two given isogenous elliptic curves over a finite field is considered a hard problem, even for quantum computers. In 2011 this led Jao and De Feo to propose a key exchange protocol that became known as SIDH, shorthand for Supersingular Isogeny Diÿe-Hellman. The security of SIDH does not rely on a pure isogeny problem, due to certain 'auxiliary' elliptic curve points that are exchanged during the protocol (for constructive reasons). In this talk I will discuss a break of SIDH that was discovered in collaboration with Thomas Decru. The attack uses isogenies between abelian surfaces and exploits the aforementioned auxiliary points, so it does not break the pure isogeny problem. I will also discuss improvements of this attack due to Maino et al. and Robert, as well as a countermeasure by Fouotsa et al., along with breaks of this countermeasure in some special cases.

Informations sur la vidéo

Données de citation

  • DOI 10.24350/CIRM.V.20055403
  • Citer cette vidéo Castryck, Wouter (05/06/2023). An efficient break of the supersingular isogeny Diffie-Hellman protocol. CIRM. Audiovisual resource. DOI: 10.24350/CIRM.V.20055403
  • URL https://dx.doi.org/10.24350/CIRM.V.20055403

Bibliographie

  • CASTRYCK, Wouter et DECRU, Thomas. An efficient key recovery attack on SIDH. In : Annual International Conference on the Theory and Applications of Cryptographic Techniques. Cham : Springer Nature Switzerland, 2023. p. 423-447. - http://dx.doi.org/10.1007/978-3-031-30589-4_15
  • MAINO, Luciano, MARTINDALE, Chloe, PANNY, Lorenz, et al. A direct key recovery attack on SIDH. In : Annual International Conference on the Theory and Applications of Cryptographic Techniques. Cham : Springer Nature Switzerland, 2023. p. 448-471. - http://dx.doi.org/10.1007/978-3-031-30589-4_16
  • ROBERT, Damien. Breaking SIDH in polynomial time. In : Annual International Conference on the Theory and Applications of Cryptographic Techniques. Cham : Springer Nature Switzerland, 2023. p. 472-503. - http://dx.doi.org/10.1007/978-3-031-30589-4_17

Dernières questions liées sur MathOverflow

Pour poser une question, votre compte Carmin.tv doit être connecté à mathoverflow

Poser une question sur MathOverflow




Inscrivez-vous

  • Mettez des vidéos en favori
  • Ajoutez des vidéos à regarder plus tard &
    conservez votre historique de consultation
  • Commentez avec la communauté
    scientifique
  • Recevez des notifications de mise à jour
    de vos sujets favoris
Donner son avis