On the Ideal Shortest Vector Problem over Random Rational Primes
Yanbin Pan, Jun Xu, Nick Wadleigh, Qi Cheng
Abstract
Any non-zero ideal in a number field can be factored into a product of prime ideals. In this paper we report a surprising connection between the complexity of the shortest vector problem (SVP) of prime ideals in number fields and their decomposition groups. When applying the result to number fields popular in lattice based cryptosystems, such as power-of-two cyclotomic fields, we show that a majority of rational primes lie under prime ideals admitting a polynomial time algorithm for SVP. Although the shortest vector problem of ideal lattices underpins the security of the Ring-LWE cryptosystem, this work does not break Ring-LWE, since the security reduction is from the worst case ideal SVP to the average case Ring-LWE, and it is one-way.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 44a208ef-60e3-4e85-a0de-f6a49622812dCited by top-tier papers1
Ask how each one uses itRelated papers
- Random Self-reducibility of Ideal-SVP via Arakelov Random WalksKoen de Boer, Léo Ducas, Alice Pellet-Mary, Benjamin WesolowskiCRYPTO 2020 · 11 citations
- Dimension-Reducing Algorithms for Quaternion Ideal-SVPCong Ling, Andrew Mendelsohn, Christian PorterEUROCRYPT 2026
- Cryptanalysis of Rank-2 Module-LIP in Totally Real Number FieldsGuilhem Mureau, Alice Pellet-Mary, Georgii Pliatsok, Alexandre WalletEUROCRYPT 2024 · 17 citations
- Solving the Shortest Vector Problem in 20.63269n+o(n) Time on Random LatticesAmaury Pouly, Yixin ShenEUROCRYPT 2026 · 9 citations
- Just How Hard Are Rotations of ? Algorithms and Cryptography with the Simplest LatticeHuck Bennett, Atul Ganju, Pura Peetathawatchai, Noah Stephens-DavidowitzEUROCRYPT 2023 · 26 citations
