Lune

CRYPTO2023Top-tier venue

Analysis of the Security of the PSSI Problem and Cryptanalysis of the Durandal Signature Scheme

Nicolas Aragon, Victor Dyseryn, Philippe Gaborit

2023Year
8Citations

Abstract

We present a new attack against the PSSI problem, one of the three problems at the root of security of Durandal, an efficient rank metric code-based signature scheme with a public key size of 15 kB and a signature size of 4 kB, presented at EUROCRYPT'19. Our attack recovers the private key using a leakage of information coming from several signatures produced with the same key. Our approach is to combine pairs of signatures and perform Cramer-like formulas in order to build subspaces containing a secret element. We break all existing parameters of Durandal: the two published sets of parameters claiming a security of 128 bits are broken in respectively 2662^{66} and 2732^{73} elementary bit operations, and the number of signatures required to finalize the attack is 1,792 and 4,096 respectively. We implemented our attack and ran experiments that demonstrated its success with smaller parameters.

Ask about this paper

Ask your agent about it.

Lune has read the top-tier papers around this one, so every answer names the papers it rests on.

Questions to start from

Your agent calls

Lunesearch_papers

Ask in Lune

Free to start. No credit card required.

lune papers get 5be203a8-2907-4e6c-b801-3e665e802e04

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines