The Jacobi Factoring Circuit: Quantum Factoring with Near-Linear Gates and Sublinear Space and Depth
Gregory D. Kahanamoku-Meyer, Seyoon Ragavan, Vinod Vaikuntanathan, Katherine Van Kirk
Abstract
We present a compact quantum circuit for factoring a large class of integers, including some whose classical hardness is expected to be equivalent to RSA (but not including RSA integers themselves). Most notably, we factor ๐-bit integers of the form ๐ 2 ๐ with log ๐ = ฮ(๐ ๐ ) for ๐ โ (2/3, 1) in space and depth sublinear in n (specifically, ร(log ๐)) using ร(๐) quantum gates; for these integers, no known classical algorithms exploit the relatively small size of ๐ to run asymptotically faster than general-purpose factoring algorithms. To our knowledge, this is the first polynomial-time circuit to achieve sublinear qubit count for a classically-hard factoring problem. We thus believe that factoring such numbers has potential to be the most concretely efficient classically-verifiable proof of quantumness currently known. Our circuit builds on the quantum algorithm for squarefree decomposition discovered by Li, Peng, Du, and Suter (Nature Scientific Reports 2012), which relies on computing the Jacobi symbol in quantum superposition. The technical core of our contribution is a new space-efficient quantum algorithm to compute the Jacobi symbol of ๐ด mod ๐ต, in the regime where ๐ต is classical and much larger than ๐ด. Our circuit for computing the Jacobi symbol generalizes to related problems such as computing the greatest common divisor and modular inverses, and thus could be of independent interest.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Builds on5
- Verifiable Quantum Advantage without StructureTakashi Yamakawa, Mark ZhandryFOCS 2022 ยท 35 citations
- Quantum Advantage from Any Non-local GameYael Kalai, Alex Lombardi, Vinod Vaikuntanathan, Lisa YangSTOC 2023 ยท 25 citations
- Space-Efficient and Noise-Robust Quantum FactoringSeyoon Ragavan, Vinod VaikuntanathanCRYPTO 2024 ยท 11 citations
- Reducing the Number of Qubits in Quantum FactoringClรฉmence Chevignard, Pierre-Alain Fouque, Andrรฉ SchrottenloherCRYPTO 2025 ยท 8 citations
- The One-Wayness of Jacobi SignaturesHenry Corrigan-Gibbs, David J. WuCRYPTO 2024 ยท 3 citations
Related papers
- Generically Speeding-Up Repeated Squaring Is Equivalent to Factoring: Sharp Thresholds for All Generic-Ring Delay FunctionsLior Rotem, Gil SegevCRYPTO 2020 ยท 22 citations
- Quasi-polynomial Time Approximation of Output Probabilities of Geometrically-local, Shallow Quantum CircuitsNolan J. Coble, Matthew CoudronFOCS 2021 ยท 3 citations
- SAQR-QC: A Logic for Scalable but Approximate Quantitative Reasoning about Quantum CircuitsNengkun Yu, Jens Palsberg, Thomas RepsPLDI 2026 ยท 3 citations
- Quantum supremacy and hardness of estimating output probabilities of quantum circuitsYasuhiro Kondo, Ryuhei Mori, Ramis MovassaghFOCS 2021 ยท 14 citations
- Constructing Quantum Implementations with the Minimal T-depth or Minimal Width and Their ApplicationsZhenyu Huang, Fuxin Zhang, Dongdai LinEUROCRYPT 2025 ยท 7 citations
