Singular Points of UOV and VOX
Pierre Pébereau
Abstract
In this work, we study the singular locus of the varieties dened by the public keys of UOV and VOX, two multivariate signature schemes submitted to the additional NIST call for post-quantum signature schemes. We give a new attack for UOV + and VOX targeting singular points of the underlying UOV key. Our attack lowers the security of the schemes, both asymptotically and in number of gates, showing in particular that the parameter sets proposed for these schemes do not meet the NIST security requirements. More precisely, we show that the security of VOX/UOV + was overestimated by factors 2 2 , 2 18 , 2 37 for security levels I, III, V respectively. As an essential element of the attack on VOX, we introduce a polynomial time algorithm performing a key recovery from one vector, with an implementation requiring only 15 seconds at security level V.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext 75680af7-c4fa-46bf-ba4d-319050690ff2Cited by top-tier papers1
Ask how each one uses itBuilds on2
Related papers
- Cryptanalysis of the Lifted Unbalanced Oil Vinegar Signature SchemeJintai Ding, Joshua Deaton, Kurt Schmidt, Vishakha et al.CRYPTO 2020 · 15 citations
- Key Recovery Attacks on UOV Using pℓ-Truncated Polynomial RingsHiroki Furue, Yasuhiko IkematsuCRYPTO 2026
- Wedges, Oil, and Vinegar - An Analysis of UOV in the Exterior AlgebraLars RanEUROCRYPT 2026 · 1 citation
- Improved Cryptanalysis of SNOVAWard BeullensEUROCRYPT 2025 · 6 citations
- Improved Attacks for SNOVA by Exploiting Stability Under a Group ActionDaniel Cabarcas, Peigen Li, Javier A. Verbel, Ricardo Villanueva-PolancoCRYPTO 2025 · 3 citations
