Lune

EUROCRYPT2026Top-tier venue

The Algebraic Isogeny Model: A General Model with Applications to SQIsign and Key Exchanges

Marius A. Aardal, Andrea Basso, Doreen Riepel

2026Year
2Citations

Abstract

We introduce the Algebraic Isogeny Model (AIM): an algebraic model, akin to the Algebraic Group Model in the group setting, for isogenies and supersingular elliptic curves. This model is significantly more general than previous ones, such as the Algebraic Group Action Model: the AIM works with arbitrary isogenies over Fp2Fp2\mathbb {F}_{p^2}, rather than being limited to oriented ones, which gives considerably more power to the adversary.Within this model, we obtain three results. First, we show that any result in the AGAM can be lifted to the AIM, strengthening previous results against more powerful adversaries. Then, we prove that the SQIsign identification protocol is ID-sound: in turn, this implies that SQIsign is EUF-CMA secure in the Quantum Random Oracle Model, resolving (in the AIM) a long-standing open problem. Lastly, we establish the equivalence of the DLOG and CDH problems for all SIDH-derived key exchanges, such as M-SIDH, binSIDH, and terSIDH.

Ask about this paper

Ask your agent about it.

Lune has read the top-tier papers around this one, so every answer names the papers it rests on.

Questions to start from

Your agent calls

Lunesearch_papers

Ask in Lune

Free to start. No credit card required.

lune papers get 8996e417-abf4-4af5-a861-dcca0e84eb1f

Related papers

Dusk over the sea between two cliffs drawn in fine vertical lines