sfqt-sfPegasis: Simpler and Faster Effective Class Group Actions
Pierrick Dartois, Jonathan Komada Eriksen, Riccardo Invernizzi, Frederik Vercauteren
Abstract
In this paper, we revisit the recent Pegasis algorithm that computes an effective group action of the class group of any imaginary quadratic order R on a set of supersingular elliptic curves primitively oriented by R. Although Pegasis was the first algorithm showing the practicality of computing unrestricted class group actions at higher security levels, it is complicated and prone to failures, which leads to many rerandomizations. In this work, we present a new algorithm, qt-Pegasis, which is much simpler, but at the same time faster and removes the need for rerandomization of the ideal we want to act with, since it never fails. It leverages the main technique of the recent Qlapoti approach. However, Qlapoti solves a norm equation in a quaternion algebra, which corresponds to the full endomorphism ring of a supersingular elliptic curve. We show that the algorithm still applies in the quadratic setting, by embedding the quadratic ideal into a quaternion ideal using a technique similar to the one applied in KLaPoTi. This way, we can reinterpret the output of Qlapoti as four equivalent quadratic ideals, instead of two equivalent quaternion ideals. We then show how to construct a Clapoti-like diagram in dimension 2, which embeds the action of the ideal in a 4-dimensional isogeny. We implemented our qt-Pegasis algorithm in SageMath for the CSURF group action, and we achieve a speedup over Pegasis of 1.8× for the 500-bit parameters and 2.6× for the 4000-bit parameters.
Ask about this paper
Your agent reads all of it.
Lune indexed this paper to the last equation, along with the top-tier papers that cite it. Ask a question and the answer quotes them.
Your agent calls
Luneget_paper_fulltext
Free to start. No credit card required.
Terminal
Install the CLIlune papers fulltext eef19f35-45fb-4dc1-961b-0cf7188d10f4Builds on6
- He Gives C-Sieves on the CSIDHChris PeikertEUROCRYPT 2020 · 120 citations
- Quantum Security Analysis of CSIDHXavier Bonnetain, André SchrottenloherEUROCRYPT 2020 · 103 citations
- New Algorithms for the Deuring Correspondence - Towards Practical and Secure SQISign SignaturesLuca De Feo, Antonin Leroux, Patrick Longa, Benjamin WesolowskiEUROCRYPT 2023 · 46 citations
- PEGASIS: Practical Effective Class Group Action using 4-Dimensional IsogeniesPierrick Dartois, Jonathan Komada Eriksen, Tako Boris Fouotsa, Arthur Herlédan Le Merdy et al.CRYPTO 2025 · 25 citations
- AprèsSQI: Extra Fast Verification for SQIsign Using Extension-Field SigningMaria Corte-Real Santos, Jonathan Komada Eriksen, Michael Meyer, Krijn ReijndersEUROCRYPT 2024 · 23 citations
Related papers
- On the Conversion of Module Representations for Higher Dimensional Supersingular IsogeniesAurel Page, Damien Robert, Julien SoumierCRYPTO 2026 · 3 citations
- CORAL Faster Isogeny Group Action for Post-Quantum NIKEAndrea Basso, Giacomo Borin, Ryan Rueger, Sina SchaefflerCRYPTO 2026 · 2 citations
- Weak Instances of Class Group Action Based Cryptography via Self-pairingsWouter Castryck, Marc Houben, Simon-Philipp Merz, Marzio Mula et al.CRYPTO 2023 · 20 citations
- WaterSQI and PRISMO: Quaternion Signatures for Supersingular Isogeny Group ActionsTako Boris FouotsaEUROCRYPT 2026 · 1 citation
- QFESTA: Efficient Algorithms and Parameters for FESTA Using Quaternion AlgebrasKohei Nakagawa, Hiroshi OnukiCRYPTO 2024 · 37 citations
