Lattice Reduction for Modules, or How to Reduce ModuleSVP to ModuleSVP
Tamalika Mukherjee, Noah Stephens-Davidowitz
Abstract
We show how to generalize lattice reduction algorithms to module lattices. Specifically, we reduce -approximate ModuleSVP over module lattices with rank to -approximate ModuleSVP over module lattices with rank . To do so, we modify the celebrated slide-reduction algorithm of Gama and Nguyen to work with module filtrations, a high-dimensional generalization of the (-)basis of a lattice.
The particular value of that we achieve depends on the underlying number field , the order , and the embedding (as well as, of course, , , and ). However, for reasonable choices of these parameters, the resulting value of is surprisingly close to the one achieved by ``plain'' lattice reduction algorithms, which require an arbitrary SVP oracle in the same dimension. In other words, we show that ModuleSVP oracles are nearly as useful as SVP oracles for solving higher-rank instances of approximate ModuleSVP.
Our result generalizes the recent independent result of Lee, Pellet-Mary, Stehlé, and Wallet, which works in the important special case when and is the ring of integers of under the canonical embedding. Our reduction works for any dividing , as well as arbitrary orders and a larger class of embeddings. Indeed, at a high level our reduction can be thought of as a generalization of theirs in roughly the same way that block reduction generalizes LLL reduction.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get f44c8efc-2c1a-42f7-9ff5-c9d26c193341Related papers
- Slide Reduction, Revisited - Filling the Gaps in SVP ApproximationDivesh Aggarwal, Jianwei Li, Phong Q. Nguyen, Noah Stephens-DavidowitzCRYPTO 2020 · 33 citations
- Reductions from Module Lattices to Free Module Lattices, and Application to Dequantizing Module-LLLGabrielle De Micheli, Daniele Micciancio, Alice Pellet-Mary, Nam TranCRYPTO 2023 · 2 citations
- Average Hardness of SIVP for Module Lattices of Fixed RankKoen de Boer, Aurel Page, Radu Toma, Benjamin WesolowskiSTOC 2026 · 5 citations
- Towards Faster Polynomial-Time Lattice ReductionPaul Kirchner, Thomas Espitau, Pierre-Alain FouqueCRYPTO 2021 · 9 citations
- Dimension-Preserving Reductions Between SVP and CVP in Different p-NormsDivesh Aggarwal, Yanlin Chen, Rajendra Kumar, Zeyong Li et al.SODA 2021 · 7 citations
