Distinguishing Goppa Codes Using Higher-Order Vanishing
Tobias Hemmert, Andreas Wiemers
Abstract
We present a new algorithm to distinguish alternant and Goppa codes from general linear codes. Our approach is based on higher-order vanishing of polynomials and can be applied to a wide set of code parameters. It also applies to Goppa code parameters used in the Classic McEliece key encapsulation mechanism. While these parameters are out of reach in practice, we analyse the behaviour of our distinguisher and estimate its complexity for them, indicating that it is more efficient than previous distinguishing approaches. This is supported by concrete experiments that distinguish codes with larger parameters in practice.
Ask about this paper
Ask your agent about it.
Lune has read the top-tier papers around this one, so every answer names the papers it rests on.
Your agent calls
Lunesearch_papers
Free to start. No credit card required.
Terminal
Install the CLIlune papers get fb43041c-95bf-470b-9ef9-535c10fe282bRelated papers
- The syzygy DistinguisherHugues RandriambololonaEUROCRYPT 2025 · 10 citations
- An Attack on the CFS Scheme and on TII McEliece ChallengesMagali Bardet, Axel Lemoine, Jean-Pierre TillichCRYPTO 2026 · 1 citation
- Mckeycutter: A High-throughput Key Generator of Classic McEliece on HardwareYihong Zhu, Wenping Zhu, Chen Chen, Min Zhu et al.DAC 2023 · 9 citations
- Cryptanalysis of LEDAcryptDaniel Apon, Ray A. Perlner, Angela Robinson, Paolo SantiniCRYPTO 2020 · 16 citations
- Differential-Linear Cryptanalysis from an Algebraic PerspectiveMeicheng Liu, Xiaojuan Lu, Dongdai LinCRYPTO 2021 · 47 citations
