Lune

EUROCRYPT2026顶会

A Gaussian Leftover Hash Lemma for Modules over Number Fields

Martin R. Albrecht, Joël Felderhoff, Russell W. F. Lai, Oleksandra Lapiha, Ivy K. Y. Woo

2026年份

摘要

Leftover Hash Lemma (LHL) states that X⋅v\mathbf{X} \cdot \mathbf{v} for a Gaussian v\mathbf{v} is an essentially independent Gaussian sample. It has seen numerous applications in cryptography for hiding sensitive distributions of v\mathbf{v}. We generalise the Gaussian LHL initially stated over Z\mathbb{Z} by Agrawal, Gentry, Halevi, and Sahai (2013) to modules over number fields. Our results have a sub-linear dependency on the degree of the number field and require only polynomial norm growth: ∥v∥/∥X∥\lVert\mathbf{v}\rVert/\lVert\mathbf{X}\rVert. To this end, we also prove when X\mathbf{X} is surjective (assuming the Generalised Riemann Hypothesis) and give bounds on the smoothing parameter of the kernel of X\mathbf{X}. We also establish when the resulting distribution is independent of the geometry of X\mathbf{X} and establish the hardness of the kk-SIS and kk-LWE problems over modules (kk-MSIS/kk-MLWE) based on the hardness of SIS and LWE over modules (MSIS/MLWE) respectively, which was assumed without proof in prior works.

问问这篇 Paper

问问你的智能体。

Lune 读过与它相关的顶会 Paper,每个回答都会注明依据哪几篇。

可以从这些问题问起

智能体调用

Lunesearch_papers

在 Lune 里问

免费开始,无需绑卡

相关 Paper

黄昏的海面,两侧是细线勾勒的悬崖