Some Easy Instances of Ideal-SVP and Implications on the Partial Vandermonde Knapsack Problem
Katharina Boudgoust, Erell Gachon, Alice Pellet-Mary
摘要
In this article, we generalize the works of Pan et al. (Eurocrypt’21) and Porter et al. (ArXiv’21) and provide a simple condition under which an ideal lattice defines an easy instance of the shortest vector problem. Namely, we show that the more automorphisms stabilize the ideal, the easier it is to find a short vector in it. This observation was already made for prime ideals in Galois fields, and we generalize it to any ideal (whose prime factors are not ramified) of any number field. We then provide a cryptographic application of this result by showing that particular instances of the partial Vandermonde knapsack problem, also known as partial Fourier recovery problem, can be solved classically in polynomial time. As a proof of concept, we implemented our attack and managed to solve those particular instances for concrete parameter settings proposed in the literature. For random instances, we can halve the lattice dimension with non-negligible probability.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了每一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper1
相关 Paper
- Dimension-Reducing Algorithms for Quaternion Ideal-SVPCong Ling, Andrew Mendelsohn, Christian PorterEUROCRYPT 2026
- Random Self-reducibility of Ideal-SVP via Arakelov Random WalksKoen de Boer, Léo Ducas, Alice Pellet-Mary, Benjamin WesolowskiCRYPTO 2020 · 被引用 11 次
- Average Hardness of SIVP for Module Lattices of Fixed RankKoen de Boer, Aurel Page, Radu Toma, Benjamin WesolowskiSTOC 2026 · 被引用 5 次
- Key Recovery Attack on the Partial Vandermonde Knapsack ProblemDipayan Das, Antoine JouxEUROCRYPT 2024 · 被引用 1 次
- Reductions from Module Lattices to Free Module Lattices, and Application to Dequantizing Module-LLLGabrielle De Micheli, Daniele Micciancio, Alice Pellet-Mary, Nam TranCRYPTO 2023 · 被引用 2 次
