Coefficient Grouping for Complex Affine Layers
Fukang Liu, Lorenzo Grassi, Clémence Bouvier, Willi Meier, Takanori Isobe
摘要
Designing symmetric-key primitives for applications in Fully Homomorphic Encryption (FHE) has become important to address the issue of the ciphertext expansion. In such a context, cryptographic primitives with a low-AND-depth decryption circuit are desired. Consequently, quadratic nonlinear functions are commonly used in these primitives, including the well-known χ function over F n 2 and the power map over a large finite field Fpn . In this work, we study the growth of the algebraic degree for an SPN cipher over F m 2 n , whose S-box is defined as the combination of a power map x → x 2 d +1 and an F2-linearized affine polynomial x → c0 + w i=1 cix 2 h i where c1, . . . , cw ̸ = 0. Specifically, motivated by the fact that the original coefficient grouping technique published at EUROCRYPT 2023 becomes less efficient for w > 1, we develop a variant technique that can efficiently work for arbitrary w. With this new technique to study the upper bound of the algebraic degree, we answer the following questions from a theoretic perspective:
- can the algebraic degree increase exponentially when w = 1? 2. what is the influence of w, d and (h1, . . . , hw) on the growth of the algebraic degree?
Based on this, we show (i) how to efficiently find (h1, . . . , hw) to achieve the exponential growth of the algebraic degree and (ii) how to efficiently compute the upper bound of the algebraic degree for arbitrary (h1, . . . , hw). Therefore, we expect that these results can further advance the understanding of the design and analysis of such primitives.
问问这篇 Paper
智能体会读完全文。
Lune 把这篇 Paper 索引到了最后一个公式,引用它的顶会 Paper 也一样。你提问,回答直接引用原文。
它引用的顶会 Paper6
- Out of Oddity - New Cryptanalytic Techniques Against Symmetric Primitives Optimized for Integrity Proof SystemsTim Beyne, Anne Canteaut, Itai Dinur, Maria Eichlseder 等CRYPTO 2020 · 被引用 60 次
- Cryptanalytic Applications of the Polynomial Method for Solving Multivariate Equation Systems over GF(2)Itai DinurEUROCRYPT 2021 · 被引用 58 次
- Cryptanalysis of Full LowMC and LowMC-M with Algebraic TechniquesFukang Liu, Takanori Isobe, Willi MeierCRYPTO 2021 · 被引用 37 次
- Shorter Signatures Based on Tailor-Made Minimalist Symmetric-Key CryptoChristoph Dobraunig, Daniel Kales, Christian Rechberger, Markus Schofnegger 等CCS 2022 · 被引用 36 次
- Chaghri - A FHE-friendly Block CipherTomer Ashur, Mohammad Mahzoun, Dilara ToprakhisarCCS 2022 · 被引用 31 次
相关 Paper
- Coefficient Grouping: Breaking Chaghri and MoreFukang Liu, Ravi Anand, Libo Wang, Willi Meier 等EUROCRYPT 2023 · 被引用 24 次
- Algorithmic Toolkit for Linearization of S-BoxesAlex Biryukov, Philip Turecek, Aleksei UdovenkoEUROCRYPT 2026
- Cryptanalysis of Symmetric Primitives over Rings and a Key Recovery Attack on RubatoLorenzo Grassi, Irati Manterola Ayala, Martha Norberg Hovd, Morten Øygarden 等CRYPTO 2023 · 被引用 14 次
- Superpolynomial Lower Bounds Against Low-Depth Algebraic CircuitsNutan Limaye, Srikanth Srinivasan, Sébastien TavenasFOCS 2021 · 被引用 26 次
- Faster Polynomial Evaluations for SIMD FHEs and Application to BGV in HElibJiachen Zhao, Jiang Zhang, Binwu Xiang, Songyu Wu 等CRYPTO 2026
