English
Related papers

Related papers: Provably weak instances of Ring-LWE

200 papers

In this paper, we survey the status of attacks on the ring and polynomial learning with errors problems (RLWE and PLWE). Recent work on the security of these problems [Eisentr\"ager-Hallgren-Lauter, Elias-Lauter-Ozman-Stange] gives rise to…

Number Theory · Mathematics 2015-09-24 Yara Elias , Kristin E. Lauter , Ekin Ozman , Katherine E. Stange

The Ring Learning-With-Errors (LWE) problem, whose security is based on hard ideal lattice problems, has proven to be a promising primitive with diverse applications in cryptography. There are however recent discoveries of faster algorithms…

Cryptography and Security · Computer Science 2017-06-22 Qi Cheng , Jun Zhang , Jincheng Zhuang

The Polynomial Learning With Errors problem (PLWE) serves as the background of two of the three cryptosystems standardized in August 2024 by the National Institute of Standards and Technology to replace non-quantum resistant current…

Cryptography and Security · Computer Science 2025-07-01 Iván Blanco Chacón , Raúl Durán Díaz , Rodrigo Martín Sánchez-Ledesma

The Learning with Errors (\LWE) problem has been widely utilized as a foundation for numerous cryptographic tools over the years. In this study, we focus on an algebraic variant of the \LWE problem called \emph{Group ring} \LWE ($\GRLWE$).…

Cryptography and Security · Computer Science 2026-03-11 Jiaqi Liu , Fang-Wei Fu

The Ring Learning-With-Errors (RLWE) problem shows great promise for post-quantum cryptography and homomorphic encryption. We describe a new attack on the non-dual search RLWE problem with small error widths, using ring homomorphisms to…

Cryptography and Security · Computer Science 2017-10-11 Hao Chen , Kristin Lauter , Katherine E. Stange

As quantum computing advances rapidly, guaranteeing the security of cryptographic protocols resistant to quantum attacks is paramount. Some leading candidate cryptosystems use the Learning with Errors (LWE) problem, attractive for its…

Information Theory · Computer Science 2020-08-18 Liljana Babinkostova , Ariana Chin , Aaron Kirtland , Vladyslav Nazarchuk , Esther Plotnick

The Learning with Errors (LWE) problem is the fundamental backbone of modern lattice based cryptography, allowing one to establish cryptography on the hardness of well-studied computational problems. However, schemes based on LWE are often…

Information Theory · Computer Science 2020-08-06 Charles Grover , Cong Ling , Roope Vehkalahti

We show that the Learning with Errors (LWE) problem is classically at least as hard as standard worst-case lattice problems, even with polynomial modulus. Previously this was only known under quantum reductions. Our techniques capture the…

Computational Complexity · Computer Science 2013-06-04 Zvika Brakerski , Adeline Langlois , Chris Peikert , Oded Regev , Damien Stehlé

The "Ring Learning with Errors" (RLWE) problem was formulated as a variant of the "Learning with Errors" (LWE) problem, with the purpose of taking advantage of an additional algebraic structure in the underlying considered lattices; this…

Cryptography and Security · Computer Science 2018-02-05 Alberto Pedrouzo-Ulloa , Juan Ramón Troncoso-Pastoriza , Fernando Pérez-González

Lattice-based cryptography is a foundation for post-quantum security, with the Learning with Errors (LWE) problem as a core component in key exchange, encryption, and homomorphic computation. Structured variants like Ring-LWE (RLWE) and…

Cryptography and Security · Computer Science 2025-02-12 Dongfang Zhao

We present a quantum attack on ML-KEM and related 2-power cyclotomic lattice schemes. Combining with Parts I-III, we provide an algorithm and verify the resulting approximation factor satisfies $\gamma\le 21 < q/2=1664.5$ for ML-KEM-1024,…

Quantum Physics · Physics 2026-05-26 Ming-Xing Luo

At ASIACRYPT 2018, a digital attack based on linear least squares was introduced for a variant of the learning with errors (LWE) problem which omits modular reduction known as the integer learning with errors problem (ILWE). In this paper,…

Cryptography and Security · Computer Science 2025-12-10 Kyle Yates , Antsa Pierrottet , Abdullah Al Mamun , Ryann Cartor , Mashrur Chowdhury , Shuhong Gao

Recent work showed that ML-based attacks on Learning with Errors (LWE), a hard problem used in post-quantum cryptography, outperform classical algebraic attacks in certain settings. Although promising, ML attacks struggle to scale to more…

Machine Learning · Computer Science 2025-08-26 Eshika Saxena , Alberto Alfarano , François Charton , Zeyuan Allen-Zhu , Emily Wenger , Kristin Lauter

It is a long standing open problem to find search to decision reductions for structured versions of the decoding problem of linear codes. Such results in the lattice-based setting have been carried out using number fields: Polynomial-LWE,…

Cryptography and Security · Computer Science 2022-03-01 Maxime Bombar , Alain Couvreur , Thomas Debris-Alazard

Whilst lattice-based cryptosystems are believed to be resistant to quantum attack, they are often forced to pay for that security with inefficiencies in implementation. This problem is overcome by ring- and module-based schemes such as…

Cryptography and Security · Computer Science 2022-06-10 Christian Porter , Andrew Mendelsohn , Cong Ling

Modern information communications use cryptography to keep the contents of communications confidential. RSA (Rivest-Shamir-Adleman) cryptography and elliptic curve cryptography, which are public-key cryptosystems, are widely used…

Cryptography and Security · Computer Science 2023-10-09 Yuri Lucas Direbieski , Hiroki Tanioka , Kenji Matsuura , Hironori Takeuchi , Masahiko Sano , Tetsushi Ueta

We prove the equivalence between the Ring Learning With Errors (RLWE) and the Polynomial Learning With Errors (PLWE) problems for the maximal totally real subfield of the $2^r 3^s$-th cyclotomic field for $r \geq 3$ and $s \geq 1$.…

Cryptography and Security · Computer Science 2025-02-19 Joonas Ahola , Iván Blanco-Chacón , Wilmar Bolaños , Antti Haavikko , Camilla Hollanti , Rodrigo Martín Sánchez-Ledesma

We extend two of the attacks on the PLWE problem presented in (Y. Elias, K. E. Lauter, E. Ozman, and K. E. Stange, Ring-LWE Cryptography for the Number Theorist, in Directions in Number Theory, E. E. Eischen, L. Long, R. Pries, and K. E.…

We introduce a continuous analogue of the Learning with Errors (LWE) problem, which we name CLWE. We give a polynomial-time quantum reduction from worst-case lattice problems to CLWE, showing that CLWE enjoys similar hardness guarantees to…

Computational Complexity · Computer Science 2020-10-27 Joan Bruna , Oded Regev , Min Jae Song , Yi Tang

We initiate the study of multi-party computation for classical functionalities (in the plain model) with security against malicious polynomial-time quantum adversaries. We observe that existing techniques readily give a polynomial-round…

Quantum Physics · Physics 2020-11-23 Amit Agarwal , James Bartusek , Vipul Goyal , Dakshita Khurana , Giulio Malavolta
‹ Prev 1 2 3 10 Next ›