English
Related papers

Related papers: A note on the security of CSIDH

200 papers

In this paper, we study the problem of sampling random supersingular elliptic curves with unknown endomorphism rings. This problem has recently gained considerable attention as many isogeny-based cryptographic protocols require such…

Quantum Physics · Physics 2026-03-24 Maher Mamah , Jake Doliskani , David Jao

Assuming the Generalized Riemann Hypothesis, we design a deterministic algorithm that, given a prime p and positive integer m=o(sqrt(p)/(log p)^4), outputs an elliptic curve E over the finite field F_p for which the cardinality of E(F_p) is…

Number Theory · Mathematics 2017-01-03 Igor E. Shparlinski , Andrew V. Sutherland

We give an algorithm for computing an inseparable endomorphism of a supersingular elliptic curve $E$ defined over $\mathbb F_{p^2}$, which, conditional on GRH, runs in expected $O(p^{1/2}(\log p)^2(\log\log p)^3)$ bit operations and…

Number Theory · Mathematics 2025-02-03 Jenny Fuselier , Annamaria Iezzi , Mark Kozek , Travis Morrison , Changningphaabi Namoijam

Loops and cycles play an important role in computing endomorphism rings of supersingular elliptic curves and related cryptosystems. For a supersingular elliptic curve $E$ defined over $\mathbb{F}_{p^2}$, if an imaginary quadratic order $O$…

Number Theory · Mathematics 2023-12-12 Guanju Xiao , Lixia Luo , Yingpu Deng

We investigate the isogeny graphs of supersingular elliptic curves over $\mathbb{F}_{p^2}$ equipped with a $d$-isogeny to their Galois conjugate. These curves are interesting because they are, in a sense, a generalization of curves defined…

Cryptography and Security · Computer Science 2021-07-20 Mathilde Chenu , Benjamin Smith

We design a probabilistic algorithm for computing endomorphism rings of ordinary elliptic curves defined over finite fields that we prove has a subexponential runtime in the size of the base field, assuming solely the generalized Riemann…

Number Theory · Mathematics 2013-02-19 Gaetan Bisson

We show that the number of $5$-isogenies of elliptic curves defined over $\mathbb{Q}$ with naive height bounded by $H > 0$ is asymptotic to $C_5\cdot H^{1/6} (\log H)^2$ for some explicitly computable constant $C_5 > 0$. This settles the…

Number Theory · Mathematics 2025-06-09 Santiago Arango-Piñeros , Changho Han , Oana Padurariu , Sun Woo Park

We introduce a category of $\mathcal{O}$-orientedsupersingularellipticcurves and derive properties of the associated oriented and nonoriented $\ell$-isogeny supersingular isogeny graphs. As an application we introduce an oriented…

Number Theory · Mathematics 2020-12-22 Leonardo Colò , David Kohel

Let $p$ be an odd prime number and be an integer coprime to $p$. We survey an algorithm for computing explicit rational representations of $(\ell,...,\ell)$-isogenies between Jacobians of hyperelliptic curves of arbitrary genus over an…

Algebraic Geometry · Mathematics 2021-02-17 Elie Eid

Building on Mazur's 1978 work on prime degree isogenies, Kenku determined in 1981 all possible cyclic isogenies of elliptic curves over $\mathbb{Q}$. Although more than 40 years have passed, the determination of cyclic isogenies of elliptic…

Number Theory · Mathematics 2026-02-24 Barinder S. Banwait , Filip Najman , Oana Padurariu

Consider the problem of efficiently evaluating isogenies $\phi: E \to E/H$ of elliptic curves over a finite field $\mathbb{F}_q$, where the kernel $H = \langle G\rangle$ is a cyclic group of odd (prime) order: given $E$, $G$, and a point…

Cryptography and Security · Computer Science 2023-06-29 Gustavo Banegas , Valerie Gilchrist , Anaëlle Le Dévéhat , Benjamin Smith

Let p be an odd prime number and g $\ge$ 2 be an integer. We present an algorithm for computing explicit rational representations of isogenies between Jacobians of hyperelliptic curves of genus g over an extension K of the field of p-adic…

Algebraic Geometry · Mathematics 2020-09-28 Élie Eid

All known algorithms for the Fr\'echet distance between curves proceed in two steps: first, they construct an efficient oracle for the decision version; second, they use this oracle to find the optimum from a finite set of critical values.…

Computational Geometry · Computer Science 2016-08-11 Kevin Buchin , Maike Buchin , Rolf van Leusden , Wouter Meulemans , Wolfgang Mulzer

Hash functions map data of arbitrary length to data of predetermined length. Good hash functions are hard to predict, making them useful in cryptography. We are interested in the elliptic curve CGL hash function, which maps a bitstring to…

Cryptography and Security · Computer Science 2021-08-17 Dhruv Bhatia , Kara Fagerstrom , Maximillian Watson

Dimension 4 isogenies have first been introduced in cryptography for the cryptanalysis of Supersingular Isogeny Diffie-Hellman (SIDH) and have been used constructively in several schemes, including SQIsignHD, a derivative of SQIsign isogeny…

Cryptography and Security · Computer Science 2025-07-22 Pierrick Dartois

We provide an explicit and algorithmic version of a theorem of Momose classifying isogenies of prime degree of elliptic curves over number fields, which we implement in Sage and PARI/GP. Combining this algorithm with recent work of…

Number Theory · Mathematics 2025-05-21 Barinder S. Banwait , Maarten Derickx

This paper reports on a new algorithm to compute the asymptotic solutions of a linear differential system. A feature of the algorithm is the ability to accommodate periodic coefficients.

Spectral Theory · Mathematics 2025-10-20 B. M. Brown , M. S. P. Eastham , D. K. R. McCormack

Using Galois representations, we analyze fields of definition of cyclic isogenies on elliptic curves to prove the following uniformity result: for any number field $F$ which has no rational CM, under GRH there exists an effectively…

Number Theory · Mathematics 2025-08-14 Tyler Genao

We describe the first strongly subquadratic time algorithm with subexponential approximation ratio for approximately computing the Fr\'echet distance between two polygonal chains. Specifically, let $P$ and $Q$ be two polygonal chains with…

Computational Geometry · Computer Science 2021-03-30 Connor Colombe , Kyle Fox

For a prime $p{\,>\,}3$ and a supersingular elliptic curve $E$ defined over $\mathbb{F}_{p^2}$ with ${j(E)\notin\{0,1728\}}$, consider an endomorphism $\alpha$ of $E$ represented as a composition of $L$ isogenies of degree at most $d$. We…

Number Theory · Mathematics 2025-01-28 Travis Morrison , Lorenz Panny , Jana Sotáková , Michael Wills