English
Related papers

Related papers: Hidden Stabilizers, the Isogeny To Endomorphism Ri…

200 papers

An isogeny between elliptic curves is an algebraic morphism which is a group homomorphism. Many applications in cryptography require evaluating large degree isogenies between elliptic curves efficiently. For ordinary curves of the same…

Number Theory · Mathematics 2014-02-12 David Jao , Vladimir Soukharev

In this paper, we study the problem of sampling random supersingular elliptic curves with unknown endomorphism rings. This problem has recently gained considerable attention as many isogeny-based cryptographic protocols require such…

Quantum Physics · Physics 2026-03-24 Maher Mamah , Jake Doliskani , David Jao

In this paper, we prove that the supersingular isogeny problem (Isogeny), endomorphism ring problem (EndRing) and maximal order problem (MaxOrder) are equivalent under probabilistic polynomial time reductions, unconditionally. Isogeny-based…

Cryptography and Security · Computer Science 2026-02-03 Arthur Herlédan Le Merdy , Benjamin Wesolowski

Computing endomorphism rings of supersingular elliptic curves is an important problem in computational number theory, and it is also closely connected to the security of some of the recently proposed isogeny-based cryptosystems. In this…

Number Theory · Mathematics 2020-06-17 Kirsten Eisentraeger , Sean Hallgren , Chris Leonardi , Travis Morrison , Jennifer Park

SIDH is a post-quantum key exchange algorithm based on the presumed difficulty of finding isogenies between supersingular elliptic curves. However, SIDH and related cryptosystems also reveal additional information: the restriction of a…

The supersingular Endomorphism Ring problem is the following: given a supersingular elliptic curve, compute all of its endomorphisms. The presumed hardness of this problem is foundational for isogeny-based cryptography. The One Endomorphism…

Cryptography and Security · Computer Science 2023-10-17 Aurel Page , Benjamin Wesolowski

An important open problem in supersingular isogeny-based cryptography is to produce, without a trusted authority, concrete examples of "hard supersingular curves" that is, equations for supersingular curves for which computing the…

In 2022, a prominent supersingular isogeny-based cryptographic scheme, namely SIDH, was compromised by a key recovery attack. However, this attack does not undermine the isogeny path problem, which remains central to the security of…

Cryptography and Security · Computer Science 2024-12-02 Mohamadou Sall , M. Anwar Hasan

Given two elliptic curves over a finite field having the same cardinality and endomorphism ring, it is known that the curves admit an isogeny between them, but finding such an isogeny is believed to be computationally difficult. The fastest…

Quantum Physics · Physics 2018-04-17 Andrew M. Childs , David Jao , Vladimir Soukharev

We prove that the path-finding problem in $\ell$-isogeny graphs and the endomorphism ring problem for supersingular elliptic curves are equivalent under reductions of polynomial expected time, assuming the generalised Riemann hypothesis.…

Number Theory · Mathematics 2021-11-03 Benjamin Wesolowski

We present e cient algorithms for computing isogenies between hyperelliptic curves, leveraging higher genus curves to enhance cryptographic protocols in the post-quantum context. Our algorithms reduce the computational complexity of isogeny…

Number Theory · Mathematics 2025-04-08 Mohammed El Baraka , Siham Ezzouak

An analysis is made of the properties and conditions for the existence of 3- and 5-isogenies of complete and quadratic supersingular Edwards curves. For the encapsulation of keys based on the SIDH algorithm, it is proposed to use isogeny of…

Cryptography and Security · Computer Science 2020-06-30 Anatoly Bessalov , Evgeniy Grubiyan , Volodymyr Sokolov , Pavlo Skladannyi

Isogeny volcanoes are graphs whose vertices are elliptic curves and whose edges are $\ell$-isogenies. Algorithms allowing to travel on these graphs were developed by Kohel in his thesis (1996) and later on, by Fouquet and Morain (2001).…

Algebraic Geometry · Mathematics 2011-10-18 Sorina Ionica , Antoine Joux

Securing the Internet of Things (IoT) against quantum attacks requires public-key cryptography that (i) remains compact and (ii) runs efficiently on microcontrollers, capabilities many post-quantum (PQ) schemes lack due to large keys and…

Cryptography and Security · Computer Science 2025-11-26 Ilias Cherkaoui , Indrakshi Dey

In supersingular isogeny-based cryptography, the path-finding problem reduces to the endomorphism ring problem. Can path-finding be reduced to knowing just one endomorphism? It is known that a small endomorphism enables polynomial-time…

We describe the use of explicit isogenies to translate instances of the Discrete Logarithm Problem (DLP) from Jacobians of hyperelliptic genus 3 curves to Jacobians of non-hyperelliptic genus 3 curves, where they are vulnerable to faster…

Number Theory · Mathematics 2009-02-27 Benjamin Smith

Dimension 4 isogenies have first been introduced in cryptography for the cryptanalysis of Supersingular Isogeny Diffie-Hellman (SIDH) and have been used constructively in several schemes, including SQIsignHD, a derivative of SQIsign isogeny…

Cryptography and Security · Computer Science 2025-07-22 Pierrick Dartois

It is known that any quantum algorithm for Graph Isomorphism that works within the framework of the hidden subgroup problem (HSP) must perform highly entangled measurements across \Omega(n \log n) coset states. One of the only known models…

Quantum Physics · Physics 2007-10-18 Cristopher Moore , Alexander Russell , Piotr Sniady

In this paper we introduce a new problem called the Isogenous Embedding Problem (IEP). The existence of solutions to this problem is related to the primes of bad reduction of CM curves of genus $3$ and we can detect potentially good…

We introduce the notion of isolated genus two curves. As there is no known efficient algorithm to explicitly construct isogenies between two genus two curves with large conductor gap, the discrete log problem (DLP) cannot be efficiently…

Number Theory · Mathematics 2012-02-28 Wenhan Wang
‹ Prev 1 2 3 10 Next ›