Paper 2015/673

Decaf: Eliminating cofactors through point compression

Mike Hamburg

Abstract

We propose a new unified point compression format for Edwards, Twisted Edwards and Montgomery curves over large-characteristic fields, which effectively divides the curve's cofactor by 4 at very little cost to performance. This allows cofactor-4 curves to efficiently implement prime-order groups.

Metadata
Available format(s)
PDF
Category
Public-key cryptography
Publication info
A minor revision of an IACR publication in CRYPTO 2015
Keywords
Elliptic curvesEdwards curvesMontgomery curvesisogeniesquotient groups
Contact author(s)
mike @ shiftleft org
History
2015-07-05: received
Short URL
https://ia.cr/2015/673
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2015/673,
      author = {Mike Hamburg},
      title = {Decaf: Eliminating cofactors through point compression},
      howpublished = {Cryptology {ePrint} Archive, Paper 2015/673},
      year = {2015},
      url = {https://eprint.iacr.org/2015/673}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.