Cryptology ePrint Archive: Report 2004/209

The Security and Efficiency of Micciancio's Cryptosystem

Christoph Ludwig

Abstract: We report experiments on the security of the GGH-like cryptosystem proposed by Micciancio. Based on these experiments, we conclude that the system can be securely used only in lattice dimensions > 781. Further experiments on the efficiency of the system show that it requires key sizes of 1 MByte and more and that the key generation as well as the decryption take inacceptibly long. Therefore, Micciancio's cryptosystem seems currently far from being practical.

Category / Keywords: public-key cryptography / lattice techniques

Publication Info: Darmstadt University of Technology, Technical Report TI-7/02

Date: received 25 Aug 2004, last revised 26 Aug 2004

