Cryptology ePrint Archive: Report 2007/141

Practical Cryptanalysis of SFLASH

Vivien Dubois and Pierre-Alain Fouque and Adi Shamir and Jacques Stern

Abstract: In this paper, we present a practical attack on the signature scheme SFLASH proposed by Patarin, Goubin and Courtois in 2001 following a design they had introduced in 1998. The attack only needs the public key and requires about one second to forge a signature for any message, after a one-time computation of several minutes. It can be applied to both SFLASHv2 which was accepted by NESSIE, as well as to SFLASHv3 which is a higher security version.

Category / Keywords: public-key cryptography / Cryptanalysis multivariate schemes

Date: received 20 Apr 2007

Contact author: Pierre-Alain Fouque at ens fr

Available format(s): PDF | BibTeX Citation

Version: 20070420:204713 (All versions of this report)

Short URL:

[ Cryptology ePrint archive ]