SeaSign: Compact isogeny signatures from class group actions

Luca De Feo and Steven D. Galbraith

Abstract: We give a new signature scheme for isogenies that combines the class group actions of CSIDH with the notion of Fiat-Shamir with aborts. Our techniques allow to have signatures of size less than one kilobyte at the 128-bit security level, even with tight security reduction (to a non-standard problem) in the quantum random oracle model. Hence our signatures are potentially shorter than lattice signatures, but signing and verification are currently very expensive.

Category / Keywords: public-key cryptography / post-quantum crypto; isogenies

Original Publication (with minor differences): IACR-EUROCRYPT-2019
10.1007/978-3-030-17659-4 _ 26

Date: received 4 Sep 2018, last revised 1 Apr 2019

Contact author: s galbraith at auckland ac nz

Version: 20190401:210256 (All versions of this report)

