You are looking at a specific version 20190226:025952 of this paper.
See the latest version.
Paper 2019/177
Genus Two Isogeny Cryptography
E.V. Flynn and Yan Bo Ti
Abstract
We study $(\ell,\ell)$-isogeny graphs of principally polarised supersingular abelian surfaces (PPSSAS). The $(\ell,\ell)$-isogeny graph has cycles of small length that can be used to break the collision resistance assumption of the genus two isogeny hash function suggested by Takashima. Algorithms for computing $(2,2)$-isogenies on the level of Jacobians and $(3,3)$-isogenies on the level of Kummers are used to develop a genus two version of the supersingular isogeny Diffie--Hellman protocol of Jao and de~Feo. The genus two isogeny Diffie--Hellman protocol achieves the same level of security as SIDH but uses a prime with a third of the bit length.
Metadata
- Available format(s)
- Category
- Public-key cryptography
- Publication info
- Published elsewhere. PQCrypto 2019
- Keywords
- Post-quantum cryptographyIsogeny-based cryptographyCryptanalysisKey exchangeHash function
- Contact author(s)
- yanbo ti @ gmail com
- History
- 2022-06-08: revised
- 2019-02-26: received
- See all versions
- Short URL
- https://ia.cr/2019/177
- License
-
CC BY