You are looking at a specific version 20210709:174242 of this paper. See the latest version.

Paper 2021/919

The supersingular isogeny path and endomorphism ring problems are equivalent

Benjamin Wesolowski

Abstract

We prove that the path-finding problem in $\ell$-isogeny graphs and the endomorphism ring problem for supersingular elliptic curves are equivalent under reductions of polynomial expected time, assuming the generalised Riemann hypothesis. The presumed hardness of these problems is foundational for isogeny-based cryptography. As an essential tool, we develop a rigorous algorithm for the quaternion analog of the path-finding problem, building upon the heuristic method of Kohel, Lauter, Petit and Tignol. This problem, and its (previously heuristic) resolution, are both a powerful cryptanalytic tool and a building-block for cryptosystems.

Metadata
Available format(s)
PDF
Category
Public-key cryptography
Publication info
Preprint. MINOR revision.
Keywords
isogeny-based cryptographycryptanalysisendomorphism ringisogeny path
Contact author(s)
benjamin wesolowski @ math u-bordeaux fr
History
2021-09-10: revised
2021-07-09: received
See all versions
Short URL
https://ia.cr/2021/919
License
Creative Commons Attribution
CC BY
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.