Paper 2025/2230

Efficient Algorithms for $\mathbb{G}_2$ Subgroup Membership testing on Pairing-friendly Curves

Jianming Lin, Jiaying University
Yu Dai, Wuhan University of Technology
Chang-An Zhao, Sun Yat-sen University
Yuhao Zheng, Sun Yat-sen University
Abstract

Subgroup membership testing serves as a crucial countermeasure against small subgroup attacks, thereby ensuring the security of pairing-based cryptographic protocols. Despite its vital importance, the expensive computational requirements for membership testing on specific pairing-friendly curves pose a non-negligible challenge. In this paper, we revisit the $\mathbb{G}_2$ membership testing algorithms on KSS16 curves and propose a novel approach specifically designed for the families constructed by the KSS method (Kachisa-Schaefer-Scott method). Moreover, we generalize several previous methods for $\mathbb{G}_2$ membership testing, rendering them applicable to more generic pairing-friendly curves. Specifically, we implement an efficient $\mathbb{G}_2$ membership testing on three well-known curves KSS16-329, KSS16-330, and KSS16-766 for verification. The experimental results illustrate that our new method achieves improvements of $24.0\%$, $33.3\%$, and $29.2\%$ in terms of clock cycles compared to the state-of-the-art, respectively.

Metadata
Available format(s)
PDF
Category
Implementation
Publication info
Published elsewhere. Minor revision. Journal of Cryptographic Engineering
DOI
https://doi.org/10.1007/s13389-026-00402-1
Keywords
small subgroup attacksmembership testingKSS curvesendomorphisms
Contact author(s)
linjm76 @ mail sysu edu cn
eccdaiy39 @ gmail com
zhaochan3 @ mail sysu edu cn
zhengyh57 @ mail2 sysu edu cn
History
2026-08-09: last of 6 revisions
2025-12-11: received
See all versions
Short URL
https://ia.cr/2025/2230
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2025/2230,
      author = {Jianming Lin and Yu Dai and Chang-An Zhao and Yuhao Zheng},
      title = {Efficient Algorithms for $\mathbb{G}_2$ Subgroup  Membership testing on Pairing-friendly Curves},
      howpublished = {Cryptology {ePrint} Archive, Paper 2025/2230},
      year = {2025},
      doi = {https://doi.org/10.1007/s13389-026-00402-1},
      url = {https://eprint.iacr.org/2025/2230}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.