Paper 2026/1130

Reassessing the Security of LPN-C and its HHE-Oriented Variants

Orr Dunkelman, University of Haifa, Technical University of Berlin
Semira Einsele, Freie Universität Berlin
Hans Heum, Norwegian University of Science and Technology, Simula Research Laboratory
Morten Øygarden, Simula Research Laboratory, University of Bergen
Gerhard Wunder, Freie Universität Berlin
Abstract

The idea of Hybrid Homomorphic Encryption (HHE) is to reduce the computational cost of Fully Homomorphic Encryption (FHE) by encrypting bulk data symmetrically while only encrypting the short symmetric key homomorphically. Its efficiency depends on the multiplicative depth of the symmetric cipher's decryption circuit, motivating FHE-friendly designs. The Learning Parity with Noise (LPN) problem is a natural candidate for such designs, as it gives rise to simple encryption and decryption circuits over binary fields. In this context, Fouque, Hadjibeyli, and Kirchner proposed LPN-based symmetric encryption schemes based on the LPN-C cryptosystem of Gilbert et al. LPN-C is attractive for HHE while allowing parameter choices that bound decryption failures. However, the concrete security of LPN-C and its HHE-oriented variants remains poorly understood. We quantify how enforcing bounded noise via rejection sampling reduces the observed noise rate, an effect not captured in prior analyses. This yields immediate speedups for all attacks based on LPN instance solving. We then extend the Arora-Ge-style algebraic attacks to the bounded-noise setting and derive new bounds on the dimension of the induced linear spaces, refining and partially correcting earlier analyses. We show that some parameter regimes are more robust than previously estimated, while new algebraic strategies yield the best known attacks in others. Overall, our results improve our understanding of the concrete security of LPN-based symmetric encryption schemes, informing parameter selection for FHE-friendly variants.

Metadata
Available format(s)
PDF
Category
Attacks and cryptanalysis
Publication info
Preprint.
Keywords
CryptanalysisAlgebraic AttacksLPN-CHHE-friendly
Contact author(s)
orrd @ cs haifa ac il
semira einsele @ fu-berlin de
hansh @ simula no
morten oygarden @ simula no
g wunder @ fu-berlin de
History
2026-06-04: approved
2026-06-01: received
See all versions
Short URL
https://ia.cr/2026/1130
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2026/1130,
      author = {Orr Dunkelman and Semira Einsele and Hans Heum and Morten Øygarden and Gerhard Wunder},
      title = {Reassessing the Security of {LPN}-C and its {HHE}-Oriented Variants},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/1130},
      year = {2026},
      url = {https://eprint.iacr.org/2026/1130}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.