Paper 2026/1755

QuaILLL: Quaternion Ideal LLL and BKZ

Joshua Limbrey, Imperial College London
Cong Ling, Imperial College London
Christian Porter, Imperial College London
Abstract

The current state of the art for cryptanalysis generic rank-2 module LIP schemes invokes an SVP oracle on the canonical real embedding, discarding the quaternionic structure made available by the reduction of rank-2 module LIP to the reduced-norm Principal Ideal Problem (nrd-PIP) over quaternion algebras (we note, that since writing, this is no longer the case for certain instances, such as Hawk). We address this gap by giving, to our knowledge, the first lattice reduction algorithms over quaternion rings applied in a cryptographic setting, and the first description of quaternion BKZ. We extend the celebrated LLL algorithm to leverage algebraic properties of quaternion orders and novel post-processing steps to design an LLL algorithm for lattices in not-necessarily-maximal orders. The strategy is to reduce over the Euclidean overlattice and then post-process, giving two routines: one returning a basis of a sublattice with the best bounds, the other a true basis of the original lattice at the cost of output quality. We further consider blocksize two BKZ as a generalisation of the LLL algorithm, and then extend this to arbitrary blocksize; utilising results on the shortness of Gauss and HKZ reduced bases and the relationship of successive minima for our specific sublattice. We then apply these algorithms to ideal lattices arising from nrd-PIP, including those instances given by rank-2 MLIP over cyclotomic fields such as Hawk, via a modification of the canonical embedding that preserves both dimension and quaternionic structure. This allows us to reduce a lattice basis of rank a constant factor of four smaller than the standard real embedding, improving basis bounds and asymptotic complexity in the generic setting.

Metadata
Available format(s)
PDF
Category
Attacks and cryptanalysis
Publication info
Preprint.
Keywords
Quaternion algebrasLLL reductionBKZ reductionLattice isomorphism problem
Contact author(s)
j limbrey24 @ imperial ac uk
c ling @ imperial ac uk
c porter17 @ imperial ac uk
History
2026-08-22: approved
2026-08-20: received
See all versions
Short URL
https://ia.cr/2026/1755
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2026/1755,
      author = {Joshua Limbrey and Cong Ling and Christian Porter},
      title = {{QuaILLL}: Quaternion Ideal {LLL} and {BKZ}},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/1755},
      year = {2026},
      url = {https://eprint.iacr.org/2026/1755}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.