Paper 2026/916

Cryptanalysis of the Subfield Bilinear Collision Problem

Pierre Briaud, XLIM, Centre National de la Recherche Scientifique
Romaric Neveu, XLIM
Abstract

The security of a recent MPC-in-the-Head signature scheme introduced at Crypto 2024 by Huth and Joux required the introduction of a new ad hoc hardness assumption called the Subfield Bilinear Collision (SBC) problem. By relying on the VOLE-in-the-Head framework, the authors further improved the performance of this scheme at Asiacrypt 2025, resulting in a very compact construction. In this paper, we improve the original cryptanalysis of SBC in several ways. First, we describe a link between the SBC problem and the decoding problem in the rank metric for codes linear over an extension field $\mathbb{F}_{q^m}$, strengthening its theoretical hardness and expanding the range of attacks on the SBC problem. Second, we analyze Gröbner basis algorithms applied to the bilinear modeling of SBC proposed by Huth and Joux and formulate conjectures on the behavior of this system. Finally, we describe another algebraic modeling of SBC obtained by using the Plücker relations between the maximal minors of a matrix. While we do not threaten the parameters of the proposed signature schemes relying on SBC, our work opens the door to a more accurate analysis. In particular, we were not able to analyze the inclusion of the field equations of $\mathbb{F}_{q}$ in the Gröbner basis algorithm, which is especially relevant since $q=2$ in these parameters. We leave this task for future work.

Metadata
Available format(s)
PDF
Category
Attacks and cryptanalysis
Publication info
Preprint.
Keywords
Subfield Bilinear CollisionMPC-in-the-HeadSignature schemeAlgebraic cryptanalysis
Contact author(s)
pierre briaud @ xlim fr
romaric neveu @ etu unilim fr
History
2026-07-31: revised
2026-05-09: received
See all versions
Short URL
https://ia.cr/2026/916
License
Creative Commons Attribution
CC BY

BibTeX

@misc{cryptoeprint:2026/916,
      author = {Pierre Briaud and Romaric Neveu},
      title = {Cryptanalysis of the Subfield Bilinear Collision Problem},
      howpublished = {Cryptology {ePrint} Archive, Paper 2026/916},
      year = {2026},
      url = {https://eprint.iacr.org/2026/916}
}
Note: In order to protect the privacy of readers, eprint.iacr.org does not use cookies or embedded third party content.