On the supersingular GPST attack

From MaRDI portal
Publication:2239798



Abstract: We explain why the first Galbraith-Petit-Shani-Ti attack on the Supersingular Isogeny Diffie-Hellman and the Supersingular Isogeny Key Encapsulation fails in some cases.


Galbraith Petit-Shani-Ti (GPST) attack is an active attack against the supersingular isogeny-based cryptosystem, also known as,the supersingular isogeny Diffie-Hellman (SIDH). The attack allows an attacker who interacts with a static key over multiple rounds of SIDH key exchange and in this correspondence, the attacker can find one bit of information about the other participant's private key and hence can find the full secret key by repeating the process. The GPST attack is known for its important role in security. In this article, the authors investigate some specific conditions that show the attack fails to recover the secret key. In order to illustrate this, they present an example where the GPST attack fails to recover the private key of a SIDH key exchange.











This page was built for publication: On the supersingular GPST attack

Report a bug (only for logged in users!)Click here to report a bug for this page (MaRDI item Q2239798)