Matches in SemOpenAlex for { <https://semopenalex.org/work/W2893822137> ?p ?o ?g. }
Showing items 1 to 84 of
84
with 100 items per page.
- W2893822137 endingPage "372" @default.
- W2893822137 startingPage "343" @default.
- W2893822137 abstract "$$textsc {LowMC}$$ is a block cipher family designed in 2015 by Albrecht et al. It is optimized for practical instantiations of multi-party computation, fully homomorphic encryption, and zero-knowledge proofs. $$textsc {LowMC}$$ is used in the $$textsc {Picnic}$$ signature scheme, submitted to NIST’s post-quantum standardization project and is a substantial building block in other novel post-quantum cryptosystems. Many $$textsc {LowMC}$$ instances use a relatively recent design strategy (initiated by Gérard et al. at CHES 2013) of applying the non-linear layer to only a part of the state in each round, where the shortage of non-linear operations is partially compensated by heavy linear algebra. Since the high linear algebra complexity has been a bottleneck in several applications, one of the open questions raised by the designers was to reduce it, without introducing additional non-linear operations (or compromising security). In this paper, we consider $$textsc {LowMC}$$ instances with block size n, partial non-linear layers of size $$s le n$$ and r encryption rounds. We redesign LowMC’s linear components in a way that preserves its specification, yet improves LowMC’s performance in essentially every aspect. Most of our optimizations are applicable to all SP-networks with partial non-linear layers and shed new light on this relatively new design methodology. Our main result shows that when $$s < n$$ , each $$textsc {LowMC}$$ instance belongs to a large class of equivalent instances that differ in their linear layers. We then select a representative instance from this class for which encryption (and decryption) can be implemented much more efficiently than for an arbitrary instance. This yields a new encryption algorithm that is equivalent to the standard one, but reduces the evaluation time and storage of the linear layers from $$r cdot n^2$$ bits to about $$r cdot n^2 - (r-1)(n-s)^2$$ . Additionally, we reduce the size of LowMC’s round keys and constants and optimize its key schedule and instance generation algorithms. All of these optimizations give substantial improvements for small s and a reasonable choice of r. Finally, we formalize the notion of linear equivalence of block ciphers and prove the optimality of some of our results. Comprehensive benchmarking of our optimizations in various $$textsc {LowMC}$$ applications (such as $$textsc {Picnic}$$ ) reveals improvements by factors that typically range between 2x and 40x in runtime and memory consumption." @default.
- W2893822137 created "2018-10-05" @default.
- W2893822137 creator A5043947892 @default.
- W2893822137 creator A5068575128 @default.
- W2893822137 creator A5080865455 @default.
- W2893822137 creator A5082745945 @default.
- W2893822137 creator A5089573672 @default.
- W2893822137 date "2019-01-01" @default.
- W2893822137 modified "2023-10-03" @default.
- W2893822137 title "Linear Equivalence of Block Ciphers with Partial Non-Linear Layers: Application to LowMC" @default.
- W2893822137 cites W1035500135 @default.
- W2893822137 cites W1489021826 @default.
- W2893822137 cites W1494217786 @default.
- W2893822137 cites W1611243483 @default.
- W2893822137 cites W1826277484 @default.
- W2893822137 cites W2006181434 @default.
- W2893822137 cites W2016265800 @default.
- W2893822137 cites W2027471022 @default.
- W2893822137 cites W2088492763 @default.
- W2893822137 cites W2614074621 @default.
- W2893822137 cites W2794780961 @default.
- W2893822137 cites W2795089225 @default.
- W2893822137 cites W2891063150 @default.
- W2893822137 cites W2953015727 @default.
- W2893822137 cites W584705194 @default.
- W2893822137 cites W632399495 @default.
- W2893822137 doi "https://doi.org/10.1007/978-3-030-17653-2_12" @default.
- W2893822137 hasPublicationYear "2019" @default.
- W2893822137 type Work @default.
- W2893822137 sameAs 2893822137 @default.
- W2893822137 citedByCount "14" @default.
- W2893822137 countsByYear W28938221372019 @default.
- W2893822137 countsByYear W28938221372020 @default.
- W2893822137 countsByYear W28938221372021 @default.
- W2893822137 countsByYear W28938221372023 @default.
- W2893822137 crossrefType "book-chapter" @default.
- W2893822137 hasAuthorship W2893822137A5043947892 @default.
- W2893822137 hasAuthorship W2893822137A5068575128 @default.
- W2893822137 hasAuthorship W2893822137A5080865455 @default.
- W2893822137 hasAuthorship W2893822137A5082745945 @default.
- W2893822137 hasAuthorship W2893822137A5089573672 @default.
- W2893822137 hasConcept C106544461 @default.
- W2893822137 hasConcept C111919701 @default.
- W2893822137 hasConcept C11413529 @default.
- W2893822137 hasConcept C118615104 @default.
- W2893822137 hasConcept C139352143 @default.
- W2893822137 hasConcept C148730421 @default.
- W2893822137 hasConcept C158338273 @default.
- W2893822137 hasConcept C178489894 @default.
- W2893822137 hasConcept C2524010 @default.
- W2893822137 hasConcept C33923547 @default.
- W2893822137 hasConcept C41008148 @default.
- W2893822137 hasConcept C80444323 @default.
- W2893822137 hasConceptScore W2893822137C106544461 @default.
- W2893822137 hasConceptScore W2893822137C111919701 @default.
- W2893822137 hasConceptScore W2893822137C11413529 @default.
- W2893822137 hasConceptScore W2893822137C118615104 @default.
- W2893822137 hasConceptScore W2893822137C139352143 @default.
- W2893822137 hasConceptScore W2893822137C148730421 @default.
- W2893822137 hasConceptScore W2893822137C158338273 @default.
- W2893822137 hasConceptScore W2893822137C178489894 @default.
- W2893822137 hasConceptScore W2893822137C2524010 @default.
- W2893822137 hasConceptScore W2893822137C33923547 @default.
- W2893822137 hasConceptScore W2893822137C41008148 @default.
- W2893822137 hasConceptScore W2893822137C80444323 @default.
- W2893822137 hasLocation W28938221371 @default.
- W2893822137 hasOpenAccess W2893822137 @default.
- W2893822137 hasPrimaryLocation W28938221371 @default.
- W2893822137 hasRelatedWork W1592523240 @default.
- W2893822137 hasRelatedWork W2076024987 @default.
- W2893822137 hasRelatedWork W2340393497 @default.
- W2893822137 hasRelatedWork W2396392141 @default.
- W2893822137 hasRelatedWork W3022075301 @default.
- W2893822137 hasRelatedWork W3023876911 @default.
- W2893822137 hasRelatedWork W3092027738 @default.
- W2893822137 hasRelatedWork W4313046019 @default.
- W2893822137 hasRelatedWork W4313124477 @default.
- W2893822137 hasRelatedWork W4323896428 @default.
- W2893822137 isParatext "false" @default.
- W2893822137 isRetracted "false" @default.
- W2893822137 magId "2893822137" @default.
- W2893822137 workType "book-chapter" @default.