Matches in SemOpenAlex for { <https://semopenalex.org/work/W4311322342> ?p ?o ?g. }
- W4311322342 endingPage "275" @default.
- W4311322342 startingPage "245" @default.
- W4311322342 abstract "Lattice-based digital signature schemes following the hash-and-sign design paradigm of Gentry, Peikert and Vaikuntanathan (GPV) tend to offer an attractive level of efficiency, particularly when instantiated with structured compact trapdoors. In particular, NIST postquantum finalist Falcon is both quite fast for signing and verification and quite compact: NIST notes that it has the smallest bandwidth (as measured in combined size of public key and signature) of all round 2 digital signature candidates. Nevertheless, while Falcon–512, for instance, compares favorably to ECDSA–384 in terms of speed, its signatures are well over 10 times larger. For applications that store large number of signatures, or that require signatures to fit in prescribed packet sizes, this can be a critical limitation. In this paper, we explore several approaches to further improve the size of hash-and-sign lattice-based signatures, particularly instantiated over NTRU lattices like Falcon and its recent variant Mitaka. In particular, while GPV signatures are usually obtained by sampling lattice points according to some spherical discrete Gaussian distribution, we show that it can be beneficial to sample instead according to a suitably chosen ellipsoidal discrete Gaussian: this is because only half of the sampled Gaussian vector is actually output as the signature, while the other half is recovered during verification. Making the half that actually occurs in signatures shorter reduces signature size at essentially no security loss (in a suitable range of parameters). Similarly, we show that reducing the modulus q with respect to which signatures are computed can improve signature size as well as verification key size almost “for free”; this is particularly true for constructions like Falcon and Mitaka that do not make substantial use of NTT-based multiplication (and rely instead on transcendental FFT). Finally, we show that the Gaussian vectors in signatures can be represented in a more compact way with appropriate coding-theoretic techniques, improving signature size by an additional 7 to 14%. All in all, we manage to reduce the size of, e.g., Falcon signatures by 30–40% at the cost of only 4–6 bits of Core-SVP security." @default.
- W4311322342 created "2022-12-25" @default.
- W4311322342 creator A5025296319 @default.
- W4311322342 creator A5034233343 @default.
- W4311322342 creator A5057608582 @default.
- W4311322342 creator A5082427466 @default.
- W4311322342 date "2022-01-01" @default.
- W4311322342 modified "2023-09-25" @default.
- W4311322342 title "Shorter Hash-and-Sign Lattice-Based Signatures" @default.
- W4311322342 cites W121367636 @default.
- W4311322342 cites W1506156414 @default.
- W4311322342 cites W1531850752 @default.
- W4311322342 cites W1541721626 @default.
- W4311322342 cites W1577505202 @default.
- W4311322342 cites W1936753088 @default.
- W4311322342 cites W1994790157 @default.
- W4311322342 cites W2038761522 @default.
- W4311322342 cites W2061949491 @default.
- W4311322342 cites W2140256428 @default.
- W4311322342 cites W2468486877 @default.
- W4311322342 cites W2478290527 @default.
- W4311322342 cites W2603065436 @default.
- W4311322342 cites W2791664942 @default.
- W4311322342 cites W2805342266 @default.
- W4311322342 cites W2900370870 @default.
- W4311322342 cites W2952033682 @default.
- W4311322342 cites W2953074136 @default.
- W4311322342 cites W2990155627 @default.
- W4311322342 cites W3023196870 @default.
- W4311322342 cites W3048502882 @default.
- W4311322342 cites W3092193039 @default.
- W4311322342 cites W3096999101 @default.
- W4311322342 cites W3097085459 @default.
- W4311322342 cites W3117387215 @default.
- W4311322342 cites W3186785147 @default.
- W4311322342 cites W3213733157 @default.
- W4311322342 cites W4205104754 @default.
- W4311322342 cites W4205873558 @default.
- W4311322342 cites W42080394 @default.
- W4311322342 cites W4212765599 @default.
- W4311322342 cites W607916523 @default.
- W4311322342 cites W62933689 @default.
- W4311322342 cites W74973629 @default.
- W4311322342 doi "https://doi.org/10.1007/978-3-031-15979-4_9" @default.
- W4311322342 hasPublicationYear "2022" @default.
- W4311322342 type Work @default.
- W4311322342 citedByCount "5" @default.
- W4311322342 countsByYear W43113223422022 @default.
- W4311322342 countsByYear W43113223422023 @default.
- W4311322342 crossrefType "book-chapter" @default.
- W4311322342 hasAuthorship W4311322342A5025296319 @default.
- W4311322342 hasAuthorship W4311322342A5034233343 @default.
- W4311322342 hasAuthorship W4311322342A5057608582 @default.
- W4311322342 hasAuthorship W4311322342A5082427466 @default.
- W4311322342 hasBestOaLocation W43113223422 @default.
- W4311322342 hasConcept C111219384 @default.
- W4311322342 hasConcept C11413529 @default.
- W4311322342 hasConcept C118463975 @default.
- W4311322342 hasConcept C121332964 @default.
- W4311322342 hasConcept C137660015 @default.
- W4311322342 hasConcept C144901912 @default.
- W4311322342 hasConcept C163716315 @default.
- W4311322342 hasConcept C169699857 @default.
- W4311322342 hasConcept C24890656 @default.
- W4311322342 hasConcept C2781204021 @default.
- W4311322342 hasConcept C28490314 @default.
- W4311322342 hasConcept C33923547 @default.
- W4311322342 hasConcept C38652104 @default.
- W4311322342 hasConcept C41008148 @default.
- W4311322342 hasConcept C62520636 @default.
- W4311322342 hasConcept C80444323 @default.
- W4311322342 hasConcept C84114770 @default.
- W4311322342 hasConcept C99138194 @default.
- W4311322342 hasConceptScore W4311322342C111219384 @default.
- W4311322342 hasConceptScore W4311322342C11413529 @default.
- W4311322342 hasConceptScore W4311322342C118463975 @default.
- W4311322342 hasConceptScore W4311322342C121332964 @default.
- W4311322342 hasConceptScore W4311322342C137660015 @default.
- W4311322342 hasConceptScore W4311322342C144901912 @default.
- W4311322342 hasConceptScore W4311322342C163716315 @default.
- W4311322342 hasConceptScore W4311322342C169699857 @default.
- W4311322342 hasConceptScore W4311322342C24890656 @default.
- W4311322342 hasConceptScore W4311322342C2781204021 @default.
- W4311322342 hasConceptScore W4311322342C28490314 @default.
- W4311322342 hasConceptScore W4311322342C33923547 @default.
- W4311322342 hasConceptScore W4311322342C38652104 @default.
- W4311322342 hasConceptScore W4311322342C41008148 @default.
- W4311322342 hasConceptScore W4311322342C62520636 @default.
- W4311322342 hasConceptScore W4311322342C80444323 @default.
- W4311322342 hasConceptScore W4311322342C84114770 @default.
- W4311322342 hasConceptScore W4311322342C99138194 @default.
- W4311322342 hasLocation W43113223421 @default.
- W4311322342 hasLocation W43113223422 @default.
- W4311322342 hasLocation W43113223423 @default.
- W4311322342 hasOpenAccess W4311322342 @default.
- W4311322342 hasPrimaryLocation W43113223421 @default.
- W4311322342 hasRelatedWork W1502535508 @default.
- W4311322342 hasRelatedWork W1524982592 @default.