Partial lifting and the elliptic curve discrete logarithm problem

被引:1
作者
Cheng, Qi [1 ]
Huang, Ming-Deh
机构
[1] Univ Oklahoma, Sch Comp Sci, Norman, OK 73019 USA
[2] Univ So Calif, Dept Comp Sci, Los Angeles, CA 90089 USA
关键词
elliptic curve cryptosystem; discrete logarithm; partial lifting;
D O I
10.1007/s00453-006-0069-9
中图分类号
TP31 [计算机软件];
学科分类号
081202 ; 0835 ;
摘要
It has been suggested that a major obstacle in finding an index calculus attack on the elliptic curve discrete logarithm problem lies in the difficulty of lifting points from elliptic curves over finite fields to global fields. We explore the possibility of circumventing the problem of explicitly lifting points by investigating whether partial information about the lifting would be sufficient for solving the elliptic curve discrete logarithm problem. Along this line, we show that the elliptic curve discrete logarithm problem can be reduced to three partial lifting problems. Our reductions run in random polynomial time assuming certain conjectures, which are based on some well-known and widely accepted conjectures concerning the expected ranks of elliptic curves over the rationals. Should the elliptic curve discrete logarithm problem admit no subexponential time attack, then our results suggest that gaining partial information about lifting would be at least as hard.
引用
收藏
页码:59 / 68
页数:10
相关论文
共 50 条
[41]   Discrete Logarithm Problems with Auxiliary Inputs [J].
Cheon, Jung Hee .
JOURNAL OF CRYPTOLOGY, 2010, 23 (03) :457-476
[42]   Quantum algorithm for discrete logarithm over ZN [J].
Fu, Xiang-Qun ;
Bao, Wan-Su ;
Wang, Shuai .
Jisuanji Xuebao/Chinese Journal of Computers, 2014, 37 (05) :1058-1062
[43]   Relation collection using Pollard special-qsieving to solve integer factorization and discrete logarithm problem [J].
Varshney, Shubham ;
Charpe, Pankaj ;
Padmavathy, R. ;
Pal, S. K. .
JOURNAL OF SUPERCOMPUTING, 2021, 77 (03) :2734-2769
[44]   A general framework for subexponential discrete logarithm algorithms [J].
Enge, A ;
Gaudry, P .
ACTA ARITHMETICA, 2002, 102 (01) :83-103
[45]   On Converting Discrete Logarithm Calculation to Long Division [J].
Li, Hui ;
Liu, Haoze ;
Yi, Junkai .
2016 IEEE INTERNATIONAL CONFERENCE ON RECENT TRENDS IN ELECTRONICS, INFORMATION & COMMUNICATION TECHNOLOGY (RTEICT), 2016, :1-4
[46]   Cryptanalysis of an efficient proof of knowledge of discrete logarithm [J].
Kunz-Jacques, Sebastien ;
Martinet, Gwenaelle ;
Poupard, Guillaume ;
Stern, Jacques .
PUBLIC KEY CRYPTOGRAPHY - PKC 2006, PROCEEDINGS, 2006, 3958 :27-43
[47]   On the complexity of the discrete logarithm for a general finite group [J].
Okamoto, T ;
Sakurai, K ;
Shizuya, H .
IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 1996, E79A (01) :61-65
[48]   Security Analysis of Discrete Logarithm Based Cryptosystems [J].
WANG YuzhuLIAO Xiaofeng School of Computer Chongqing UniversityChongqing China .
WuhanUniversityJournalofNaturalSciences, 2006, (06) :1715-1717
[49]   Relation collection using Pollard special-q sieving to solve integer factorization and discrete logarithm problem [J].
Shubham Varshney ;
Pankaj Charpe ;
R. Padmavathy ;
S. K. Pal .
The Journal of Supercomputing, 2021, 77 :2734-2769
[50]   A practical off-line digital money system with partially blind signatures based on the discrete logarithm problem [J].
Miyazaki, S ;
Sakurai, K .
IEICE TRANSACTIONS ON FUNDAMENTALS OF ELECTRONICS COMMUNICATIONS AND COMPUTER SCIENCES, 2000, E83A (01) :106-108