A new multivariate primitive from CCZ equivalence

Fuente: arXiv
Salvato in:
Dettagli Bibliografici
Autori principali: Calderini, Marco, Caminata, Alessio, Villa, Irene
Natura: Preprint
Pubblicazione: 2024
Soggetti:
Accesso online:
Tags: Aggiungi Tag
Nessun Tag, puoi essere il primo ad aggiungerne!!
_version_ 1866911003868921856
author Calderini, Marco
Caminata, Alessio
Villa, Irene
author_facet Calderini, Marco
Caminata, Alessio
Villa, Irene
contents Multivariate Cryptography is one of the candidates for Post-quantum Cryptography. Multivariate schemes are usually constructed by applying two secret affine invertible transformations $\mathcal S,\mathcal T$ to a set of multivariate polynomials $\mathcal{F}$ (often quadratic). The polynomials $\mathcal{F}$ possess a trapdoor that allows the legitimate user to find a solution of the corresponding system, while the public polynomials $\mathcal G=\mathcal S\circ\mathcal F\circ\mathcal T$ look like random polynomials. The polynomials $\mathcal G$ and $\mathcal F$ are said to be affine equivalent. In this article, we present a more general way of constructing a multivariate scheme by considering the CCZ equivalence, which has been introduced and studied in the context of vectorial Boolean functions.
format Preprint
id arxiv_https___arxiv_org_abs_2405_20968
institution arXiv
publishDate 2024
record_format arxiv
spellingShingle A new multivariate primitive from CCZ equivalence
Calderini, Marco
Caminata, Alessio
Villa, Irene
Cryptography and Security
Multivariate Cryptography is one of the candidates for Post-quantum Cryptography. Multivariate schemes are usually constructed by applying two secret affine invertible transformations $\mathcal S,\mathcal T$ to a set of multivariate polynomials $\mathcal{F}$ (often quadratic). The polynomials $\mathcal{F}$ possess a trapdoor that allows the legitimate user to find a solution of the corresponding system, while the public polynomials $\mathcal G=\mathcal S\circ\mathcal F\circ\mathcal T$ look like random polynomials. The polynomials $\mathcal G$ and $\mathcal F$ are said to be affine equivalent. In this article, we present a more general way of constructing a multivariate scheme by considering the CCZ equivalence, which has been introduced and studied in the context of vectorial Boolean functions.
title A new multivariate primitive from CCZ equivalence
topic Cryptography and Security
url https://arxiv.org/abs/2405.20968