{"id":"https://openalex.org/W2963036931","doi":"https://doi.org/10.1137/16m1096566","title":"Attacks on the Search RLWE Problem with Small Errors","display_name":"Attacks on the Search RLWE Problem with Small Errors","publication_year":2017,"publication_date":"2017-01-01","ids":{"openalex":"https://openalex.org/W2963036931","doi":"https://doi.org/10.1137/16m1096566","mag":"2963036931"},"language":"en","primary_location":{"is_oa":true,"landing_page_url":"https://doi.org/10.1137/16m1096566","pdf_url":"https://epubs.siam.org/doi/pdf/10.1137/16M1096566","source":{"id":"https://openalex.org/S2996807011","display_name":"SIAM Journal on Applied Algebra and Geometry","issn_l":"2470-6566","issn":["2470-6566"],"is_oa":false,"is_in_doaj":false,"is_indexed_in_scopus":true,"is_core":true,"host_organization":"https://openalex.org/P4310320508","host_organization_name":"Society for Industrial and Applied Mathematics","host_organization_lineage":["https://openalex.org/P4310320508"],"host_organization_lineage_names":["Society for Industrial and Applied Mathematics"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true},"type":"article","type_crossref":"journal-article","indexed_in":["crossref"],"open_access":{"is_oa":true,"oa_status":"bronze","oa_url":"https://epubs.siam.org/doi/pdf/10.1137/16M1096566","any_repository_has_fulltext":true},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5100353665","display_name":"Hao Chen","orcid":"https://orcid.org/0000-0003-4457-6231"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Hao Chen","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"middle","author":{"id":"https://openalex.org/A5002850656","display_name":"Kristin Lauter","orcid":"https://orcid.org/0000-0002-1320-696X"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Kristin Lauter","raw_affiliation_strings":[],"affiliations":[]},{"author_position":"last","author":{"id":"https://openalex.org/A5062267978","display_name":"Katherine E. Stange","orcid":"https://orcid.org/0000-0003-2294-0397"},"institutions":[],"countries":[],"is_corresponding":false,"raw_author_name":"Katherine E. Stange","raw_affiliation_strings":[],"affiliations":[]}],"institution_assertions":[],"countries_distinct_count":0,"institutions_distinct_count":0,"corresponding_author_ids":[],"corresponding_institution_ids":[],"apc_list":null,"apc_paid":null,"fwci":1.134,"has_fulltext":true,"fulltext_origin":"ngrams","cited_by_count":23,"citation_normalized_percentile":{"value":0.874985,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":91,"max":92},"biblio":{"volume":"1","issue":"1","first_page":"665","last_page":"682"},"is_retracted":false,"is_paratext":false,"primary_topic":{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9999,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T10237","display_name":"Cryptography and Data Security","score":0.9999,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11130","display_name":"Coding theory and cryptography","score":0.9986,"subfield":{"id":"https://openalex.org/subfields/1702","display_name":"Artificial Intelligence"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11693","display_name":"Cryptography and Residue Arithmetic","score":0.9969,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/homomorphic-encryption","display_name":"Homomorphic Encryption","score":0.59021556},{"id":"https://openalex.org/keywords/learning-with-errors","display_name":"Learning with errors","score":0.5448179},{"id":"https://openalex.org/keywords/degree","display_name":"Degree (music)","score":0.43741184}],"concepts":[{"id":"https://openalex.org/C77926391","wikidata":"https://www.wikidata.org/wiki/Q603880","display_name":"Finite field","level":2,"score":0.6242926},{"id":"https://openalex.org/C158338273","wikidata":"https://www.wikidata.org/wiki/Q2154943","display_name":"Homomorphic encryption","level":3,"score":0.59021556},{"id":"https://openalex.org/C33923547","wikidata":"https://www.wikidata.org/wiki/Q395","display_name":"Mathematics","level":0,"score":0.57709974},{"id":"https://openalex.org/C2779014939","wikidata":"https://www.wikidata.org/wiki/Q6510239","display_name":"Learning with errors","level":3,"score":0.5448179},{"id":"https://openalex.org/C184992742","wikidata":"https://www.wikidata.org/wiki/Q7243229","display_name":"Prime (order theory)","level":2,"score":0.49487847},{"id":"https://openalex.org/C67536143","wikidata":"https://www.wikidata.org/wiki/Q730384","display_name":"Galois group","level":2,"score":0.45531356},{"id":"https://openalex.org/C4042151","wikidata":"https://www.wikidata.org/wiki/Q215111","display_name":"Homomorphism","level":2,"score":0.4515185},{"id":"https://openalex.org/C118615104","wikidata":"https://www.wikidata.org/wiki/Q121416","display_name":"Discrete mathematics","level":1,"score":0.44723326},{"id":"https://openalex.org/C2775997480","wikidata":"https://www.wikidata.org/wiki/Q586277","display_name":"Degree (music)","level":2,"score":0.43741184},{"id":"https://openalex.org/C12657307","wikidata":"https://www.wikidata.org/wiki/Q616608","display_name":"Algebraic number field","level":2,"score":0.42555138},{"id":"https://openalex.org/C178489894","wikidata":"https://www.wikidata.org/wiki/Q8789","display_name":"Cryptography","level":2,"score":0.38511086},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.32201338},{"id":"https://openalex.org/C114614502","wikidata":"https://www.wikidata.org/wiki/Q76592","display_name":"Combinatorics","level":1,"score":0.30599964},{"id":"https://openalex.org/C148730421","wikidata":"https://www.wikidata.org/wiki/Q141090","display_name":"Encryption","level":2,"score":0.2896695},{"id":"https://openalex.org/C11413529","wikidata":"https://www.wikidata.org/wiki/Q8366","display_name":"Algorithm","level":1,"score":0.16452366},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.12791905},{"id":"https://openalex.org/C24890656","wikidata":"https://www.wikidata.org/wiki/Q82811","display_name":"Acoustics","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0}],"mesh":[],"locations_count":2,"locations":[{"is_oa":true,"landing_page_url":"https://doi.org/10.1137/16m1096566","pdf_url":"https://epubs.siam.org/doi/pdf/10.1137/16M1096566","source":{"id":"https://openalex.org/S2996807011","display_name":"SIAM Journal on Applied Algebra and Geometry","issn_l":"2470-6566","issn":["2470-6566"],"is_oa":false,"is_in_doaj":false,"is_indexed_in_scopus":true,"is_core":true,"host_organization":"https://openalex.org/P4310320508","host_organization_name":"Society for Industrial and Applied Mathematics","host_organization_lineage":["https://openalex.org/P4310320508"],"host_organization_lineage_names":["Society for Industrial and Applied Mathematics"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true},{"is_oa":true,"landing_page_url":"http://arxiv.org/abs/1710.03739","pdf_url":"http://arxiv.org/pdf/1710.03739","source":{"id":"https://openalex.org/S4306400194","display_name":"arXiv (Cornell University)","issn_l":null,"issn":null,"is_oa":true,"is_in_doaj":false,"is_indexed_in_scopus":false,"is_core":false,"host_organization":"https://openalex.org/I205783295","host_organization_name":"Cornell University","host_organization_lineage":["https://openalex.org/I205783295"],"host_organization_lineage_names":["Cornell University"],"type":"repository"},"license":null,"license_id":null,"version":"submittedVersion","is_accepted":false,"is_published":false}],"best_oa_location":{"is_oa":true,"landing_page_url":"https://doi.org/10.1137/16m1096566","pdf_url":"https://epubs.siam.org/doi/pdf/10.1137/16M1096566","source":{"id":"https://openalex.org/S2996807011","display_name":"SIAM Journal on Applied Algebra and Geometry","issn_l":"2470-6566","issn":["2470-6566"],"is_oa":false,"is_in_doaj":false,"is_indexed_in_scopus":true,"is_core":true,"host_organization":"https://openalex.org/P4310320508","host_organization_name":"Society for Industrial and Applied Mathematics","host_organization_lineage":["https://openalex.org/P4310320508"],"host_organization_lineage_names":["Society for Industrial and Applied Mathematics"],"type":"journal"},"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true},"sustainable_development_goals":[],"grants":[{"funder":"https://openalex.org/F4320306076","funder_display_name":"National Science Foundation","award_id":"DMS-1643552"}],"datasets":[],"versions":[],"referenced_works_count":15,"referenced_works":["https://openalex.org/W1494049356","https://openalex.org/W1755636270","https://openalex.org/W1760474993","https://openalex.org/W1761303171","https://openalex.org/W1936753088","https://openalex.org/W1979120705","https://openalex.org/W1985439922","https://openalex.org/W1994790157","https://openalex.org/W2038761522","https://openalex.org/W2051594628","https://openalex.org/W2071825329","https://openalex.org/W2179033149","https://openalex.org/W2505158011","https://openalex.org/W2512450221","https://openalex.org/W2950780165"],"related_works":["https://openalex.org/W4364387343","https://openalex.org/W4281702715","https://openalex.org/W4225761998","https://openalex.org/W4221148445","https://openalex.org/W3153641653","https://openalex.org/W2763685335","https://openalex.org/W2152817591","https://openalex.org/W2055595190","https://openalex.org/W2046284526","https://openalex.org/W2019630099"],"abstract_inverted_index":{"The":[0,123],"Ring":[1],"Learning-with-Errors":[2],"(RLWE)":[3],"problem":[4,24,159],"shows":[5],"great":[6],"promise":[7],"for":[8,197],"postquantum":[9],"cryptography":[10],"and":[11,35,47,63,116,138,189],"homomorphic":[12],"encryption.":[13],"We":[14,76,91,148,178,193],"describe":[15],"a":[16,44,49,59,172],"new":[17,50],"attack":[18,51,79,128,152],"on":[19,153],"the":[20,36,69,74,94,110,134,141,154,169,180,195],"nondual":[21,155],"search":[22],"RLWE":[23,85,158],"with":[25,66,102,160],"small":[26],"error":[27,162],"widths,":[28],"using":[29],"ring":[30],"homomorphisms":[31],"to":[32,58,68,80,99],"finite":[33,60],"fields":[34,101],"chi-square":[37],"statistical":[38],"test.":[39],"In":[40],"particular,":[41],"we":[42,117],"identify":[43],"\"subfield":[45],"vulnerability\"":[46],"give":[48,81],"which":[52],"finds":[53],"this":[54,78,119],"vulnerability":[55],"by":[56,184],"mapping":[57],"field":[61],"extension":[62],"detecting":[64],"nonuniformity":[65],"respect":[67],"number":[70,89],"of":[71,83,109,114,126,136,144],"elements":[72],"in":[73,87,120,146,164,182],"subfield.":[75],"use":[77,118],"examples":[82],"vulnerable":[84,187],"instances":[86,188],"Galois":[88,100],"fields.":[90],"also":[92,149],"extend":[93],"well-known":[95],"search-to-decision":[96],"reduction":[97],"result":[98],"any":[103,176],"unramified":[104],"prime":[105,165,174],"modulus":[106,170],"$q$,":[107,115],"regardless":[108],"residue":[111,142],"degree":[112,135,143],"$f$":[113,139],"our":[121,127],"attacks.":[122,199],"time":[124],"complexity":[125],"is":[129,133,140,171],"$O(nq^{2f})$,":[130],"where":[131],"$n$":[132],"$K$":[137],"$q$":[145],"$K$.":[147],"show":[150],"an":[151],"(resp.,":[156,175],"dual)":[157],"narrow":[161],"distributions":[163],"cyclotomic":[166],"rings":[167],"when":[168],"ramified":[173],"integer).":[177],"demonstrate":[179],"attacks":[181],"practice":[183],"finding":[185],"many":[186],"successfully":[190],"attacking":[191],"them.":[192],"include":[194],"code":[196],"all":[198]},"cited_by_api_url":"https://api.openalex.org/works?filter=cites:W2963036931","counts_by_year":[{"year":2024,"cited_by_count":4},{"year":2023,"cited_by_count":3},{"year":2022,"cited_by_count":7},{"year":2021,"cited_by_count":3},{"year":2020,"cited_by_count":2},{"year":2019,"cited_by_count":3},{"year":2018,"cited_by_count":1}],"updated_date":"2025-01-20T08:02:02.443304","created_date":"2019-07-30"}