Table of contents

  • This session has been presented April 01, 2022.

Description

  • Speaker

    Nicolas Aragon - IRISA

Since the start of the NIST standardization project for post-quantum cryptography in 2017, rank metric based cryptography is becoming more popular as an alternative to code-based cryptography in the Hamming metric.<br/> While rank based cryptography has always been competitive in terms of keys and ciphertexts sizes, the lack of maturity in the implementations of these cryptosystems made them significantly slower when compared to code-based primitives. There has been a lot of recents results that overcome this problem by providing faster, but also more secure implementations for rank based cryptography, especially regarding timing and cache attacks.<br/> The first part of this talk will present an overview of the existing cryptographic primitives in rank-based cryptography, as well as the challenges encountered when implementing these primitives, and the importance of providing "constant time" implementations.<br/> The second part will take as an example the implementation of the key generation step for the ROLLO key exchange mechanism, and will present different constant time algorithms that can be used to perform this operation securely and efficiently : a constant-time GCD algorithm, and a variation of the Itoh-Tsujii algorithm.<br/> lien: https://univ-rennes1-fr.zoom.us/j/97066341266?pwd=RUthOFV5cm1uT0ZCQVh6QUcrb1drQT09

Next sessions

  • Polytopes in the Fiat-Shamir with Aborts Paradigm

    • November 29, 2024 (13:45 - 14:45)

    • IRMAR - Université de Rennes - Campus Beaulieu Bat. 22, RDC, Rennes - Amphi Lebesgue

    Speaker : Hugo Beguinet - ENS Paris / Thales

    The Fiat-Shamir with Aborts paradigm (FSwA) uses rejection sampling to remove a secret’s dependency on a given source distribution.&nbsp; Recent results revealed that unlike the uniform distribution in the hypercube, both the continuous Gaussian and the uniform distribution within the hypersphere minimise the rejection rate and the size of the proof of knowledge. However, in practice both these[…]
    • Cryptography

    • Asymmetric primitive

    • Mode and protocol

  • Post-quantum Group-based Cryptography

    • December 20, 2024 (13:45 - 14:45)

    • IRMAR - Université de Rennes - Campus Beaulieu Bat. 22, RDC, Rennes - Amphi Lebesgue

    Speaker : Delaram Kahrobaei - The City University of New York

Show previous sessions