Suppr超能文献

Quantum rectangular MinRank attack on multi-layer UOV signature schemes.

作者信息

Cho Seong-Min, Seo Seung-Hyun

机构信息

Department of Electrical Engineering, Graduate School of Hanyang University, Seoul, 04763, South Korea.

Division of Electrical Engineering, Hanyang University ERICA, Ansan, 15588, South Korea.

出版信息

Sci Rep. 2024 Jul 16;14(1):16340. doi: 10.1038/s41598-024-66841-0.

Abstract

Recent rank-based attacks have reduced the security of Rainbow, which is one of the multi-layer UOV signatures, below the NIST security requirements by speeding up iterative kernel-finding operations using classical mathematics techniques. If quantum algorithms are applied to perform these iterative operations, the rank-based attacks may be more threatening to multi-layer UOV, including Rainbow. In this paper, we propose a quantum rectangular MinRank attack called the Q-rMinRank attack, the first quantum approach to key recovery attacks on multi-layer UOV signatures. Our attack is a general model applicable to multi-layer UOV signature schemes, and in this paper, we provide examples of its application to Rainbow and the Korean TTA standard, HiMQ. We design two quantum oracle circuits to find the kernel in consideration of the depth-width trade-off of quantum circuits. One is to reduce the width of the quantum circuits using qubits as a minimum, and the other is to reduce the depth using parallelization instead of using a lot of qubits. By designing quantum circuits to find kernels with fewer quantum resources and complexity by adding mathematical techniques, we achieve quadratic speedup for the MinRank attack to recover the private keys of multi-layer UOV signatures. We also estimate quantum resources for the designed quantum circuits and analyze quantum complexity based on them. The width-optimized circuit recovers the private keys of Rainbow parameter set V with only 1089 logical qubits. The depth-optimized circuit recovers the private keys of Rainbow parameter set V with a quantum complexity of , which is lower than the complexity of recovering the secret key of AES-192, which provides the same security level as parameter set III.

摘要
https://cdn.ncbi.nlm.nih.gov/pmc/blobs/1e57/11252166/70f5b69320bc/41598_2024_66841_Fig1_HTML.jpg

文献AI研究员

20分钟写一篇综述,助力文献阅读效率提升50倍。

立即体验

用中文搜PubMed

大模型驱动的PubMed中文搜索引擎

马上搜索

文档翻译

学术文献翻译模型,支持多种主流文档格式。

立即体验