跳到主要导航 跳到搜索 跳到主要内容

On the hardness of learning parity with noise over rings

  • Shuoyao Zhao*
  • , Yu Yu
  • , Jiang Zhang
  • *此作品的通讯作者
  • Shanghai Jiao Tong University
  • Xi'an Institute of Posts and Telecommunications
  • Westone Cryptologic Research Center
  • State Key Laboratory of Cryptology

科研成果: 书/报告/会议事项章节会议稿件同行评审

摘要

Learning Parity with Noise (LPN) represents a notoriously hard problem in learning theory and it is also closely related to the “decoding random linear codes” problem in coding theory. Recently LPN has found many cryptographic applications such as authentication protocols, pseudorandom generators/functions and even advanced tasks including public-key encryption (PKE) schemes and oblivious transfer (OT) protocols. Crypto-systems based on LPN are computationally efficient and parallelizable in concept, thanks to the simple algebraic structure of LPN, but they (especially the public-key ones) are typically inefficient in terms of public-key/ciphertext sizes and/or communication complexity. To mitigate the issue, Heyse et al. (FSE 2012) introduced the ring variant of LPN (Ring-LPN) that enjoys a compact structure and gives rise to significantly more efficient cryptographic schemes. However, unlike its large-modulus analogue Ring-LWE (to which a reduction from ideal lattice problems can be established), no formal asymptotic studies are known for the security of Ring-LPN or its connections to other hardness assumptions. Informally, we show that for (Formula presented) and (Formula presented): assume that the decisional LPN problem of noise rate μ is hard even when its matrix is generated by a random Ring-LPN instance of noise rate μ′ (whose matrix is also kept secret in addition to secret and noise), then either Ring-LPN of noise rate δ is hard or public-key cryptography is implied. We remark that the heuristic-based approach to public randomness generation (as used in the assumption) is widely adopted in practice, and the latter statement is less likely because noise rate (Formula presented) is believed to reside in the minicrypt-only regime for LPN. Therefore, our results constitute non-trivial evidence that Ring-LPN might be as hard as LPN.

源语言英语
主期刊名Provable Security - 12th International Conference, ProvSec 2018, Proceedings
编辑Joonsang Baek, Willy Susilo, Jongkil Kim
出版商Springer Verlag
94-108
页数15
ISBN(印刷版)9783030014452
DOI
出版状态已出版 - 2018
已对外发布
活动12th International Conference on Provable Security, ProvSec 2018 - Jeju, 韩国
期限: 25 10月 201828 10月 2018

出版系列

姓名Lecture Notes in Computer Science (including subseries Lecture Notes in Artificial Intelligence and Lecture Notes in Bioinformatics)
11192 LNCS
ISSN(印刷版)0302-9743
ISSN(电子版)1611-3349

会议

会议12th International Conference on Provable Security, ProvSec 2018
国家/地区韩国
Jeju
时期25/10/1828/10/18

指纹

探究 'On the hardness of learning parity with noise over rings' 的科研主题。它们共同构成独一无二的指纹。

引用此