Multivariate cryptography is one of the candidates for post-quantum cryptography. Multivariate schemes are usually constructed by applying two secret affine invertible transformations S,T to a set of multivariate polynomials F (often quadratic). The polynomials F possess a trapdoor that allows the legitimate user to find a solution of the corresponding system, while the public polynomials G=S∘F∘T look like random polynomials. The polynomials G and F are said to be affine equivalent. In this article, we present a more general way of constructing a multivariate scheme by considering the CCZ equivalence, which has been introduced and studied in the context of vectorial Boolean functions.
A New Multivariate Primitive from CCZ Equivalence / Calderini, Marco; Caminata, Alessio; Villa, Irene. - In: JOURNAL OF CRYPTOLOGY. - ISSN 0933-2790. - 38:3(2025), pp. 2501-2525. [10.1007/s00145-025-09544-7]
A New Multivariate Primitive from CCZ Equivalence
Calderini, Marco;Villa, Irene
2025-01-01
Abstract
Multivariate cryptography is one of the candidates for post-quantum cryptography. Multivariate schemes are usually constructed by applying two secret affine invertible transformations S,T to a set of multivariate polynomials F (often quadratic). The polynomials F possess a trapdoor that allows the legitimate user to find a solution of the corresponding system, while the public polynomials G=S∘F∘T look like random polynomials. The polynomials G and F are said to be affine equivalent. In this article, we present a more general way of constructing a multivariate scheme by considering the CCZ equivalence, which has been introduced and studied in the context of vectorial Boolean functions.| File | Dimensione | Formato | |
|---|---|---|---|
|
CCZ_multyvar.pdf
Solo gestori archivio
Tipologia:
Versione editoriale (Publisher’s layout)
Licenza:
Tutti i diritti riservati (All rights reserved)
Dimensione
397.56 kB
Formato
Adobe PDF
|
397.56 kB | Adobe PDF | Visualizza/Apri |
I documenti in IRIS sono protetti da copyright e tutti i diritti sono riservati, salvo diversa indicazione



