0단 자동
AI가 규칙대로 쓰고 그대로 게시했습니다. 사람이 따로 보지 않았습니다.
- 규칙 판
- 규칙 판 도입 이전 기사입니다.
- 남기는 것
- 규칙 판 · 모델 · 시각
- 판 기록
- 아직 없습니다.
Exploiting SNOVA’s Structure in the Wedge Product Attack
- 1.다변수 서명 스킴 SNOVA의 블록-링 구조를 이용한 새로운 대수적 공격(쑐기곱 공격) 제시
- 2.Ran(Eurocrypt 2026)의 UOV 공격을 확장, 가짜 해를 배제해 SNOVA에도 적용되게 함
- 3.2라운드 SNOVA 파라미터셋 11개 중 6개를 완전 격파, 2개는 기존 최고 기록 경신
- 4.SNOVA-V (v,o,ℓ)=(29,6,5)의 추정 보안 강도가 기존 310비트에서 181비트로 하락
왜 중요한가?
SNOVA는 NIST 포스트양자 전자서명 추가 후보 3라운드에 오른 유력 후보인데, 이번 공격으로 절반 이상의 파라미터셋 보안성이 크게 낮아져 표준화 심사에 직접 영향을 줄 수 있다.
본문 미리보기
Post-quantum cryptography (PQC) aims to develop cryptographic schemes secure against quantum adversaries. One promising class of digital signature schemes is based on multivariate quadratic equations, where Unbalanced Oil and Vinegar (UOV) is a leading example. UOV has been extensively studied since its introduction by Kipnis, Patarin, and Goubin at Eurocrypt 1999, and it has remained secure. The signature sizes the scheme allows are quite small; however the key sizes are very large, making the
전체 내용이 궁금하다면?
원문을 직접 읽어보세요
이 글이 만들어진 과정
- 11:24AI 초안



