BEGIN:VCALENDAR
VERSION:2.0
PRODID:-//GREYC UMR CNRS 6072 - Groupe de Recherche en Informatique, Image, et Instrumentation de Caen - ECPv5.7.0//NONSGML v1.0//EN
CALSCALE:GREGORIAN
METHOD:PUBLISH
X-WR-CALNAME:GREYC UMR CNRS 6072 - Groupe de Recherche en Informatique, Image, et Instrumentation de Caen
X-ORIGINAL-URL:https://www.greyc.fr
X-WR-CALDESC:évènements pour GREYC UMR CNRS 6072 - Groupe de Recherche en Informatique, Image, et Instrumentation de Caen
BEGIN:VTIMEZONE
TZID:Europe/Paris
BEGIN:DAYLIGHT
TZOFFSETFROM:+0100
TZOFFSETTO:+0200
TZNAME:CEST
DTSTART:20250330T010000
END:DAYLIGHT
BEGIN:STANDARD
TZOFFSETFROM:+0200
TZOFFSETTO:+0100
TZNAME:CET
DTSTART:20251026T010000
END:STANDARD
END:VTIMEZONE
BEGIN:VEVENT
DTSTART;TZID=Europe/Paris:20250521T140000
DTEND;TZID=Europe/Paris:20250521T150000
DTSTAMP:20260419T110755
CREATED:20250429T092927Z
LAST-MODIFIED:20250515T084249Z
UID:11849-1747836000-1747839600@www.greyc.fr
SUMMARY:Thi Thu Quyen Nguyen - Cryptanalysis of LWE with side information
DESCRIPTION:DDGR framework [DSDGR20] was introduced in Crypto 2020 as the first cryptanalysis framework that estimates the impact of some types of side information on the security of Learning with Errors (LWE). Side information can come from many sources either from the construction itself or from the implementation leakage. Some of them can be categorized into perfect hint\, modular hint\, approximating hint and short vector hint. DDGR examines the impact of these hints by gradually integrating them into the given LWE instance\, constructing a new Short Vector Problem (SVP) instance that could be easier (or not) to solve via lattice reduction than the original LWE’s SVP. In Asiacrypt 2023\, May et al discovered the « Too many hints” regime [MN23] in which the LWE instances can be practically broken by LLL given a certain number of certain types of hint (for example\, n/2 perfect hints with n being the dimension of LWE’s secret). The successful attack in this regime is not predictable by DDGR’s estimator. In this talk\, I will explain this mystery which is related to that « random hint » and « non-random hint » have different impacts on lattice reduction.
URL:https://www.greyc.fr/event/nguyen-thi-cryptanalysis-of-lwe-with-side-information/
LOCATION:Sciences 3- S3 351
CATEGORIES:General,News,Safe,Séminaire Cryptologie et sécurité
END:VEVENT
END:VCALENDAR