Analysis of Multivariate Encryption Schemes: Application to Dob and
Morten Øygarden,Patrick Felke,Håvard Raddum
DOI: https://doi.org/10.1007/s00145-024-09501-w
2024-04-20
Journal of Cryptology
Abstract:A common strategy for constructing multivariate encryption schemes is to use a central map that is easy to invert over an extension field, along with a small number of modifications to thwart potential attacks. In this work, we study the effectiveness of these modifications, by deriving estimates for the number of degree fall polynomials. After developing the necessary tools, we focus on encryption schemes using the and Dobbertin central maps, with the internal perturbation ( ip ), and modifications. For these constructions, we are able to accurately predict the number of degree fall polynomials produced in a Gröbner basis attack, up to and including degree 5 for the Dob encryption scheme and four for . The predictions remain accurate even when fixing variables. Based on this new theory, we design a novel attack on Dob, which completely recovers the secret key for the parameters suggested by its designers. Due to the generality of the presented techniques, we also believe that they are of interest to the analysis of other big-field schemes.
computer science, theory & methods,engineering, electrical & electronic,mathematics, applied